VulnSea

Weekly digest

Week 33, 2025 (11–17 Aug)

25 new CVEs this week, in line with the recent average. Of those, 3 critical and 9 high. One arrived with exploitation evidence or public exploit code already attached. CISA added one CVE to the Known Exploited Vulnerabilities catalog. linux was the most-affected vendor with 8.

25
New CVEs
3
Critical
1
KEV additions
0
Records changed

Added to CISA KEV

Confirmed exploitation in the wild — federal remediation deadlines attach to these.

New this week, ranked by depth score

The 12 that matter most of the 25 published.

CVE-2025-25256Critical· 9.8PoC
1y ago

An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] vulnerability in Fortinet FortiSIEM 7.3.0 through 7.3.1, FortiSIEM 7.2.0 through 7.2.5, FortiSIEM 7.1.0 through 7.1.7, F…

An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] vulnerability in Fortinet FortiSIEM 7.3.0 through 7.3.1, FortiSIEM 7.2.0 through 7.2.5, FortiSIEM 7.1.0 through 7.1.7, F…

Abyssalfortinet · fortisiemEPSS 65%via NVD
CVE-2023-3867Critical· 9.1
1y ago

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out of bounds read in smb2_sess_setup ksmbd does not consider the case of that smb2 session setup is in compound request

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out of bounds read in smb2_sess_setup ksmbd does not consider the case of that smb2 session setup is in compound request. If this is the second payload of t…

Midnightlinux · linux_kernelEPSS 5.4%via NVD
CVE-2023-32249Critical· 9.1
1y ago

In the Linux kernel, the following vulnerability has been resolved: ksmbd: not allow guest user on multichannel This patch return STATUS_NOT_SUPPORTED if binding session is guest.

In the Linux kernel, the following vulnerability has been resolved: ksmbd: not allow guest user on multichannel This patch return STATUS_NOT_SUPPORTED if binding session is guest.

Midnightlinux · linux_kernelEPSS 0.35%via NVD
CVE-2025-8747High· 8.8
1y ago

Keras vulnerable to CVE-2025-1550 bypass via reuse of internal functionality

Keras vulnerable to CVE-2025-1550 bypass via reuse of internal functionality

Twilightkeras · kerasEPSS 0.12%via OSV
CVE-2023-4130High· 8.1
1y ago

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix wrong next length validation of ea buffer in smb2_set_ea() There are multiple smb2_ea_info buffers in FILE_FULL_EA_INFORMATION request from client

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix wrong next length validation of ea buffer in smb2_set_ea() There are multiple smb2_ea_info buffers in FILE_FULL_EA_INFORMATION request from client. ksmbd fi…

Twilightlinux · linux_kernelEPSS 0.49%via NVD
CVE-2023-3865High· 8.1
1y ago

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out-of-bound read in smb2_write ksmbd_smb2_check_message doesn't validate hdr->NextCommand

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out-of-bound read in smb2_write ksmbd_smb2_check_message doesn't validate hdr->NextCommand. If ->NextCommand is bigger than Offset + Length of smb2 write, I…

Twilightlinux · linux_kernelEPSS 0.60%via NVD
CVE-2025-38550High· 7.8
1y ago

In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: Delay put pmc->idev in mld_del_delrec() pmc->idev is still used in ip6_mc_clear_src(), so as mld_clear_delrec() does, the reference should be put after ip…

In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: Delay put pmc->idev in mld_del_delrec() pmc->idev is still used in ip6_mc_clear_src(), so as mld_clear_delrec() does, the reference should be put after ip…

Twilightlinux · linux_kernelEPSS 0.16%via NVD
CVE-2025-30033High· 7.8
1y ago

The affected setup component is vulnerable to DLL hijacking

The affected setup component is vulnerable to DLL hijacking. This could allow an attacker to execute arbitrary code when a legitimate user installs an application that uses the affected setup component.

TwilightSiemens · Automation License Manager V6.0EPSS 0.21%via NVD
CVE-2025-38525High· 7.5
1y ago

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix irq-disabled in local_bh_enable() The rxrpc_assess_MTU_size() function calls down into the IP layer to find out the MTU size for a route

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix irq-disabled in local_bh_enable() The rxrpc_assess_MTU_size() function calls down into the IP layer to find out the MTU size for a route. When accepting an…

Twilightlinux · linux_kernelEPSS 0.36%via NVD
CVE-2025-38524High· 7.5
1y ago

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix recv-recv race of completed call If a call receives an event (such as incoming data), the call gets placed on the socket's queue and a thread in recvmsg can…

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix recv-recv race of completed call If a call receives an event (such as incoming data), the call gets placed on the socket's queue and a thread in recvmsg can…

Twilightlinux · linux_kernelEPSS 0.26%via NVD
CVE-2025-71325High
1y ago

Picklescan has pickle parsing logic flaw that leads to malicious pickle file bypass

Picklescan has pickle parsing logic flaw that leads to malicious pickle file bypass

Twilightpicklescan · picklescanEPSS 0.47%via OSV
CVE-2025-55156High
1y ago

PyLoad vulnerable to SQL Injection via API /json/add_package in add_links parameter

PyLoad vulnerable to SQL Injection via API /json/add_package in add_links parameter

Twilightpyload-ng · pyload-ngEPSS 0.33%via OSV

Most-affected vendors

By CVEs published in the period.