Nov 20, 2025 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • 10 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Critical exposure

CVE-2025-49752 Azure Bastion Elevation of Privilege Vulnerability

  • CVSS 10
  • Potential privilege escalation to admin/root

New critical Microsoft Azure Bastion Developer privilege escalation (CVSS 10) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2025-52410 Vishalmathur Institute-of-current-students SQL Injection

  • CVSS 9.8

New critical Vishalmathur Institute-of-current-students SQL Injection (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Critical exposure

CVE-2025-59245 Microsoft SharePoint Online Elevation of Privilege Vulnerability

  • CVSS 9.8
  • Potential privilege escalation to admin/root

New critical Microsoft Sharepoint Online privilege escalation (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

Nothing flagged in this category for this digest.

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2025-10571 CVSS 9.4

Authentication Bypass Using an Alternate Path or Channel vulnerability in ABB ABB Ability Edgenius.This issue affects ABB Ability Edgeniu...

CVE-2025-34320 CVSS 9.3

BASIS BBj versions prior to 25.00 contain a Jetty-served web endpoint that fails to properly validate or canonicalize input path segments.

CVE-2025-49752 CVSS 10

Azure Bastion Elevation of Privilege Vulnerability

CVE-2025-52410 CVSS 9.8

Institute-of-Current-Students v1.0 contains a time-based blind SQL injection vulnerability in the mydetailsstudent.php endpoint.

CVE-2025-59245 CVSS 9.8

Microsoft SharePoint Online Elevation of Privilege Vulnerability

CVE-2025-60738 CVSS 9.8

An issue in Ilevia EVE X1 Server Firmware Version v4.7.18.0.eden and before Logic Version v6.00 - 2025_07_21 and before allows a remote a...

CVE-2025-63685 CVSS 9.8

Quark Cloud Drive v3.23.2 has a DLL Hijacking vulnerability.

CVE-2025-63807 CVSS 9.8

An issue was discovered in weijiang1994 university-bbs (aka Blogin) in commit 9e06bab430bfc729f27b4284ba7570db3b11ce84 (2025-01-13).

CVE-2025-63888 CVSS 9.8

The read function in file thinkphp\library\think\template\driver\File.php in ThinkPHP 5.0.24 contains a remote code execution vulnerability.

CVE-2025-64310 CVSS 9.3

EPSON WebConfig and Epson Web Control for SEIKO EPSON Projector Products do not restrict excessive authentication attempts.

View critical disclosures

cvelogic Threat Intelligence