VulnSea

Weekly digest

Week 10, 2025 (3–9 Mar)

A busier-than-usual week with 37 new CVEs (recent average about 32). Severity skewed high: 4 critical and 17 high, 57% of the total. 3 arrived with exploitation evidence or public exploit code already attached. CISA added one CVE to the Known Exploited Vulnerabilities catalog. linux was the most-affected vendor with 14.

37
New CVEs
4
Critical
1
KEV additions
0
Records changed

Added to CISA KEV

Confirmed exploitation in the wild — federal remediation deadlines attach to these.

New this week, ranked by depth score

The 12 that matter most of the 37 published.

CVE-2024-48248High· 8.6CISA KEVPoC
1y ago

NAKIVO Backup & Replication before 11.0.0.88174 allows absolute path traversal for reading files via getImageByPath to /c/router (this may lead to remote code execution across the enterprise because PhysicalDiscovery has cleartext creden…

NAKIVO Backup & Replication before 11.0.0.88174 allows absolute path traversal for reading files via getImageByPath to /c/router (this may lead to remote code execution across the enterprise because PhysicalDiscovery has cleartext creden…

▾ Abyssalnakivo · backup_&_replication_directorEPSS 94%via NVD
CVE-2025-22225High· 8.2CISA KEV0day
1y ago

VMware ESXi contains an arbitrary write vulnerability. A malicious actor with privileges within the VMX process may trigger an arbitrary kernel write leading to an escape of the sandbox.

VMware ESXi contains an arbitrary write vulnerability. A malicious actor with privileges within the VMX process may trigger an arbitrary kernel write leading to an escape of the sandbox.

▾ Abyssalvmware · cloud_foundationEPSS 1.00%via NVD
CVE-2025-1716Critical· 9.8PoC
1y ago

picklescan before 0.0.22 only considers standard pickle file extensions in the scope for its vulnerability scan. An attacker could craft …

picklescan before 0.0.22 only considers standard pickle file extensions in the scope for its vulnerability scan. An attacker could craft a malicious model that uses Pickle and include a malicious pickle file with a non-standard file exte…

▾ Abyssalpicklescan · picklescanEPSS 1.7%via OSV
CVE-2025-21829Critical· 9.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix the warning "__rxe_cleanup+0x12c/0x170 [rdma_rxe]" The Call Trace is as below: " <TASK> ? show_regs.cold+0x1a/0x1f ? __rxe_cleanup+0x12c/0x170 [rdm…

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix the warning "__rxe_cleanup+0x12c/0x170 [rdma_rxe]" The Call Trace is as below: " <TASK> ? show_regs.cold+0x1a/0x1f ? __rxe_cleanup+0x12c/0x170 [rdm…

▾ Midnightlinux · linux_kernelEPSS 0.40%via NVD
CVE-2025-25362Critical· 9.8
1y ago

Spacy-LLM Server-Side Template Injection (SSTI) vulnerability

Spacy-LLM Server-Side Template Injection (SSTI) vulnerability

▾ Midnightspacy-llm · spacy-llmEPSS 0.80%via OSV
CVE-2025-26988Critical· 9.3
1y ago

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Cozy Vision SMS Alert Order Notifications sms-alert allows SQL Injection.This issue affects SMS Alert Order Notifications: from n/a thr…

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Cozy Vision SMS Alert Order Notifications sms-alert allows SQL Injection.This issue affects SMS Alert Order Notifications: from n/a thr…

▾ Midnightcozyvision · sms_alert_order_notificationsEPSS 0.51%via NVD
CVE-2025-21828High· 8.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: don't flush non-uploaded STAs If STA state is pre-moved to AUTHORIZED (such as in IBSS scenarios) and insertion fails, the station is freed. In this ca…

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: don't flush non-uploaded STAs If STA state is pre-moved to AUTHORIZED (such as in IBSS scenarios) and insertion fails, the station is freed. In this ca…

▾ Twilightlinux · linux_kernelEPSS 0.22%via NVD
CVE-2025-23368High· 8.1
1y ago

A flaw was found in Wildfly Elytron integration

A flaw was found in Wildfly Elytron integration. The component does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame, making it more susceptible to brute force attacks via CLI.

▾ Twilightredhat · wildfly_coreEPSS 0.87%via NVD
CVE-2025-21842High· 7.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: amdkfd: properly free gang_ctx_bo when failed to init user queue The destructor of a gtt bo is declared as void amdgpu_amdkfd_free_gtt_mem(struct amdgpu_device *adev, …

In the Linux kernel, the following vulnerability has been resolved: amdkfd: properly free gang_ctx_bo when failed to init user queue The destructor of a gtt bo is declared as void amdgpu_amdkfd_free_gtt_mem(struct amdgpu_device *adev, …

▾ Twilightlinux · linux_kernelEPSS 0.24%via NVD
CVE-2025-21836High· 7.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: io_uring/kbuf: reallocate buf lists on upgrade IORING_REGISTER_PBUF_RING can reuse an old struct io_buffer_list if it was created for legacy selected buffer and has be…

In the Linux kernel, the following vulnerability has been resolved: io_uring/kbuf: reallocate buf lists on upgrade IORING_REGISTER_PBUF_RING can reuse an old struct io_buffer_list if it was created for legacy selected buffer and has be…

▾ Twilightlinux · linux_kernelEPSS 0.25%via NVD
CVE-2025-21832High· 7.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: block: don't revert iter for -EIOCBQUEUED blkdev_read_iter() has a few odd checks, like gating the position and count adjustment on whether or not the result is bigger…

In the Linux kernel, the following vulnerability has been resolved: block: don't revert iter for -EIOCBQUEUED blkdev_read_iter() has a few odd checks, like gating the position and count adjustment on whether or not the result is bigger…

▾ Twilightlinux · linux_kernelEPSS 0.19%via NVD
CVE-2025-21827High· 7.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: mediatek: Add locks for usb_driver_claim_interface() The documentation for usb_driver_claim_interface() says that "the device lock" is needed when th…

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: mediatek: Add locks for usb_driver_claim_interface() The documentation for usb_driver_claim_interface() says that "the device lock" is needed when th…

▾ Twilightlinux · linux_kernelEPSS 0.15%via NVD

Most-affected vendors

By CVEs published in the period.