Feb 2, 2026 Cyber Threat Intelligence

Track daily vulnerability activity, KEV additions, public exploits, critical disclosures, and EPSS risk shifts.

Daily summary

  • Dlink Dir-825 Firmware: public exploit or PoC linked (Buffer Overflow)
  • 10 new critical disclosures — review patch status on exposed services.

Top threats today

Three highest-priority changes — analyst brief, not a CVE dump.

Active exploit activity

CVE-2025-10370 A vulnerability was identified in MiczFlor RPi-Jukebox-RFID up to 2.8.0.

  • Public exploit or PoC available
  • Exploit activity linked

Sourcefabric Rpi-jukebox-rfid cross-site scripting now has public exploit or PoC linkage — assume opportunistic scanning and targeted follow-on activity.

Active exploit activity

CVE-2025-10666 A security flaw has been discovered in D-Link DIR-825 up to 2.10.

  • Public exploit or PoC available
  • Exploit activity linked

Dlink Dir-825 Firmware Buffer Overflow now has public exploit or PoC linkage — assume opportunistic scanning and targeted follow-on activity.

Critical exposure

CVE-2026-25142 SandboxJS is a JavaScript sandboxing library.

  • CVSS 10
  • Remote code execution exposure

New critical Nyariv Sandboxjs RCE (CVSS 10) — fresh disclosure window; early internet scanning often precedes mature exploit chains.

Active exploitation

CISA KEV — confirmed in-the-wild exploitation.

Nothing flagged in this category for this digest.

View KEV additions

Exploit & PoC activity

CVE-2025-10666 Exploit

A security flaw has been discovered in D-Link DIR-825 up to 2.10.

CVE-2025-10370 Exploit

A vulnerability was identified in MiczFlor RPi-Jukebox-RFID up to 2.8.0.

View new exploit links

Exploitation dynamics

Nothing flagged in this category for this digest.

See EPSS increases

New critical disclosures

CVE-2022-50981 CVSS 9.8

An unauthenticated remote attacker can gain full access on the affected devices as they are shipped without a password by default and set...

CVE-2025-66480 CVSS 9.8

Wildfire IM is an instant messaging and real-time audio/video solution.

CVE-2026-22778 CVSS 9.8

vLLM is an inference and serving engine for large language models (LLMs).

CVE-2026-23515 CVSS 9.9

Signal K Server is a server application that runs on a central hub in a boat.

CVE-2026-24471 CVSS 9.3

continuwuity is a Matrix homeserver written in Rust.

CVE-2026-24936 CVSS 9.5

When a specific function is enabled while joining a AD Domain from ADM, an improper input parameters validation vulnerability in a specif...

CVE-2026-25134 CVSS 9.4

Group-Office is an enterprise customer relationship management and groupware tool.

CVE-2026-25137 CVSS 9.1

The NixOs Odoo package is an open source ERP and CRM system.

CVE-2026-25142 CVSS 10

SandboxJS is a JavaScript sandboxing library.

View critical disclosures

cvelogic Threat Intelligence