Monthly Vuln Summary 2025-09 (16)
In-the-Wild CVE Review · 2025-09
16 CVEs were added to the CISA KEV catalog this month (actively exploited; [RANSOMWARE] = tied to ransomware).
本月收录
- CVE-2025-32463 —
0.0— Sudo Sudo — Sudo contains an inclusion of functionality from untrusted control sphere vulnerability. This vulnerability could allow local attacker to leverage sudo’s -R (--chroot) option to ru… [KEV] - CVE-2025-59689 —
0.0— Libraesva Email Security Gateway — Libraesva Email Security Gateway (ESG) contains a command injection vulnerability which allows command injection via a compressed e-mail attachment. [KEV] - CVE-2025-10035 —
0.0— Fortra GoAnywhere MFT — Fortra GoAnywhere MFT contains a deserialization of untrusted data vulnerability allows an actor with a validly forged license response signature to deserialize an arbitrary actor-… [KEV] [RANSOMWARE] - CVE-2025-20352 —
0.0— Cisco IOS and IOS XE — Cisco IOS and IOS XE contains a stack-based buffer overflow vulnerability in the Simple Network Management Protocol (SNMP) subsystem that could allow for denial of service or remot… [KEV] - CVE-2021-21311 —
0.0— Adminer Adminer — Adminer contains a server-side request forgery vulnerability that, when exploited, allows a remote attacker to obtain potentially sensitive information. [KEV] - CVE-2025-20362 —
0.0— Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense — Cisco Secure Firewall Adaptive Security (ASA) Appliance and Secure Firewall Threat Defense (FTD) Software VPN Web Server contain a missing authorization vulnerability. This vulnera… [KEV] - CVE-2025-20333 —
0.0— Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense — Cisco Secure Firewall Adaptive Security (ASA) Appliance and Secure Firewall Threat Defense (FTD) Software VPN Web Server contain a buffer overflow vulnerability that allows for rem… [KEV] - CVE-2025-10585 —
0.0— Google Chromium V8 — Google Chromium contains a type confusion vulnerability in the V8 JavaScript and WebAssembly engine. [KEV] - CVE-2025-5086 —
0.0— Dassault Systèmes DELMIA Apriso — Dassault Systèmes DELMIA Apriso contains a deserialization of untrusted data vulnerability that could lead to a remote code execution. [KEV] - CVE-2025-38352 —
0.0— Linux Kernel — Linux kernel contains a time-of-check time-of-use (TOCTOU) race condition vulnerability that has a high impact on confidentiality, integrity, and availability. [KEV] - CVE-2025-48543 —
0.0— Android Runtime — Android Runtime contains a use-after-free vulnerability potentially allowing a chrome sandbox escape leading to local privilege escalation. [KEV] - CVE-2025-53690 —
0.0— Sitecore Multiple Products — Sitecore Experience Manager (XM), Experience Platform (XP), Experience Commerce (XC), and Managed Cloud contain a deserialization of untrusted data vulnerability involving the use … [KEV] - CVE-2023-50224 —
0.0— TP-Link TL-WR841N — TP-Link TL-WR841N contains an authentication bypass by spoofing vulnerability within the httpd service, which listens on TCP port 80 by default, leading to the disclose of stored c… [KEV] - CVE-2025-9377 —
0.0— TP-Link Multiple Routers — TP-Link Archer C7(EU) and TL-WR841N/ND(MS) contain an OS command injection vulnerability that exists in the Parental Control page. The impacted products could be end-of-life (EoL) … [KEV] - CVE-2020-24363 —
0.0— TP-Link TL-WA855RE — TP-link TL-WA855RE contains a missing authentication for critical function vulnerability. This vulnerability could allow an unauthenticated attacker (on the same network) to submit… [KEV] - CVE-2025-55177 —
0.0— Meta Platforms WhatsApp — Meta Platforms WhatsApp contains an incorrect authorization vulnerability due to an incomplete authorization of linked device synchronization messages. This vulnerability could all… [KEV]
Source: CISA KEV. Auto-compiled by CaptainAI Labs AI agents.