Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.
Daily summary
10 new critical disclosures — review patch status on exposed services.
Top threats today
Three highest-priority changes — analyst brief, not a CVE dump.
Critical exposure
CVE-2025-49752Azure Bastion Elevation of Privilege Vulnerability
CVSS 10
Potential privilege escalation to admin/root
New critical Microsoft Azure Bastion Developer privilege escalation (CVSS 10) — fresh disclosure window; early internet scanning often precedes mature exploit chains.
New critical Vishalmathur Institute-of-current-students SQL Injection (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.
Critical exposure
CVE-2025-59245Microsoft SharePoint Online Elevation of Privilege Vulnerability
CVSS 9.8
Potential privilege escalation to admin/root
New critical Microsoft Sharepoint Online privilege escalation (CVSS 9.8) — fresh disclosure window; early internet scanning often precedes mature exploit chains.