VulnSea

Weekly digest

Week 14, 2025 (31 Mar – 6 Apr)

51 new CVEs this week, in line with the recent average. Severity skewed high: 4 critical and 23 high, 53% of the total. 4 arrived with exploitation evidence or public exploit code already attached. CISA added one CVE to the Known Exploited Vulnerabilities catalog. linux was the most-affected vendor with 19.

51
New CVEs
4
Critical
1
KEV additions
0
Records changed

Added to CISA KEV

Confirmed exploitation in the wild — federal remediation deadlines attach to these.

New this week, ranked by depth score

The 12 that matter most of the 51 published.

CVE-2025-22457Critical· 9.0CISA KEV0dayPoC
1y ago

A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.6, Ivanti Policy Secure before version 22.7R1.4, and Ivanti ZTA Gateways before version 22.8R2.2 allows a remote unauthenticated attacker to achieve remote code…

A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.6, Ivanti Policy Secure before version 22.7R1.4, and Ivanti ZTA Gateways before version 22.8R2.2 allows a remote unauthenticated attacker to achieve remote code…

▾ Hadalivanti · connect_secureEPSS 100%via NVD
CVE-2025-27520Critical· 9.8PoC
1y ago

BentoML Allows Remote Code Execution (RCE) via Insecure Deserialization

BentoML Allows Remote Code Execution (RCE) via Insecure Deserialization

▾ Abyssalbentoml · bentomlEPSS 41%via OSV
CVE-2025-31489HighPoC
1y ago

MinIO performs incomplete signature validation for unsigned-trailer uploads

MinIO performs incomplete signature validation for unsigned-trailer uploads

▾ Midnightminio · github.com/minio/minioEPSS 2.4%via OSV
CVE-2025-21927Critical· 9.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix potential memory corruption in nvme_tcp_recv_pdu() nvme_tcp_recv_pdu() doesn't check the validity of the header length. When header digests are enabled, …

In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: fix potential memory corruption in nvme_tcp_recv_pdu() nvme_tcp_recv_pdu() doesn't check the validity of the header length. When header digests are enabled, …

▾ Midnightlinux · linux_kernelEPSS 0.49%via NVD
CVE-2025-30223Critical· 9.3
1y ago

Beego allows Reflected/Stored XSS in Beego's RenderForm() Function Due to Unescaped User Input

Beego allows Reflected/Stored XSS in Beego's RenderForm() Function Due to Unescaped User Input

▾ Midnightbeego · github.com/beego/beego/v2EPSS 0.59%via OSV
CVE-2025-3015High· 8.8
1y ago

A vulnerability classified as critical has been found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp::ASEImp…

A vulnerability classified as critical has been found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp::ASEImporter::BuildUniqueRepresentation of the file code/AssetLib/ASE/ASELoader.cpp of the component ASE Fi…

▾ Twilightpyassimp · pyassimpEPSS 0.50%via OSV
CVE-2025-3047Medium· 6.5PoC
1y ago

AWS SAM CLI Path Traversal allows file copy to build container

AWS SAM CLI Path Traversal allows file copy to build container

▾ Twilightaws-sam-cli · aws-sam-cliEPSS 0.76%via OSV
CVE-2025-3155High· 7.4
1y ago

A flaw was found in Yelp

A flaw was found in Yelp. The Gnome user help application allows the help document to execute arbitrary scripts. This vulnerability allows malicious users to input help documents, which may exfiltrate user files to an external environment.

▾ Twilightgnome · yelpEPSS 14%via NVD
CVE-2025-3159High· 7.8
1y ago

A vulnerability, which was classified as critical, was found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp:…

A vulnerability, which was classified as critical, was found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp::ASE::Parser::ParseLV4MeshBonesVertices of the file code/AssetLib/ASE/ASEParser.cpp of the component…

▾ Twilightpyassimp · pyassimpEPSS 0.33%via OSV
CVE-2025-21999High· 7.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: proc: fix UAF in proc_get_inode() Fix race between rmmod and /proc/XXX's inode instantiation. The bug is that pde->proc_ops don't belong to /proc, it belongs to a mod…

In the Linux kernel, the following vulnerability has been resolved: proc: fix UAF in proc_get_inode() Fix race between rmmod and /proc/XXX's inode instantiation. The bug is that pde->proc_ops don't belong to /proc, it belongs to a mod…

▾ Twilightlinux · linux_kernelEPSS 0.23%via NVD
CVE-2025-21939High· 7.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: drm/xe/hmm: Don't dereference struct page pointers without notifier lock The pnfs that we obtain from hmm_range_fault() point to pages that we don't have a reference o…

In the Linux kernel, the following vulnerability has been resolved: drm/xe/hmm: Don't dereference struct page pointers without notifier lock The pnfs that we obtain from hmm_range_fault() point to pages that we don't have a reference o…

▾ Twilightlinux · linux_kernelEPSS 0.21%via NVD
CVE-2025-21924High· 7.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: net: hns3: make sure ptp clock is unregister and freed if hclge_ptp_get_cycle returns an error During the initialization of ptp, hclge_ptp_get_cycle might return an er…

In the Linux kernel, the following vulnerability has been resolved: net: hns3: make sure ptp clock is unregister and freed if hclge_ptp_get_cycle returns an error During the initialization of ptp, hclge_ptp_get_cycle might return an er…

▾ Twilightlinux · linux_kernelEPSS 0.21%via NVD

Most-affected vendors

By CVEs published in the period.