VulnSea

Daily digest

Wednesday 11 February 2026

A heavy day: 35 new CVEs, well above the recent average of about 16. Severity skewed high: 3 critical and 22 high, 71% of the total. 3 arrived with exploitation evidence or public exploit code already attached. nsasoft was the most-affected vendor with 14.

35
New CVEs
3
Critical
0
KEV additions
0
Records changed

New this day, ranked by depth score

The 12 that matter most of the 35 published.

CVE-2026-26190Critical· 9.8PoC
7mo ago

Milvus: Unauthenticated Access to Restful API on Metrics Port (9091) Leads to Critical System Compromise

Milvus: Unauthenticated Access to Restful API on Metrics Port (9091) Leads to Critical System Compromise

▾ Abyssalmilvus-io · github.com/milvus-io/milvusEPSS 4.0%via OSV
CVE-2025-69872Critical· 9.8
7mo ago

DiskCache (python-diskcache) through 5.6.3 uses Python pickle for serialization by default

DiskCache (python-diskcache) through 5.6.3 uses Python pickle for serialization by default. An attacker with write access to the cache directory can achieve arbitrary code execution when a victim application reads from the cache.

▾ Midnightdiskcache · diskcacheEPSS 0.53%via NVD
CVE-2026-26157High· 7.0PoC
7mo ago

A flaw was found in BusyBox

A flaw was found in BusyBox. Incomplete path sanitization in its archive extraction utilities allows an attacker to craft malicious archives that when extracted, and under specific conditions, may write to files outside the intended dire…

▾ MidnightEPSS 0.60%via NVD
CVE-2026-20677Critical· 9.0
7mo ago

A race condition was addressed with improved handling of symbolic links

A race condition was addressed with improved handling of symbolic links. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPadOS 26.3, macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.3, visionOS 26.3. A shortcu…

▾ Midnightapple · ipadosEPSS 0.29%via NVD
CVE-2026-20615High· 7.8
7mo ago

A path handling issue was addressed with improved validation

A path handling issue was addressed with improved validation. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.3, visionOS 26.3. An app may be able to gain root privileges.

▾ Twilightapple · ipadosEPSS 0.16%via NVD
CVE-2026-25990High· 7.5
7mo ago

Pillow is a Python imaging library

Pillow is a Python imaging library. From 10.3.0 to before 12.1.1, an out-of-bounds write may be triggered when loading a specially crafted PSD image. This vulnerability is fixed in 12.1.1.

▾ Twilightpython · pillowEPSS 0.44%via NVD
CVE-2026-20652High· 7.5
7mo ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.3, iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPadOS 26.3, macOS Tahoe 26.3, visionOS 26.3. A remote attacker may be able to cause a denial-of-service.

▾ Twilightapple · safariEPSS 0.62%via NVD
CVE-2026-1837High· 7.5
7mo ago

A specially-crafted file can cause libjxl's decoder to write pixel data to uninitialized unallocated memory

A specially-crafted file can cause libjxl's decoder to write pixel data to uninitialized unallocated memory. Soon after that data from another uninitialized unallocated region is copied to pixel data. This can be done by requesting colo…

▾ Twilightlibjxl_project · libjxlEPSS 0.29%via NVD
CVE-2026-1669High· 7.5
7mo ago

Arbitrary file read in the model loading mechanism (HDF5 integration) in Keras versions 3.0.0 through 3.13.1 on all supported platforms allows a remote attacker to read local files and disclose sensitive information via a crafted .keras …

Arbitrary file read in the model loading mechanism (HDF5 integration) in Keras versions 3.0.0 through 3.13.1 on all supported platforms allows a remote attacker to read local files and disclose sensitive information via a crafted .keras …

▾ Twilightkeras · kerasEPSS 0.31%via NVD
CVE-2020-37212High· 7.5
7mo ago

SpotMSN 2.4.6 contains a denial of service vulnerability in the registration name input field that allows attackers to crash the application

SpotMSN 2.4.6 contains a denial of service vulnerability in the registration name input field that allows attackers to crash the application. Attackers can generate a 1000-character payload and paste it into the 'Name' field to trigger a…

▾ Twilightnsasoft · spotmsnEPSS 0.29%via NVD
CVE-2020-37211High· 7.5
7mo ago

SpotIM 2.2 contains a denial of service vulnerability that allows attackers to crash the application by inputting a large buffer in the registration name field

SpotIM 2.2 contains a denial of service vulnerability that allows attackers to crash the application by inputting a large buffer in the registration name field. Attackers can generate a 1000-character payload and paste it into the 'Name'…

▾ Twilightnsasoft · spotimEPSS 0.29%via NVD
CVE-2020-37210High· 7.5
7mo ago

SpotIE 2.9.5 contains a denial of service vulnerability in the registration key input that allows attackers to crash the application

SpotIE 2.9.5 contains a denial of service vulnerability in the registration key input that allows attackers to crash the application. Attackers can generate a 1000-character buffer payload and paste it into the 'Key' field to trigger an …

▾ Twilightnsasoft · spotieEPSS 0.29%via NVD

Most-affected vendors

By CVEs published in the period.