VulnSea

Daily digest

Tuesday 20 January 2026

A quiet day: only 13 new CVEs against a recent average of about 26. Severity skewed high: 3 critical and 9 high, 92% of the total. 4 arrived with exploitation evidence or public exploit code already attached. oracle was the most-affected vendor with 3.

13
New CVEs
3
Critical
0
KEV additions
0
Records changed

New this day, ranked by depth score

The 12 that matter most of the 13 published.

CVE-2026-21962Critical· 10.0CISA KEVPoC
8mo ago

Vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware (component: Weblogic Server Proxy Plug-in for Apache HTTP Server, Weblogic Server Proxy Plug-in for IIS)

Vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware (component: Weblogic Server Proxy Plug-in for Apache HTTP Server, Weblogic Server Proxy Plug-in for IIS). Supported versio…

▾ Hadaloracle · http_serverEPSS 71%via NVD
CVE-2025-56005Critical· 9.8PoC⚖ disputed
8mo ago

An undocumented and unsafe feature in the PLY (Python Lex-Yacc) library 3.11 allows Remote Code Execution (RCE) via the `picklefile` parameter in the `yacc()` function

An undocumented and unsafe feature in the PLY (Python Lex-Yacc) library 3.11 allows Remote Code Execution (RCE) via the `picklefile` parameter in the `yacc()` function. This parameter accepts a `.pkl` file that is deserialized with `pick…

▾ Abyssaldabeaz · plyEPSS 19%via NVD
CVE-2025-55130Critical· 9.1PoC
8mo ago

A flaw in Node.js’s Permissions model allows attackers to bypass `--allow-fs-read` and `--allow-fs-write` restrictions using crafted relative symlink paths

A flaw in Node.js’s Permissions model allows attackers to bypass `--allow-fs-read` and `--allow-fs-write` restrictions using crafted relative symlink paths. By chaining directories and symlinks, a script granted access only to the curren…

▾ Abyssalnodejs · node.jsEPSS 1.7%via NVD
CVE-2026-23842High· 7.5PoC
8mo ago

ChatterBot Vulnerable to Denial of Service via Database Connection Pool Exhaustion

ChatterBot Vulnerable to Denial of Service via Database Connection Pool Exhaustion

▾ Midnightchatterbot · chatterbotEPSS 0.55%via OSV
CVE-2026-23950High· 8.8
8mo ago

node-tar,a Tar for Node.js, has a race condition vulnerability in versions up to and including 7.5.3

node-tar,a Tar for Node.js, has a race condition vulnerability in versions up to and including 7.5.3. This is due to an incomplete handling of Unicode path collisions in the `path-reservations` system. On case-insensitive or normalizatio…

▾ Twilightisaacs · tarEPSS 0.26%via NVD
CVE-2026-23876High· 8.1
8mo ago

ImageMagick is free and open-source software used for editing and manipulating digital images

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-13 and 6.9.13-38, a heap buffer overflow vulnerability in the XBM image decoder (ReadXBMImage) allows an attacker to w…

▾ Twilightimagemagick · imagemagickEPSS 0.66%via NVD
CVE-2026-22219High· 7.7
8mo ago

Chainlit contain a server-side request forgery (SSRF) vulnerability

Chainlit contain a server-side request forgery (SSRF) vulnerability

▾ Twilightchainlit · chainlitEPSS 5.1%via OSV
CVE-2025-59465High· 7.5
8mo ago

A malformed `HTTP/2 HEADERS` frame with oversized, invalid `HPACK` data can cause Node.js to crash by triggering an unhandled `TLSSocket` error `ECONNRESET`

A malformed `HTTP/2 HEADERS` frame with oversized, invalid `HPACK` data can cause Node.js to crash by triggering an unhandled `TLSSocket` error `ECONNRESET`. Instead of safely closing the connection, the process crashes, enabling a remot…

▾ Twilightnodejs · node.jsEPSS 4.0%via NVD
CVE-2026-23644High
8mo ago

esm.sh has a path traversal in extractPackageTarball enables file writes from malicious packages

esm.sh has a path traversal in extractPackageTarball enables file writes from malicious packages

▾ Twilightesm-dev · github.com/esm-dev/esm.shEPSS 0.55%via OSV
CVE-2026-21945High· 7.5
8mo ago

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security)

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u471, 8u471-b50, 8u471-perf, 11.0.…

▾ Twilightoracle · graalvmEPSS 0.97%via NVD
CVE-2026-21932High· 7.4
8mo ago

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: AWT, JavaFX)

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: AWT, JavaFX). Supported versions that are affected are Oracle Java SE: 8u471, 8u471-b50, 8u471-perf, 11…

▾ Twilightoracle · graalvmEPSS 0.51%via NVD
CVE-2025-55131High· 7.1
8mo ago

A flaw in Node.js's buffer allocation logic can expose uninitialized memory when allocations are interrupted, when using the `vm` module with the timeout option

A flaw in Node.js's buffer allocation logic can expose uninitialized memory when allocations are interrupted, when using the `vm` module with the timeout option. Under specific timing conditions, buffers allocated with `Buffer.alloc` and…

▾ TwilightEPSS 3.5%via NVD

Most-affected vendors

By CVEs published in the period.