VulnSea

Daily digest

Tuesday 23 December 2025

A quiet day: only 5 new CVEs against a recent average of about 25. Severity skewed high: 2 critical and 1 high, 60% of the total. One arrived with exploitation evidence or public exploit code already attached.

5
New CVEs
2
Critical
0
KEV additions
0
Records changed

New this day, ranked by depth score

The 5 that matter most of the 5 published.

CVE-2025-68664Critical· 9.3PoC
9mo ago

langchain-core: LangChain: Arbitrary code execution via serialization injection (CVE-2025-68664)

A flaw was found in LangChain, a framework for building agents and LLM-powered applications. A remote attacker can exploit a serialization injection vulnerability in LangChain's `dumps()` and `dumpd()` functions. This occurs because the fu…

▾ AbyssalRed Hat · Red Hat Ansible Automation Platform 2.5EPSS 43%via CSAF
CVE-2025-67108Critical· 10.0
9mo ago

eProsima Fast-DDS v3.3 was discovered to contain improper validation for ticket revocation, resulting in insecure communications and connections.

eProsima Fast-DDS v3.3 was discovered to contain improper validation for ticket revocation, resulting in insecure communications and connections.

▾ Midnighteprosima · fast_ddsEPSS 0.31%via NVD
CVE-2025-65865High· 7.5
9mo ago

An integer overflow in eProsima Fast-DDS v3.3 allows attackers to cause a Denial of Service (DoS) via a crafted input.

An integer overflow in eProsima Fast-DDS v3.3 allows attackers to cause a Denial of Service (DoS) via a crafted input.

▾ Twilighteprosima · fast_ddsEPSS 0.40%via NVD
CVE-2025-67743Medium· 6.3
9mo ago

Local Deep Research is Vulnerable to Server-Side Request Forgery (SSRF) in Download Service

Local Deep Research is Vulnerable to Server-Side Request Forgery (SSRF) in Download Service

▾ Sunlitlocal-deep-research · local-deep-researchEPSS 0.32%via OSV
CVE-2025-65713Medium
9mo ago

Home Assistant Core before is vulnerable to Directory Traversal

Home Assistant Core before is vulnerable to Directory Traversal

▾ Sunlithomeassistant · homeassistantEPSS 0.40%via OSV

Most-affected vendors

By CVEs published in the period.