VulnSea

Daily digest

Thursday 5 February 2026

8 new CVEs this day, in line with the recent average. Of those, 2 high. CISA added one CVE to the Known Exploited Vulnerabilities catalog.

8
New CVEs
0
Critical
1
KEV additions
0
Records changed

Added to CISA KEV

Confirmed exploitation in the wild — federal remediation deadlines attach to these.

New this day, ranked by depth score

The 8 that matter most of the 8 published.

CVE-2025-61732High· 8.6
7mo ago

A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.

A discrepancy between how Go and C/C++ comments were parsed allowed for code smuggling into the resulting cgo binary.

▾ Twilightgolang · goEPSS 0.49%via NVD
CVE-2026-1707High· 7.4
7mo ago

pgadmin4 affected by a Restore restriction bypass via key disclosure vulnerability

pgadmin4 affected by a Restore restriction bypass via key disclosure vulnerability

▾ Twilightpgadmin4 · pgadmin4EPSS 0.42%via OSV
CVE-2025-12131Medium· 6.5
7mo ago

A truncated 802.15.4 packet can lead to an assert, resulting in a denial of service.

A truncated 802.15.4 packet can lead to an assert, resulting in a denial of service.

▾ Sunlitsilabs · simplicity_software_development_kitEPSS 0.22%via NVD
CVE-2026-25516Medium· 6.1
7mo ago

NiceGUI's XSS vulnerability in ui.markdown() allows arbitrary JavaScript execution through unsanitized HTML content

NiceGUI's XSS vulnerability in ui.markdown() allows arbitrary JavaScript execution through unsanitized HTML content

▾ Sunlitnicegui · niceguiEPSS 0.29%via OSV
CVE-2020-37131Medium· 6.2
7mo ago

Nsauditor Product Key Explorer 4.2.2.0 contains a denial of service vulnerability that allows local attackers to crash the application by inputting a specially crafted registration key

Nsauditor Product Key Explorer 4.2.2.0 contains a denial of service vulnerability that allows local attackers to crash the application by inputting a specially crafted registration key. Attackers can generate a payload of 1000 bytes of r…

▾ Sunlitnsasoft · product_key_explorerEPSS 0.24%via NVD
CVE-2020-37121Medium· 5.5
7mo ago

CODE::BLOCKS 16.01 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by overwriting Structured Exception Handler with crafted Unicode characters

CODE::BLOCKS 16.01 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by overwriting Structured Exception Handler with crafted Unicode characters. Attackers can create a malicious text file with 1982…

▾ SunlitEPSS 0.21%via NVD
CVE-2026-25198Medium· 4.7
7mo ago

web2py has an Open Redirect Vulnerability

web2py has an Open Redirect Vulnerability

▾ Sunlitweb2py · web2pyEPSS 0.31%via OSV
CVE-2025-68121None
7mo ago

Unexpected session resumption in crypto/tls

Unexpected session resumption in crypto/tls

▾ Sunlitstdlib · stdlibEPSS 0.86%via OSV

Most-affected vendors

By CVEs published in the period.