Aug 11, 2025 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • Getgrav Grav: public exploit or PoC linked (RCE)
  • 3s-software Codesys Gateway-server — exploitation likelihood rose sharply (EPSS 60% → 70% · rising (+11%)).
  • 9 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Active exploit activity

CVE-2023-32235 Ghost Directory Traversal

  • Public exploit or PoC available
  • Exploit activity linked

Ghost Directory Traversal now has public exploit or PoC linkage — assume opportunistic scanning and targeted follow-on activity.

Active exploit activity

CVE-2024-27198 JetBrains TeamCity Authentication Bypass

  • Public exploit or PoC available
  • Exploit activity linked
  • Authentication bypass — unauthenticated access risk

JetBrains TeamCity Auth Bypass now has public exploit or PoC linkage — assume opportunistic scanning and targeted follow-on activity.

Critical exposure

CVE-2012-4705 3s-software Codesys Gateway-server Directory Traversal

  • Exploitation likelihood sharply increased
  • CVSS 10
  • EPSS 60% → 70% · rising (+11%)

3s-software Codesys Gateway-server: EPSS 60% → 70% · rising (+11%) — EPSS is climbing faster than peer CVEs in this window, a leading indicator even before KEV or public exploit linkage.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

CVE-2025-8730 Exploit

A vulnerability was found in Belkin F9K1009 and F9K1010 2.00.04/2.00.09 and classified as critical.

CVE-2025-50286 Exploit

A Remote Code Execution (RCE) vulnerability in Grav CMS v1.7.48 allows an authenticated admin to upload a malicious plugin via the /admin...

CVE-2025-7769 Exploit

Tigo Energy's CCA is vulnerable to a command injection vulnerability in the /cgi-bin/mobile_api endpoint when the DEVICE_PING command is...

CVE-2025-8550 Exploit

A vulnerability was found in atjiu pybbs up to 6.0.0.

CVE-2025-8471 Exploit

A vulnerability, which was classified as critical, has been found in projectworlds Online Admission System 1.0.

CVE-2025-53770 Exploit

Microsoft SharePoint Deserialization of Untrusted Data

CVE-2025-49730 Exploit

Time-of-check time-of-use (toctou) race condition in Microsoft Windows QoS scheduler allows an authorized attacker to elevate privileges...

CVE-2025-5777 Exploit

Citrix NetScaler ADC and Gateway Out-of-Bounds Read

CVE-2025-41228 Exploit

VMware ESXi and vCenter Server contain a reflected cross-site scripting vulnerability due to improper input validation.

CVE-2025-20124 Exploit

Cisco Identity Services Engine — public exploit or PoC linked.

CVE-2025-20125 Exploit

Cisco Identity Services Engine — public exploit or PoC linked.

View new exploit links

Exploitation dynamics

CVE-2012-4705 EPSS 60% → 70% · rising (+11%) CVSS 10

3s-software Codesys Gateway-server Directory Traversal

See EPSS increases

New critical disclosures

CVE-2012-10037 CVSS 9.3

PhpTax version 0.8 contains a remote code execution vulnerability in drawimage.php.

CVE-2012-10038 CVSS 9.3

Auxilium RateMyPet contains an unauthenticated arbitrary file upload vulnerability in upload_banners.php.

CVE-2012-10039 CVSS 9.4

ZEN Load Balancer versions 2.0 and 3.0-rc1 contain a command injection vulnerability in content2-2.cgi.

CVE-2012-10040 CVSS 9.4

Openfiler v2.x contains a command injection vulnerability in the system.html page.

CVE-2024-32640 CVSS 9.8

MASA CMS is an Enterprise Content Management platform based on open source technology.

CVE-2025-45146 CVSS 9.8

ModelCache for LLM through v0.2.0 was discovered to contain an deserialization vulnerability via the component /manager/data_manager.py.

CVE-2025-53187 CVSS 9.3

Due to an issue in configuration, code that was intended for debugging purposes was included in the market release of the ASPECT FW allow...

CVE-2025-7679 CVSS 9.2

The ASPECT system allows users to bypass authentication.

CVE-2025-8853 CVSS 9.3

Official Document Management System developed by 2100 Technology has an Authentication Bypass vulnerability, allowing unauthenticated rem...

View critical disclosures

cvelogic Threat Intelligence