VulnSea

Daily digest

Wednesday 7 January 2026

A heavy day: 91 new CVEs, well above the recent average of about 47. Of those, 8 critical and 32 high. 6 arrived with exploitation evidence or public exploit code already attached. qualcomm was the most-affected vendor with 22.

91
New CVEs
8
Critical
0
KEV additions
0
Records changed

New this day, ranked by depth score

The 12 that matter most of the 91 published.

CVE-2025-12543Critical· 9.6PoC
8mo ago

A flaw was found in the Undertow HTTP server core, which is used in WildFly, JBoss EAP, and other Java applications

A flaw was found in the Undertow HTTP server core, which is used in WildFly, JBoss EAP, and other Java applications. The Undertow library fails to properly validate the Host header in incoming HTTP requests.As a result, requests containi…

▾ Abyssalredhat · build_of_apache_camelEPSS 1.4%via NVD
CVE-2025-69264High· 8.8PoC
8mo ago

pnpm is a package manager

pnpm is a package manager. Versions 10.0.0 through 10.25 allow git-hosted dependencies to execute arbitrary code during pnpm install, circumventing the v10 security feature "Dependency lifecycle scripts execution disabled by default". Wh…

▾ Midnightpnpm · pnpmEPSS 1.0%via NVD
CVE-2025-69080High· 8.1PoC
8mo ago

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in JanStudio Gecko gecko allows PHP Local File Inclusion.This issue affects Gecko: from n/a through <= 1.9.8.

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in JanStudio Gecko gecko allows PHP Local File Inclusion.This issue affects Gecko: from n/a through <= 1.9.8.

▾ MidnightEPSS 0.47%via NVD
CVE-2025-15471Critical· 9.8
8mo ago

A vulnerability was detected in TRENDnet TEW-713RE 1.02

A vulnerability was detected in TRENDnet TEW-713RE 1.02. The impacted element is an unknown function of the file /goformX/formFSrvX. The manipulation of the argument SZCMD results in os command injection. It is possible to launch the att…

▾ Midnighttrendnet · tew-713re_firmwareEPSS 14%via NVD
CVE-2026-22189Critical· 9.8
8mo ago

The egg-mkfont utility in Panda3D versions up to and including 1.10.16 contains a stack-based buffer overflow vulnerability due to use of an unbounded sprintf() call with attacker-controlled input

The egg-mkfont utility in Panda3D versions up to and including 1.10.16 contains a stack-based buffer overflow vulnerability due to use of an unbounded sprintf() call with attacker-controlled input. When constructing glyph filenames, egg-…

▾ Midnightcmu · panda3dEPSS 0.51%via NVD
CVE-2025-47552Critical· 9.8
8mo ago

Deserialization of Untrusted Data vulnerability in Digital zoom studio DZS Video Gallery allows Object Injection.This issue affects DZS Video Gallery: from n/a through 12.37.

Deserialization of Untrusted Data vulnerability in Digital zoom studio DZS Video Gallery allows Object Injection.This issue affects DZS Video Gallery: from n/a through 12.37.

▾ MidnightEPSS 0.37%via NVD
CVE-2025-15018Critical· 9.8
8mo ago

The Optional Email plugin for WordPress is vulnerable to Privilege Escalation via Account Takeover in all versions up to, and including, 1.3.11

The Optional Email plugin for WordPress is vulnerable to Privilege Escalation via Account Takeover in all versions up to, and including, 1.3.11. This is due to the plugin not restricting its 'random_password' filter to registration conte…

▾ MidnightEPSS 0.34%via NVD
CVE-2025-69263High· 7.5PoC
8mo ago

pnpm is a package manager

pnpm is a package manager. Versions 10.26.2 and below store HTTP tarball dependencies (and git-hosted tarballs) in the lockfile without integrity hashes. This allows the remote server to serve different content on each install, even when…

▾ MidnightRed Hat · pnpmEPSS 0.48%via NVD
CVE-2025-69222Critical· 9.1
8mo ago

LibreChat is a ChatGPT clone with additional features

LibreChat is a ChatGPT clone with additional features. Version 0.8.1-rc2 is prone to a server-side request forgery (SSRF) vulnerability due to missing restrictions of the Actions feature in the default configuration. LibreChat enables us…

▾ Midnightlibrechat · librechatEPSS 4.7%via NVD
CVE-2025-32303Critical· 9.3
8mo ago

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mojoomla WPCHURCH allows Blind SQL Injection.This issue affects WPCHURCH: from n/a through 2.7.0.

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mojoomla WPCHURCH allows Blind SQL Injection.This issue affects WPCHURCH: from n/a through 2.7.0.

▾ MidnightEPSS 0.27%via NVD
CVE-2025-68637Critical· 9.1
8mo ago

The Uniffle HTTP client is configured to trust all SSL certificates and disables hostname verification by default

The Uniffle HTTP client is configured to trust all SSL certificates and disables hostname verification by default. This insecure configuration exposes all REST API communication between the Uniffle CLI/client and the Uniffle Coordinator…

▾ Midnightapache · uniffleEPSS 0.25%via NVD
CVE-2025-61939High· 8.8
8mo ago

An unused function in MicroServer can start a reverse SSH connection to a vendor registered domain, without mutual authentication

An unused function in MicroServer can start a reverse SSH connection to a vendor registered domain, without mutual authentication. An attacker on the local network with admin access to the web server, and the ability to manipulate DNS re…

▾ Twilightcolumbiaweather · weather_microserver_firmwareEPSS 0.27%via NVD

Most-affected vendors

By CVEs published in the period.