Cyber Threat Digest – 2025-08-30
🔥 Known Exploited Vulnerabilities (CISA KEV)
1 exploited vulns of note in the last 48 hours.
- CVE-2025-57819 — Sangoma FreePBX Authentication Bypass Vulnerability — Sangoma FreePBX (Added: 2025-08-29) — Details
⚠️ Recent CVEs (NVD)
Latest CVEs with CVSS badges.
- CVE-2025-9649 — A security vulnerability has been detected in appneta tcpreplay 4.5.1. Impacted is the function calc_sleep_time of the file send_packets.c. Such manipulation leads to divide by zer… MEDIUM 4.8 — Details
- CVE-2025-9650 — A vulnerability has been found in yeqifu carRental up to 3fabb7eae93d209426638863980301d6f99866b3. This affects the function removeFileByPath of the file src/main/java/com/yeqifu/s… MEDIUM 5.3 — Details
- CVE-2025-9651 — A vulnerability was found in shafhasan chatbox up to 156a39cde62f78532c3265a70eda12c70907e56f. This impacts an unknown function of the file /chat.php. The manipulation of the argum… MEDIUM 5.3 — Details
- CVE-2025-54080 — Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. An out-of-bounds read was found in Exiv2 versions 0.28.5… LOW 1.8 — Details
- CVE-2025-55304 — Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. A denial-of-service was found in Exiv2 version 0.28.5: a… LOW 1.8 — Details
- CVE-2025-9652 — A vulnerability was determined in Portabilis i-Educar up to 2.10. Affected is an unknown function of the file /intranet/educar_transferencia_tipo_cad.php of the component Cadastrar… MEDIUM 5.1 — Details
📰 Security News
Top headlines from trusted sources.
- Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager
— Fri, 29 Aug 2025 18:57:04 GMT - Microsoft fixes bug behind Windows certificate enrollment errors
— Fri, 29 Aug 2025 18:02:25 GMT - WhatsApp patches vulnerability exploited in zero-day attacks
— Fri, 29 Aug 2025 16:31:23 GMT - Microsoft to enforce MFA for Azure resource management in October
— Fri, 29 Aug 2025 15:56:47 GMT - Microsoft says recent Windows update didn't kill your SSD
— Fri, 29 Aug 2025 14:21:27 GMT - Google warns Salesloft breach impacted some Workspace accounts
— Thu, 28 Aug 2025 22:09:24 GMT
Comments
Post a Comment