VulnSea

Weekly digest

Week 50, 2025 (8–14 Dec)

A busier-than-usual week with 42 new CVEs (recent average about 36). Of those, 20 high. 5 arrived with exploitation evidence or public exploit code already attached. CISA added one CVE to the Known Exploited Vulnerabilities catalog. usememos was the most-affected vendor with 5.

42
New CVEs
0
Critical
1
KEV additions
0
Records changed

Added to CISA KEV

Confirmed exploitation in the wild — federal remediation deadlines attach to these.

New this week, ranked by depth score

The 12 that matter most of the 42 published.

CVE-2025-14174High· 8.8CISA KEV0dayPoC
9mo ago

Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 143.0.7499.110 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page

Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 143.0.7499.110 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)

AbyssalGoogle · ChromeEPSS 22%via CVEORG
CVE-2025-43520Medium· 5.5CISA KEVPoC
9mo ago

A memory corruption issue was addressed with improved memory handling

A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iPadOS 26.1, macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, macOS Tahoe 26.1, tvOS 26.1, visionOS 26.1, …

MidnightApple · iOS and iPadOSEPSS 0.43%via CVEORG
CVE-2025-67644High· 7.3PoC
9mo ago

LangGraph's SQLite is vulnerable to SQL injection via metadata filter key in SQLite checkpointer list method

LangGraph's SQLite is vulnerable to SQL injection via metadata filter key in SQLite checkpointer list method

Midnightlanggraph-checkpoint-sqlite · langgraph-checkpoint-sqliteEPSS 2.3%via OSV
CVE-2025-66001High· 8.8
9mo ago

NeuVector OpenID Connect is vulnerable to man-in-the-middle (MITM)

NeuVector OpenID Connect is vulnerable to man-in-the-middle (MITM)

Twilightneuvector · github.com/neuvector/neuvectorEPSS 0.37%via OSV
CVE-2025-65530High· 8.8
9mo ago

An eval injection in the malware de-obfuscation routines of CloudLinux ai-bolit before v32.7.4 allows attackers to overwrite arbitrary files as root via scanning a crafted file.

An eval injection in the malware de-obfuscation routines of CloudLinux ai-bolit before v32.7.4 allows attackers to overwrite arbitrary files as root via scanning a crafted file.

Twilightcloudlinux · ai-bolitEPSS 0.30%via NVD
CVE-2025-67505High· 8.4
9mo ago

Race condition in the Okta Java SDK

Race condition in the Okta Java SDK

Twilightokta · com.okta.sdk:okta-sdk-rootEPSS 0.21%via GHSA
CVE-2025-66470Medium· 6.1PoC
9mo ago

NiceGUI Stored/Reflected XSS in ui.interactive_image via unsanitized SVG content

NiceGUI Stored/Reflected XSS in ui.interactive_image via unsanitized SVG content

Twilightnicegui · niceguiEPSS 0.25%via OSV
CVE-2025-14523High· 8.2
9mo ago

A flaw in libsoup’s HTTP header handling allows multiple Host: headers in a request and returns the last occurrence for server-side processing

A flaw in libsoup’s HTTP header handling allows multiple Host: headers in a request and returns the last occurrence for server-side processing. Common front proxies often honor the first Host: header, so this mismatch can cause vhost con…

TwilightEPSS 0.54%via NVD
CVE-2025-48566High· 7.8
9mo ago

In multiple locations, there is a possible permission bypass due to a confused deputy

In multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2025-48565High· 7.8
9mo ago

In multiple locations, there is a possible way to bypass the cross profile intent filter due to a logic error in the code

In multiple locations, there is a possible way to bypass the cross profile intent filter due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction …

Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2025-40307High· 7.8
9mo ago

In the Linux kernel, the following vulnerability has been resolved: exfat: validate cluster allocation bits of the allocation bitmap syzbot created an exfat image with cluster bits not set for the allocation bitmap

In the Linux kernel, the following vulnerability has been resolved: exfat: validate cluster allocation bits of the allocation bitmap syzbot created an exfat image with cluster bits not set for the allocation bitmap. exfat-fs reads and …

TwilightEPSS 0.15%via NVD
CVE-2025-14542High· 7.5
9mo ago

Universal Tool Calling Protocol (UTCP) client library for Python vulnerable to Trust Boundary Violation through Manual JSON specification

Universal Tool Calling Protocol (UTCP) client library for Python vulnerable to Trust Boundary Violation through Manual JSON specification

Twilightutcp · utcpEPSS 0.26%via OSV

Most-affected vendors

By CVEs published in the period.