NVD disclosure day

Published threat advisories for July 17, 2025

CVE advisoryKnown Exploit

CVE-2025-54068

Livewire Remote Code Execution Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability in Livewire allows unauthenticated attackers to execute remote commands in specific scenarios. This impacts organizations using Livewire v3, potentially leading to unauthorized system access and control. The issue is present in versions prior to 3.6.4, posing a business risk that requires prompt patchin

• CISA KEV

CVE advisoryCRITICAL

CVE-2025-53867

Island Lake WebBatch Remote Code Execution Via Crafted URL

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A critical vulnerability in Island Lake WebBatch enables remote code execution through a crafted URL. This could allow an unauthenticated attacker to run arbitrary code, potentially impacting system integrity and availability. It is important to confirm if this technology is in use and assess its exposure.