VulnSea

Daily digest

Wednesday 11 March 2026

A heavy day: 38 new CVEs, well above the recent average of about 17. Severity skewed high: 8 critical and 17 high, 66% of the total. 7 arrived with exploitation evidence or public exploit code already attached. lenovo was the most-affected vendor with 6.

38
New CVEs
8
Critical
0
KEV additions
0
Records changed

New this day, ranked by depth score

The 12 that matter most of the 38 published.

CVE-2025-67038Critical· 9.8CISA KEVPoC
6mo ago

An issue was discovered in Lantronix EDS5000 2.1.0.0R3

An issue was discovered in Lantronix EDS5000 2.1.0.0R3. The HTTP RPC module executes a shell command to write logs when user's authentication fails. The username is directly concatenated with the command without any sanitization. This al…

▾ Hadallantronix · eds5008_firmwareEPSS 19%via NVD
CVE-2026-31900Critical· 9.8PoC
6mo ago

Black is the uncompromising Python code formatter. Black provides a GitHub action for formatting code. This action supports an option, us…

Black is the uncompromising Python code formatter. Black provides a GitHub action for formatting code. This action supports an option, use_pyproject: true, for reading the version of Black to use from the repository pyproject.toml. A mal…

▾ Abyssalblack · blackEPSS 0.64%via OSV
CVE-2026-23813Critical· 9.8PoC
6mo ago

A vulnerability has been identified in the web-based management interface of AOS-CX switches that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls

A vulnerability has been identified in the web-based management interface of AOS-CX switches that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. In some cases this could enable res…

▾ Abyssalhpe · arubaos-cxEPSS 0.74%via NVD
CVE-2026-31844High· 8.8PoC
6mo ago

An authenticated SQL Injection vulnerability (CWE-89) exists in the Koha staff interface in the /cgi-bin/koha/suggestion/suggestion.pl endpoint due to improper validation of the displayby parameter used by the GetDistinctValues functiona…

An authenticated SQL Injection vulnerability (CWE-89) exists in the Koha staff interface in the /cgi-bin/koha/suggestion/suggestion.pl endpoint due to improper validation of the displayby parameter used by the GetDistinctValues functiona…

▾ Midnightkoha · kohaEPSS 0.57%via NVD
CVE-2026-1524Critical· 9.8
6mo ago

An edgecase in SSO implementation in Neo4j Enterprise edition versions prior to version 2026.02 can lead to unauthorised access under the following conditions: If a neo4j admin configures two or more OIDC providers AND configures one o…

An edgecase in SSO implementation in Neo4j Enterprise edition versions prior to version 2026.02 can lead to unauthorised access under the following conditions: If a neo4j admin configures two or more OIDC providers AND configures one o…

▾ Midnightneo4j · neo4jEPSS 0.32%via NVD
CVE-2025-70082Critical· 9.8
6mo ago

An issue in Lantronix EDS3000PS v.3.1.0.0R2 allows an attacker to execute arbitrary code and obtain sensitive information via the ltrx_evo component

An issue in Lantronix EDS3000PS v.3.1.0.0R2 allows an attacker to execute arbitrary code and obtain sensitive information via the ltrx_evo component

▾ MidnightEPSS 0.46%via NVD
CVE-2025-67041Critical· 9.8
6mo ago

An issue was discovered in Lantronix EDS3000PS 3.1.0.0R2

An issue was discovered in Lantronix EDS3000PS 3.1.0.0R2. The host parameter of the TFTP client in the Filesystem Browser page is not properly sanitized. This can be exploited to escape from the original command and execute an arbitrary …

▾ MidnightEPSS 0.42%via NVD
CVE-2025-67035Critical· 9.8
6mo ago

An issue was discovered in Lantronix EDS5000 2.1.0.0R3

An issue was discovered in Lantronix EDS5000 2.1.0.0R3. The SSH Client and SSH Server pages are affected by multiple OS injection vulnerabilities due to missing sanitization of input parameters. An attacker can inject arbitrary commands …

▾ MidnightEPSS 0.41%via NVD
CVE-2026-3805High· 7.5PoC
6mo ago

When doing a second SMB request to the same host again, curl would wrongly use a data pointer pointing into already freed memory.

When doing a second SMB request to the same host again, curl would wrongly use a data pointer pointing into already freed memory.

▾ Midnighthaxx · curlEPSS 0.95%via NVD
CVE-2025-67039Critical· 9.1
6mo ago

An issue was discovered in Lantronix EDS3000PS 3.1.0.0R2

An issue was discovered in Lantronix EDS3000PS 3.1.0.0R2. The authentication on management pages can be bypassed by appending a specific suffix to the URL and by sending an Authorization header that uses "admin" as the username.

▾ MidnightEPSS 0.44%via NVD
CVE-2026-23814High· 8.8
6mo ago

A vulnerability in the command parameters of a certain AOS-CX CLI command could allow a low-privilege authenticated remote attacker to inject malicious commands resulting in unwanted behavior.

A vulnerability in the command parameters of a certain AOS-CX CLI command could allow a low-privilege authenticated remote attacker to inject malicious commands resulting in unwanted behavior.

▾ Twilighthpe · arubaos-cxEPSS 0.56%via NVD
CVE-2026-20046High· 8.8
6mo ago

A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authenticated, local attacker to elevate privileges and gain full administrative control of an affected device. This vulnerabi…

A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authenticated, local attacker to elevate privileges and gain full administrative control of an affected device. This vulnerabi…

▾ Twilightcisco · ios_xrEPSS 0.14%via NVD

Most-affected vendors

By CVEs published in the period.