Weekly digest
Week 26, 2025 (23–29 Jun)
17 new CVEs this week, in line with the recent average. Of those, 1 critical and 4 high. 2 arrived with exploitation evidence or public exploit code already attached. CISA added one CVE to the Known Exploited Vulnerabilities catalog. langchain-chatchat was the most-affected vendor with 3.
Added to CISA KEV
Confirmed exploitation in the wild — federal remediation deadlines attach to these.
New this week, ranked by depth score
The 12 that matter most of the 17 published.
CVE-2025-4334Critical· 9.8PoCThe Simple User Registration plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 6.3
The Simple User Registration plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 6.3. This is due to insufficient restrictions on user meta values that can be supplied during registration. Thi…
CVE-2025-5459High· 8.8A user with specific node group editing permissions and a specially crafted class parameter could be used to execute commands as root on the primary host
A user with specific node group editing permissions and a specially crafted class parameter could be used to execute commands as root on the primary host. It affects Puppet Enterprise versions 2018.1.8 through 2023.8.3 and 2025.3 and has…
CVE-2025-53002High· 8.3LLaMA-Factory allows Code Injection through improper vhead_file safeguards
LLaMA-Factory allows Code Injection through improper vhead_file safeguards
CVE-2025-6032High· 8.3A flaw was found in Podman
A flaw was found in Podman. The podman machine init command fails to verify the TLS certificate when downloading the VM images from an OCI registry. This issue results in a Man In The Middle attack.
CVE-2025-52558HighChangeDetection.io XSS in watch overview
ChangeDetection.io XSS in watch overview
CVE-2025-40910Medium· 6.5Net::IP::LPM version 1.10 for Perl does not properly consider leading zero characters in IP CIDR address strings, which could allow attackers to bypass access control that is based on IP addresses. Leading zeros are used to indicate oct…
Net::IP::LPM version 1.10 for Perl does not properly consider leading zero characters in IP CIDR address strings, which could allow attackers to bypass access control that is based on IP addresses. Leading zeros are used to indicate oct…
CVE-2025-6853Medium· 6.3Langchain-Chatchat has a Path Traversal vulnerability
Langchain-Chatchat has a Path Traversal vulnerability
CVE-2025-45729Medium· 6.3D-Link DIR-823-Pro 1.02 has improper permission control, allowing unauthorized users to turn on and access Telnet services.
D-Link DIR-823-Pro 1.02 has improper permission control, allowing unauthorized users to turn on and access Telnet services.
CVE-2025-6518Medium· 6.3pyspur Incomplete Filtering of Special Elements allowed by SingleLLMCallNode function
pyspur Incomplete Filtering of Special Elements allowed by SingleLLMCallNode function
CVE-2025-34037NonePoCAn OS command injection vulnerability exists in various models of E-Series Linksys routers via the /tmUnblock.cgi and /hndUnblock.cgi endpoints over HTTP on port 8080
An OS command injection vulnerability exists in various models of E-Series Linksys routers via the /tmUnblock.cgi and /hndUnblock.cgi endpoints over HTTP on port 8080. The CGI scripts improperly process user-supplied input passed to the …
CVE-2025-6855Medium· 5.5Langchain-Chatchat vulnerable to path traversal
Langchain-Chatchat vulnerable to path traversal
CVE-2025-5318Medium· 5.4A flaw was found in the libssh library in versions less than 0.11.2
A flaw was found in the libssh library in versions less than 0.11.2. An out-of-bounds read can be triggered in the sftp_handle function due to an incorrect comparison check that permits the function to access memory beyond the valid hand…
Most-affected vendors
By CVEs published in the period.