Sep 8, 2025 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • WordPress plugin RCE/exploit activity: 2 CVEs flagged today.
  • 10 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Critical exposure

CVE-2025-42944 Due to a deserialization vulnerability in SAP NetWeaver, an unauthenticated attacker could exploi...

  • CVSS 10

New critical disclosure (CVSS 10) — high severity with a short public awareness window before exploit material typically surfaces.

Critical exposure

CVE-2025-58745 WeGIA is a Web manager for charitable institutions.

  • CVSS 9.9

New critical disclosure (CVSS 9.9) — high severity with a short public awareness window before exploit material typically surfaces.

Critical exposure

CVE-2025-42922 SAP NetWeaver AS Java allows an attacker authenticated as a non-administrative user to use a flaw...

  • CVSS 9.9

New critical disclosure (CVSS 9.9) — high severity with a short public awareness window before exploit material typically surfaces.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

Nothing flagged in this category for this digest.

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2025-42922 CVSS 9.9

SAP NetWeaver AS Java allows an attacker authenticated as a non-administrative user to use a flaw in an available service to upload an ar...

CVE-2025-42944 CVSS 10

Due to a deserialization vulnerability in SAP NetWeaver, an unauthenticated attacker could exploit the system through the RMI-P4 module b...

CVE-2025-42958 CVSS 9.1

Due to a missing authentication check in the SAP NetWeaver application on IBM i-series, the application allows high privileged unauthoriz...

CVE-2025-54994 CVSS 9.3

@akoskm/create-mcp-server-stdio is an MCP server starter kit that uses the StdioServerTransport.

CVE-2025-57285 CVSS 9.8

codeceptjs 3.7.3 contains a command injection vulnerability in the emptyFolder function (lib/utils.js).

CVE-2025-58450 CVSS 9.3

pREST (PostgreSQL REST), is an API that delivers an application on top of a Postgres database.

CVE-2025-58745 CVSS 9.9

WeGIA is a Web manager for charitable institutions.

The Volkov Labs Business Links panel for Grafana provides an interface to navigate using external links, internal dashboards, time picker...

CVE-2025-9113 CVSS 9.8

The Doccure Core plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'doccure_temp_up...

CVE-2025-9114 CVSS 9.8

The Doccure theme for WordPress is vulnerable to Arbitrary User Password Change in versions up to, and including, 1.5.0.

View critical disclosures

cvelogic Threat Intelligence