Oct 17, 2025 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • 10 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Critical exposure

CVE-2025-62168 Squid is a caching proxy for the Web.

  • CVSS 10

New critical Squid-cache Squid Info Disclosure (CVSS 10) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2025-11925 Azure-access Blu-ic2 Firmware

  • CVSS 10

New critical disclosure (CVSS 10) — high severity with a short public awareness window before exploit material typically surfaces.

Critical exposure

CVE-2025-62645 Rbi Restaurant Brands International Assistant privilege escalation

  • CVSS 9.9
  • Potential privilege escalation to admin/root

New critical Rbi Restaurant Brands International Assistant privilege escalation (CVSS 9.9) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

Nothing flagged in this category for this digest.

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2025-11925 CVSS 10

Incorrect Content-Type header in one of the APIs (`text/html` instead of `application/json`) replies may potentially allow injection of H...

CVE-2025-56218 CVSS 9.8

An arbitrary file upload vulnerability in SigningHub v8.6.8 allows attackers to execute arbitrary code via uploading a crafted PDF file.

CVE-2025-56221 CVSS 9.8

A lack of rate limiting in the login mechanism of SigningHub v8.6.8 allows attackers to bypass authentication via a brute force attack.

CVE-2025-56316 CVSS 9.8

A SQL injection vulnerability in the content_title parameter of the /cms/content/list endpoint in MCMS 5.5.0 allows remote attackers to e...

CVE-2025-60279 CVSS 9.6

A server-side request forgery (SSRF) vulnerability in Illia Cloud illia-Builder before v4.8.5 allows authenticated users to send arbitrar...

CVE-2025-62353 CVSS 9.8

A path traversal vulnerability in all versions of the Windsurf IDE enables a threat actor to read and write arbitrary local files in and...

CVE-2025-62515 CVSS 9.8

pyquokka is a framework for making data lakes work for time series.

CVE-2025-62645 CVSS 9.9

The Restaurant Brands International (RBI) assistant platform through 2025-09-06 allows a remote authenticated attacker to obtain a token...

CVE-2025-8414 CVSS 9.4

Due to improper input validation, a buffer overflow vulnerability is present in Zigbee EZSP Host Applications.

View critical disclosures

cvelogic Threat Intelligence