VulnSea

Weekly digest

Week 11, 2025 (10–16 Mar)

25 new CVEs this week, in line with the recent average. Severity skewed high: 1 critical and 14 high, 60% of the total. 6 arrived with exploitation evidence or public exploit code already attached. CISA added 2 CVEs to the Known Exploited Vulnerabilities catalog. linux was the most-affected vendor with 10.

25
New CVEs
1
Critical
2
KEV additions
0
Records changed

Added to CISA KEV

Confirmed exploitation in the wild — federal remediation deadlines attach to these.

New this week, ranked by depth score

The 12 that matter most of the 25 published.

CVE-2025-30066High· 8.6CISA KEVPoC
1y ago

tj-actions changed-files before 46 allows remote attackers to discover secrets by reading actions logs

tj-actions changed-files before 46 allows remote attackers to discover secrets by reading actions logs. (The tags v1 through v45.0.7 were affected on 2025-03-14 and 2025-03-15 because they were modified by a threat actor to point at comm…

▾ Abyssaltj-actions · changed-filesEPSS 72%via NVD
CVE-2025-26633High· 7.0CISA KEV0dayPoC
1y ago

Improper neutralization in Microsoft Management Console allows an unauthorized attacker to bypass a security feature locally.

Improper neutralization in Microsoft Management Console allows an unauthorized attacker to bypass a security feature locally.

▾ Abyssalmicrosoft · windows_10_1507EPSS 30%via NVD
CVE-2025-24993High· 7.8CISA KEV0day
1y ago

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

▾ Abyssalmicrosoft · windows_10_1507EPSS 2.2%via NVD
CVE-2023-52927High· 7.8PoC
1y ago

In the Linux kernel, the following vulnerability has been resolved: netfilter: allow exp not to be removed in nf_ct_find_expectation Currently nf_conntrack_in() calling nf_ct_find_expectation() will remove the exp from the hash table

In the Linux kernel, the following vulnerability has been resolved: netfilter: allow exp not to be removed in nf_ct_find_expectation Currently nf_conntrack_in() calling nf_ct_find_expectation() will remove the exp from the hash table. …

▾ Midnightlinux · linux_kernelEPSS 0.31%via NVD
CVE-2024-8176High· 7.5PoC
1y ago

A stack overflow vulnerability exists in the libexpat library due to the way it handles recursive entity expansion in XML documents

A stack overflow vulnerability exists in the libexpat library due to the way it handles recursive entity expansion in XML documents. When parsing an XML document with deeply nested entity references, libexpat can be forced to recurse ind…

▾ MidnightRed Hat · libexpatEPSS 1.3%via NVD
CVE-2025-21850Critical· 9.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: nvmet: Fix crash when a namespace is disabled The namespace percpu counter protects pending I/O, and we can only safely diable the namespace once the counter drop to z…

In the Linux kernel, the following vulnerability has been resolved: nvmet: Fix crash when a namespace is disabled The namespace percpu counter protects pending I/O, and we can only safely diable the namespace once the counter drop to z…

▾ Midnightlinux · linux_kernelEPSS 0.41%via NVD
CVE-2025-1550HighPoC
1y ago

Arbitrary Code Execution via Crafted Keras Config for Model Loading

Arbitrary Code Execution via Crafted Keras Config for Model Loading

▾ Midnightkeras · kerasEPSS 2.6%via OSV
CVE-2025-21855High· 8.6
1y ago

In the Linux kernel, the following vulnerability has been resolved: ibmvnic: Don't reference skb after sending to VIOS Previously, after successfully flushing the xmit buffer to VIOS, the tx_bytes stat was incremented by the length of …

In the Linux kernel, the following vulnerability has been resolved: ibmvnic: Don't reference skb after sending to VIOS Previously, after successfully flushing the xmit buffer to VIOS, the tx_bytes stat was incremented by the length of …

▾ Twilightlinux · linux_kernelEPSS 0.43%via NVD
CVE-2024-56182High· 8.2
1y ago

A vulnerability has been identified in SIMATIC Field PG M5 (All versions), SIMATIC Field PG M6 (All versions < V26.01.12), SIMATIC IPC BX-21A (All versions < V31.01.07), SIMATIC IPC BX-32A (All versions < V29.01.07), SIMATIC IPC BX-39A (…

A vulnerability has been identified in SIMATIC Field PG M5 (All versions), SIMATIC Field PG M6 (All versions < V26.01.12), SIMATIC IPC BX-21A (All versions < V31.01.07), SIMATIC IPC BX-32A (All versions < V29.01.07), SIMATIC IPC BX-39A (…

▾ TwilightSiemens · SIMATIC Field PG M5EPSS 0.21%via NVD
CVE-2024-56181High· 8.2
1y ago

A vulnerability has been identified in SIMATIC Field PG M5 (All versions), SIMATIC IPC BX-21A (All versions < V31.01.07), SIMATIC IPC BX-32A (All versions < V29.01.07), SIMATIC IPC BX-39A (All versions < V29.01.07), SIMATIC IPC BX-59A (A…

A vulnerability has been identified in SIMATIC Field PG M5 (All versions), SIMATIC IPC BX-21A (All versions < V31.01.07), SIMATIC IPC BX-32A (All versions < V29.01.07), SIMATIC IPC BX-39A (All versions < V29.01.07), SIMATIC IPC BX-59A (A…

▾ TwilightSiemens · SIMATIC Field PG M5EPSS 0.21%via NVD
CVE-2025-21863High· 7.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: io_uring: prevent opcode speculation sqe->opcode is used for different tables, make sure we santitise it against speculations.

In the Linux kernel, the following vulnerability has been resolved: io_uring: prevent opcode speculation sqe->opcode is used for different tables, make sure we santitise it against speculations.

▾ Twilightlinux · linux_kernelEPSS 0.23%via NVD
CVE-2025-21851High· 7.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix softlockup in arena_map_free on 64k page kernel On an aarch64 kernel with CONFIG_PAGE_SIZE_64KB=y, arena_htab tests cause a segmentation fault and soft lockup…

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix softlockup in arena_map_free on 64k page kernel On an aarch64 kernel with CONFIG_PAGE_SIZE_64KB=y, arena_htab tests cause a segmentation fault and soft lockup…

▾ Twilightlinux · linux_kernelEPSS 0.17%via NVD

Most-affected vendors

By CVEs published in the period.