VulnSea

Weekly digest

Week 39, 2025 (22–28 Sep)

28 new CVEs this week, in line with the recent average. Of those, 1 critical and 11 high. 6 arrived with exploitation evidence or public exploit code already attached. CISA added one CVE to the Known Exploited Vulnerabilities catalog. cisco was the most-affected vendor with 8.

28
New CVEs
1
Critical
1
KEV additions
0
Records changed

Added to CISA KEV

Confirmed exploitation in the wild — federal remediation deadlines attach to these.

New this week, ranked by depth score

The 12 that matter most of the 28 published.

CVE-2025-10585Critical· 9.8CISA KEV0dayPoC
12mo ago

Type confusion in V8 in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page

Type confusion in V8 in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

Hadalgoogle · chromeEPSS 5.4%via NVD
CVE-2025-10951High· 7.3PoC
12mo ago

ml-logger has path traversal in the file argument

ml-logger has path traversal in the file argument

Midnightml-logger · ml-loggerEPSS 0.61%via OSV
CVE-2025-55888High· 7.3PoC
1y ago

Cross-Site Scripting (XSS) vulnerability was discovered in the Ajax transaction manager endpoint of ARD

Cross-Site Scripting (XSS) vulnerability was discovered in the Ajax transaction manager endpoint of ARD. An attacker can intercept the Ajax response and inject malicious JavaScript into the accountName field. This input is not properly s…

Midnightard · gec_en_ligneEPSS 0.44%via NVD
CVE-2025-9900High· 8.8
12mo ago

A flaw was found in Libtiff

A flaw was found in Libtiff. This vulnerability is a "write-what-where" condition, triggered when the library processes a specially crafted TIFF image file. By providing an abnormally large image height value in the file's metadata, an …

TwilightEPSS 0.79%via NVD
CVE-2025-55885Medium· 6.3PoC
1y ago

SQL Injection vulnerability in Alpes Recherche et Developpement ARD GEC en Lign before v.2025-04-23 allows a remote attacker to escalate privileges via the GET parameters in index.php

SQL Injection vulnerability in Alpes Recherche et Developpement ARD GEC en Lign before v.2025-04-23 allows a remote attacker to escalate privileges via the GET parameters in index.php

Twilightard · gec_en_ligneEPSS 0.36%via NVD
CVE-2025-55887Medium· 6.1PoC
1y ago

Cross-Site Scripting (XSS) vulnerability was discovered in the meal reservation service ARD

Cross-Site Scripting (XSS) vulnerability was discovered in the meal reservation service ARD. The vulnerability exists in the transactionID GET parameter on the transaction confirmation page. Due to improper input validation and output en…

Twilightard · gec_en_ligneEPSS 0.35%via NVD
CVE-2025-20160High· 8.1
12mo ago

A vulnerability in the implementation of the TACACS+ protocol in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to view sensitive data or bypass authentication

A vulnerability in the implementation of the TACACS+ protocol in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to view sensitive data or bypass authentication. This vulnerability exists …

Twilightcisco · iosEPSS 0.43%via NVD
CVE-2025-20327High· 7.7
12mo ago

A vulnerability in the web UI of Cisco IOS Software could allow an authenticated, remote attacker with low privileges to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper input vali…

A vulnerability in the web UI of Cisco IOS Software could allow an authenticated, remote attacker with low privileges to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper input vali…

Twilightcisco · iosEPSS 0.39%via NVD
CVE-2025-20312High· 7.7
12mo ago

A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability i…

A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability i…

Twilightcisco · ios_xeEPSS 0.39%via NVD
CVE-2025-5962High· 7.7
1y ago

A flaw was found in the Lightspeed history service

A flaw was found in the Lightspeed history service. Insufficient access controls allow a local, unprivileged user to access and manipulate the chat history of another user on the same system. By abusing inter-process communication calls…

TwilightEPSS 0.23%via NVD
CVE-2025-11021High· 7.5
12mo ago

A flaw was found in the cookie date handling logic of the libsoup HTTP library, widely used by GNOME and other applications for web communication

A flaw was found in the cookie date handling logic of the libsoup HTTP library, widely used by GNOME and other applications for web communication. When processing cookies with specially crafted expiration dates, the library may perform a…

TwilightEPSS 0.64%via NVD
CVE-2025-10952Medium· 5.3PoC
12mo ago

ml-logger file handler allows reading arbitrary files

ml-logger file handler allows reading arbitrary files

Twilightml-logger · ml-loggerEPSS 0.37%via OSV

Most-affected vendors

By CVEs published in the period.