Daily digest
Monday 12 January 2026
A quiet day: only 10 new CVEs against a recent average of about 45. Severity skewed high: 2 critical and 4 high, 60% of the total. 2 arrived with exploitation evidence or public exploit code already attached.
New this day, ranked by depth score
The 10 that matter most of the 10 published.
CVE-2025-63314Critical· 10.0PoCA static password reset token in the password reset function of DDSN Interactive Acora CMS v10.7.1 allows attackers to arbitrarily reset the user password and execute a full account takeover via a replay attack.
A static password reset token in the password reset function of DDSN Interactive Acora CMS v10.7.1 allows attackers to arbitrarily reset the user password and execute a full account takeover via a replay attack.
CVE-2025-29329Critical· 9.8Buffer Overflow in the ippprint (Internet Printing Protocol) service in Sagemcom F@st 3686 MAGYAR_4.121.0 allows remote attacker to execute arbitrary code by sending a crafted HTTP request.
Buffer Overflow in the ippprint (Internet Printing Protocol) service in Sagemcom F@st 3686 MAGYAR_4.121.0 allows remote attacker to execute arbitrary code by sending a crafted HTTP request.
CVE-2025-15514High· 7.5PoCOllama 0.11.5-rc0 through current version 0.13.5 contain a null pointer dereference vulnerability in the multi-modal model image processing functionality
Ollama 0.11.5-rc0 through current version 0.13.5 contain a null pointer dereference vulnerability in the multi-modal model image processing functionality. When processing base64-encoded image data via the /api/chat endpoint, the applicat…
CVE-2026-22771High· 8.8Envoy Gateway is an open source project for managing Envoy Proxy as a standalone or Kubernetes-based application gateway
Envoy Gateway is an open source project for managing Envoy Proxy as a standalone or Kubernetes-based application gateway. Prior to 1.5.7 and 1.6.2, EnvoyExtensionPolicy Lua scripts executed by Envoy proxy can be used to leak the proxy's …
CVE-2025-14279High· 8.1MLFlow is vulnerable to DNS rebinding attacks due to a lack of Origin header validation
MLFlow is vulnerable to DNS rebinding attacks due to a lack of Origin header validation
CVE-2026-22033HighLabel Studio is vulnerable to full account takeover by chaining Stored XSS + IDOR in User Profile via custom_hotkeys field
Label Studio is vulnerable to full account takeover by chaining Stored XSS + IDOR in User Profile via custom_hotkeys field
CVE-2026-22251Medium· 5.3Weblate wlc has insecure API key configuration
Weblate wlc has insecure API key configuration
CVE-2026-22250Low· 2.5Weblate command-line client susceptible to SSL verification skip
Weblate command-line client susceptible to SSL verification skip
MAL-2026-237NoneMalicious code in formater (PyPI)
Malicious code in formater (PyPI)
MAL-2026-236NoneMalicious code in graponater (PyPI)
Malicious code in graponater (PyPI)
Most-affected vendors
By CVEs published in the period.