VulnSea

Weekly digest

Week 26, 2025 (23–29 Jun)

17 new CVEs this week, in line with the recent average. Of those, 1 critical and 4 high. 2 arrived with exploitation evidence or public exploit code already attached. CISA added one CVE to the Known Exploited Vulnerabilities catalog. langchain-chatchat was the most-affected vendor with 3.

17
New CVEs
1
Critical
1
KEV additions
0
Records changed

Added to CISA KEV

Confirmed exploitation in the wild — federal remediation deadlines attach to these.

New this week, ranked by depth score

The 12 that matter most of the 17 published.

CVE-2025-4334Critical· 9.8PoC
1y ago

The Simple User Registration plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 6.3

The Simple User Registration plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 6.3. This is due to insufficient restrictions on user meta values that can be supplied during registration. Thi…

▾ Abyssalnajeebmedia · memberheroEPSS 2.3%via NVD
CVE-2025-5459High· 8.8
1y ago

A user with specific node group editing permissions and a specially crafted class parameter could be used to execute commands as root on the primary host

A user with specific node group editing permissions and a specially crafted class parameter could be used to execute commands as root on the primary host. It affects Puppet Enterprise versions 2018.1.8 through 2023.8.3 and 2025.3 and has…

▾ Twilightpuppet · puppet_enterpriseEPSS 0.99%via NVD
CVE-2025-53002High· 8.3
1y ago

LLaMA-Factory allows Code Injection through improper vhead_file safeguards

LLaMA-Factory allows Code Injection through improper vhead_file safeguards

▾ Twilightllamafactory · llamafactoryEPSS 1.2%via OSV
CVE-2025-6032High· 8.3
1y ago

A flaw was found in Podman

A flaw was found in Podman. The podman machine init command fails to verify the TLS certificate when downloading the VM images from an OCI registry. This issue results in a Man In The Middle attack.

▾ Twilightcontainers · github.com/containers/podman/v4EPSS 0.48%via NVD
CVE-2025-52558High
1y ago

ChangeDetection.io XSS in watch overview

ChangeDetection.io XSS in watch overview

▾ Twilightchangedetection-io · changedetection-ioEPSS 0.59%via OSV
CVE-2025-40910Medium· 6.5
1y ago

Net::IP::LPM version 1.10 for Perl does not properly consider leading zero characters in IP CIDR address strings, which could allow attackers to bypass access control that is based on IP addresses. Leading zeros are used to indicate oct…

Net::IP::LPM version 1.10 for Perl does not properly consider leading zero characters in IP CIDR address strings, which could allow attackers to bypass access control that is based on IP addresses. Leading zeros are used to indicate oct…

▾ SunlitEPSS 0.31%via NVD
CVE-2025-6853Medium· 6.3
1y ago

Langchain-Chatchat has a Path Traversal vulnerability

Langchain-Chatchat has a Path Traversal vulnerability

▾ Sunlitlangchain-chatchat · langchain-chatchatEPSS 0.55%via OSV
CVE-2025-45729Medium· 6.3
1y ago

D-Link DIR-823-Pro 1.02 has improper permission control, allowing unauthorized users to turn on and access Telnet services.

D-Link DIR-823-Pro 1.02 has improper permission control, allowing unauthorized users to turn on and access Telnet services.

▾ Sunlitdlink · dir-823_pro_firmwareEPSS 0.37%via NVD
CVE-2025-6518Medium· 6.3
1y ago

pyspur Incomplete Filtering of Special Elements allowed by SingleLLMCallNode function

pyspur Incomplete Filtering of Special Elements allowed by SingleLLMCallNode function

▾ Sunlitpyspur · pyspurEPSS 0.39%via OSV
CVE-2025-34037NonePoC
1y ago

An OS command injection vulnerability exists in various models of E-Series Linksys routers via the /tmUnblock.cgi and /hndUnblock.cgi endpoints over HTTP on port 8080

An OS command injection vulnerability exists in various models of E-Series Linksys routers via the /tmUnblock.cgi and /hndUnblock.cgi endpoints over HTTP on port 8080. The CGI scripts improperly process user-supplied input passed to the …

▾ TwilightEPSS 91%via NVD
CVE-2025-6855Medium· 5.5
1y ago

Langchain-Chatchat vulnerable to path traversal

Langchain-Chatchat vulnerable to path traversal

▾ Sunlitlangchain-chatchat · langchain-chatchatEPSS 0.62%via OSV
CVE-2025-5318Medium· 5.4
1y ago

A flaw was found in the libssh library in versions less than 0.11.2

A flaw was found in the libssh library in versions less than 0.11.2. An out-of-bounds read can be triggered in the sftp_handle function due to an incorrect comparison check that permits the function to access memory beyond the valid hand…

▾ Sunlitredhat · openshift_container_platformEPSS 1.7%via NVD

Most-affected vendors

By CVEs published in the period.