VulnSea

Weekly digest

Week 42, 2025 (13–19 Oct)

26 new CVEs this week, in line with the recent average. Of those, 5 critical and 7 high. 3 arrived with exploitation evidence or public exploit code already attached. No new KEV entries. Linux was the most-affected vendor with 5.

26
New CVEs
5
Critical
0
KEV additions
0
Records changed

New this week, ranked by depth score

The 12 that matter most of the 26 published.

CVE-2025-39964High· 7.8CISA KEVPoC
11mo ago

In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - Disallow concurrent writes in af_alg_sendmsg Issuing two writes to the same af_alg socket is bogus as the data will be interleaved in an unpredictable…

In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - Disallow concurrent writes in af_alg_sendmsg Issuing two writes to the same af_alg socket is bogus as the data will be interleaved in an unpredictable…

Abyssallinux · linux_kernelEPSS 0.79%via NVD
CVE-2025-56218Critical· 9.8PoC
11mo ago

An arbitrary file upload vulnerability in SigningHub v8.6.8 allows attackers to execute arbitrary code via uploading a crafted PDF file.

An arbitrary file upload vulnerability in SigningHub v8.6.8 allows attackers to execute arbitrary code via uploading a crafted PDF file.

Abyssalascertia · signinghubEPSS 0.63%via NVD
CVE-2025-34282Critical· 9.1PoC
11mo ago

ThingsBoard versions < 4.2.1 contain a server-side request forgery (SSRF) vulnerability in the dashboard's Image Upload Gallery feature

ThingsBoard versions < 4.2.1 contain a server-side request forgery (SSRF) vulnerability in the dashboard's Image Upload Gallery feature. An attacker can upload a malicious SVG file that references a remote URL. If the server processes th…

Abyssalthingsboard · thingsboardEPSS 1.8%via NVD
CVE-2025-34267Critical· 9.9
11mo ago

Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to insecure use of integrated modules (Puppeteer and Playwright) w…

Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to insecure use of integrated modules (Puppeteer and Playwright) w…

Midnightflowiseai · flowiseEPSS 6.6%via NVD
CVE-2025-11849Critical· 9.3
11mo ago

Mammoth is vulnerable to Directory Traversal

Mammoth is vulnerable to Directory Traversal

Midnightmammoth · mammothEPSS 1.0%via OSV
CVE-2025-54603Critical· 9.0
11mo ago

An incorrect OIDC authentication flow in Claroty Secure Access 3.3.0 through 4.0.2 can result in unauthorized user creation or impersonation of existing OIDC users.

An incorrect OIDC authentication flow in Claroty Secure Access 3.3.0 through 4.0.2 can result in unauthorized user creation or impersonation of existing OIDC users.

MidnightEPSS 0.75%via NVD
CVE-2025-48044High· 8.6
11mo ago

Incorrect Authorization vulnerability in ash-project ash allows Authentication Bypass. This issue affects ash: from 3.6.3 before 3.7.1.

Incorrect Authorization vulnerability in ash-project ash allows Authentication Bypass. This issue affects ash: from 3.6.3 before 3.7.1.

Twilightash-project · ashEPSS 0.66%via NVD
CVE-2025-39978High· 7.8
11mo ago

octeontx2-pf: Fix potential use after free in otx2_tc_add_flow()

In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: Fix potential use after free in otx2_tc_add_flow() This code calls kfree_rcu(new_node, rcu) and then dereferences "new_node" and then dereferences it on …

TwilightLinux · LinuxEPSS 0.15%via CVEORG
CVE-2025-39977High· 7.8
11mo ago

futex: Prevent use-after-free during requeue-PI

In the Linux kernel, the following vulnerability has been resolved: futex: Prevent use-after-free during requeue-PI syzbot managed to trigger the following race: T1 T2 futex_wait_requeue_pi() fute…

TwilightLinux · LinuxEPSS 0.15%via CVEORG
CVE-2025-59043High· 7.5
11mo ago

OpenBao has potential Denial of Service vulnerability when processing malicious unauthenticated JSON requests

OpenBao has potential Denial of Service vulnerability when processing malicious unauthenticated JSON requests

Twilightopenbao · github.com/openbao/openbaoEPSS 0.69%via OSV
CVE-2025-62172High
11mo ago

Home Assistant has Stored XSS vulnerability in Energy dashboard from Energy Entity Name

Home Assistant has Stored XSS vulnerability in Energy dashboard from Energy Entity Name

Twilighthomeassistant · homeassistantEPSS 0.42%via OSV
CVE-2025-7707High· 7.1
11mo ago

llama-index has Insecure Temporary File

llama-index has Insecure Temporary File

Twilightllama-index · llama-indexEPSS 0.19%via OSV

Most-affected vendors

By CVEs published in the period.