VulnSea

Weekly digest

Week 3, 2025 (13–19 Jan)

A heavy week: 43 new CVEs, well above the recent average of about 15. Of those, 2 critical and 17 high. 6 arrived with exploitation evidence or public exploit code already attached. CISA added 2 CVEs to the Known Exploited Vulnerabilities catalog. linux was the most-affected vendor with 13.

43
New CVEs
2
Critical
2
KEV additions
0
Records changed

Added to CISA KEV

Confirmed exploitation in the wild — federal remediation deadlines attach to these.

New this week, ranked by depth score

The 12 that matter most of the 43 published.

CVE-2024-55591Critical· 9.8CISA KEV0dayPoC
1y ago

An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS version 7.0.0 through 7.0.16 and FortiProxy version 7.0.0 through 7.0.19 and 7.2.0 through 7.2.12 allows a remote attacker to gain supe…

An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS version 7.0.0 through 7.0.16 and FortiProxy version 7.0.0 through 7.0.19 and 7.2.0 through 7.2.12 allows a remote attacker to gain supe…

▾ Hadalfortinet · fortiproxyEPSS 94%via NVD
CVE-2024-57727High· 7.5CISA KEVPoC
1y ago

SimpleHelp remote support software v5.5.7 and before is vulnerable to multiple path traversal vulnerabilities that enable unauthenticated remote attackers to download arbitrary files from the SimpleHelp host via crafted HTTP requests

SimpleHelp remote support software v5.5.7 and before is vulnerable to multiple path traversal vulnerabilities that enable unauthenticated remote attackers to download arbitrary files from the SimpleHelp host via crafted HTTP requests. Th…

▾ Abyssalsimple-help · simplehelpEPSS 97%via NVD
CVE-2024-12084Critical· 9.8PoC
1y ago

A heap-based buffer overflow flaw was found in the rsync daemon

A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper handling of attacker-controlled checksum lengths (s2length) in the code. When MAX_DIGEST_LEN exceeds the fixed SUM_LENGTH (16 bytes), an attac…

▾ Abyssalsamba · rsyncEPSS 72%via NVD
CVE-2025-21335High· 7.8CISA KEV0day
1y ago

Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability

Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability

▾ Abyssalmicrosoft · windows_10_21h2EPSS 1.4%via NVD
CVE-2024-12085High· 7.5PoC
1y ago

A flaw was found in rsync which could be triggered when rsync compares file checksums

A flaw was found in rsync which could be triggered when rsync compares file checksums. This flaw allows an attacker to manipulate the checksum length (s2length) to cause a comparison between a checksum and uninitialized memory and leak o…

▾ Midnightsamba · rsyncEPSS 8.8%via NVD
CVE-2024-52281High· 8.9
1y ago

Rancher UI has Stored Cross-site Scripting vulnerability

Rancher UI has Stored Cross-site Scripting vulnerability

▾ Twilightrancher · github.com/rancher/rancherEPSS 0.55%via OSV
CVE-2025-21629High· 8.2
1y ago

In the Linux kernel, the following vulnerability has been resolved: net: reenable NETIF_F_IPV6_CSUM offload for BIG TCP packets The blamed commit disabled hardware offoad of IPv6 packets with extension headers on devices that advertise…

In the Linux kernel, the following vulnerability has been resolved: net: reenable NETIF_F_IPV6_CSUM offload for BIG TCP packets The blamed commit disabled hardware offoad of IPv6 packets with extension headers on devices that advertise…

▾ Twilightlinux · linux_kernelEPSS 0.43%via NVD
CVE-2024-48884High· 7.5
1y ago

A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiManager 7.6.0 through 7.6.1, FortiManager 7.4.1 through 7.4.3, FortiManager Cloud 7.4.1 through 7.4.3, FortiOS 7.6.0, FortiOS…

A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiManager 7.6.0 through 7.6.1, FortiManager 7.4.1 through 7.4.3, FortiManager Cloud 7.4.1 through 7.4.3, FortiOS 7.6.0, FortiOS…

▾ Twilightfortinet · fortimanagerEPSS 15%via NVD
CVE-2024-57917High· 7.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: topology: Keep the cpumask unchanged when printing cpumap During fuzz testing, the following warning was discovered: different return values (15 and 11) from vsnprin…

In the Linux kernel, the following vulnerability has been resolved: topology: Keep the cpumask unchanged when printing cpumap During fuzz testing, the following warning was discovered: different return values (15 and 11) from vsnprin…

▾ Twilightlinux · linux_kernelEPSS 0.22%via NVD
CVE-2025-0474High· 7.7
1y ago

Invoice Ninja is vulnerable to authenticated Server-Side Request Forgery (SSRF) allowing for arbitrary file read and network resource requests as the application user. This issue affects Invoice Ninja: from 5.8.56 through 5.11.23.

Invoice Ninja is vulnerable to authenticated Server-Side Request Forgery (SSRF) allowing for arbitrary file read and network resource requests as the application user. This issue affects Invoice Ninja: from 5.8.56 through 5.11.23.

▾ TwilightEPSS 0.40%via NVD
CVE-2025-21646High· 7.5
1y ago

In the Linux kernel, the following vulnerability has been resolved: afs: Fix the maximum cell name length The kafs filesystem limits the maximum length of a cell to 256 bytes, but a problem occurs if someone actually does that: kafs tr…

In the Linux kernel, the following vulnerability has been resolved: afs: Fix the maximum cell name length The kafs filesystem limits the maximum length of a cell to 256 bytes, but a problem occurs if someone actually does that: kafs tr…

▾ Twilightlinux · linux_kernelEPSS 0.45%via NVD
CVE-2025-23205High
1y ago

nbgrader's `frame-ancestors: self` grants all users access to formgrader

nbgrader's `frame-ancestors: self` grants all users access to formgrader

▾ Twilightnbgrader · nbgraderEPSS 0.47%via OSV

Most-affected vendors

By CVEs published in the period.