VulnSea

Daily digest

Monday 12 January 2026

A quiet day: only 10 new CVEs against a recent average of about 45. Severity skewed high: 2 critical and 4 high, 60% of the total. 2 arrived with exploitation evidence or public exploit code already attached.

10
New CVEs
2
Critical
0
KEV additions
0
Records changed

New this day, ranked by depth score

The 10 that matter most of the 10 published.

CVE-2025-63314Critical· 10.0PoC
8mo ago

A static password reset token in the password reset function of DDSN Interactive Acora CMS v10.7.1 allows attackers to arbitrarily reset the user password and execute a full account takeover via a replay attack.

A static password reset token in the password reset function of DDSN Interactive Acora CMS v10.7.1 allows attackers to arbitrarily reset the user password and execute a full account takeover via a replay attack.

▾ Abyssalddsn · cm3_acora_cmsEPSS 0.29%via NVD
CVE-2025-29329Critical· 9.8
8mo ago

Buffer Overflow in the ippprint (Internet Printing Protocol) service in Sagemcom F@st 3686 MAGYAR_4.121.0 allows remote attacker to execute arbitrary code by sending a crafted HTTP request.

Buffer Overflow in the ippprint (Internet Printing Protocol) service in Sagemcom F@st 3686 MAGYAR_4.121.0 allows remote attacker to execute arbitrary code by sending a crafted HTTP request.

▾ Midnightsagemcom · f@st_3686_firmwareEPSS 0.98%via NVD
CVE-2025-15514High· 7.5PoC
8mo ago

Ollama 0.11.5-rc0 through current version 0.13.5 contain a null pointer dereference vulnerability in the multi-modal model image processing functionality

Ollama 0.11.5-rc0 through current version 0.13.5 contain a null pointer dereference vulnerability in the multi-modal model image processing functionality. When processing base64-encoded image data via the /api/chat endpoint, the applicat…

▾ Midnightollama · ollamaEPSS 0.78%via NVD
CVE-2026-22771High· 8.8
8mo ago

Envoy Gateway is an open source project for managing Envoy Proxy as a standalone or Kubernetes-based application gateway

Envoy Gateway is an open source project for managing Envoy Proxy as a standalone or Kubernetes-based application gateway. Prior to 1.5.7 and 1.6.2, EnvoyExtensionPolicy Lua scripts executed by Envoy proxy can be used to leak the proxy's …

▾ Twilightenvoyproxy · gatewayEPSS 0.63%via NVD
CVE-2025-14279High· 8.1
8mo ago

MLFlow is vulnerable to DNS rebinding attacks due to a lack of Origin header validation

MLFlow is vulnerable to DNS rebinding attacks due to a lack of Origin header validation

▾ Twilightmlflow · mlflowEPSS 0.21%via OSV
CVE-2026-22033High
8mo ago

Label Studio is vulnerable to full account takeover by chaining Stored XSS + IDOR in User Profile via custom_hotkeys field

Label Studio is vulnerable to full account takeover by chaining Stored XSS + IDOR in User Profile via custom_hotkeys field

▾ Twilightlabel-studio · label-studioEPSS 0.28%via OSV
CVE-2026-22251Medium· 5.3
8mo ago

Weblate wlc has insecure API key configuration

Weblate wlc has insecure API key configuration

▾ Sunlitwlc · wlcEPSS 0.19%via OSV
CVE-2026-22250Low· 2.5
8mo ago

Weblate command-line client susceptible to SSL verification skip

Weblate command-line client susceptible to SSL verification skip

▾ Sunlitwlc · wlcEPSS 0.16%via OSV
MAL-2026-237None
8mo ago

Malicious code in formater (PyPI)

Malicious code in formater (PyPI)

▾ Sunlitformater · formatervia OSV
MAL-2026-236None
8mo ago

Malicious code in graponater (PyPI)

Malicious code in graponater (PyPI)

▾ Sunlitgraponater · graponatervia OSV

Most-affected vendors

By CVEs published in the period.