Cyber Threat Digest – 2025-10-06
🔥 Known Exploited Vulnerabilities (CISA KEV)
8 exploited vulns of note.
- CVE-2014-6278 — GNU Bash OS Command Injection Vulnerability — GNU GNU Bash (Added: 2025-10-02) — Details
- CVE-2017-1000353 — Jenkins Remote Code Execution Vulnerability — Jenkins Jenkins (Added: 2025-10-02) — Details
- CVE-2015-7755 — Juniper ScreenOS Improper Authentication Vulnerability — Juniper ScreenOS (Added: 2025-10-02) — Details
- CVE-2025-21043 — Samsung Mobile Devices Out-of-Bounds Write Vulnerability — Samsung Mobile Devices (Added: 2025-10-02) — Details
- CVE-2025-4008 — Smartbedded Meteobridge Command Injection Vulnerability — Smartbedded Meteobridge (Added: 2025-10-02) — Details
- CVE-2025-32463 — Sudo Inclusion of Functionality from Untrusted Control Sphere Vulnerability — Sudo Sudo (Added: 2025-09-29) — Details
- CVE-2025-59689 — Libraesva Email Security Gateway Command Injection Vulnerability — Libraesva Email Security Gateway (Added: 2025-09-29) — Details
- CVE-2025-10035 — Fortra GoAnywhere MFT Deserialization of Untrusted Data Vulnerability — Fortra GoAnywhere MFT (Added: 2025-09-29) — Details
⚠️ Recent CVEs (NVD)
Latest CVEs with CVSS badges.
- CVE-2025-11291 — A security flaw has been discovered in ixmaps website2017 up to 0c71cffa0162186bc057a76766bc97e9f5a3a2d0. This impacts an unknown function of the file /map.php of the component HTT… MEDIUM 5.3 — Details
- CVE-2025-11292 — A weakness has been identified in Belkin F9K1015 1.00.10. Affected is an unknown function of the file /goform/formBSSetSitesurvey. Executing manipulation of the argument wan_ipaddr… MEDIUM 5.3 — Details
- CVE-2025-11293 — A security vulnerability has been detected in Belkin F9K1015 1.00.10. Affected by this vulnerability is an unknown functionality of the file /goform/formConnectionSetting. The mani… HIGH 7.4 — Details
- CVE-2025-11294 — A vulnerability was detected in Belkin F9K1015 1.00.10. Affected by this issue is some unknown functionality of the file /goform/formL2TPSetup. The manipulation of the argument L2T… HIGH 7.4 — Details
- CVE-2025-11295 — A flaw has been found in Belkin F9K1015 1.00.10. This affects an unknown part of the file /goform/formPPPoESetup. This manipulation of the argument pppUserName causes buffer overfl… HIGH 7.4 — Details
- CVE-2025-11296 — A vulnerability has been found in Belkin F9K1015 1.00.10. This vulnerability affects unknown code of the file /goform/formPPTPSetup. Such manipulation of the argument pptpUserName … HIGH 7.4 — Details
📰 Security News
Top headlines from trusted sources.
- Steam and Microsoft warn of Unity flaw exposing gamers to attacks
— Mon, 06 Oct 2025 13:56:22 GMT - XWorm malware resurfaces with ransomware module, over 35 plugins
— Mon, 06 Oct 2025 11:42:17 GMT - Oracle patches EBS zero-day exploited in Clop data theft attacks
— Mon, 06 Oct 2025 01:37:24 GMT - Hackers exploited Zimbra flaw as zero-day using iCalendar files
— Sun, 05 Oct 2025 14:45:09 GMT - ParkMobile pays... $1 each for 2021 data breach that hit 22 million
— Sun, 05 Oct 2025 12:16:23 GMT - Leaked Apple iPad Pro M5 benchmark shows massive improvements
— Sat, 04 Oct 2025 20:35:48 GMT
Comments
Post a Comment