VulnSea

Daily digest

Wednesday 25 March 2026

A heavy day: 52 new CVEs, well above the recent average of about 14. Of those, 23 high. 2 arrived with exploitation evidence or public exploit code already attached. Linux was the most-affected vendor with 23.

52
New CVEs
0
Critical
0
KEV additions
0
Records changed

New this day, ranked by depth score

The 12 that matter most of the 52 published.

CVE-2026-27889High· 7.5PoC
6mo ago

NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system

NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Starting in version 2.2.0 and prior to versions 2.11.14 and 2.12.5, a missing sanity check on a WebSockets frame could trigger a server panic…

▾ Midnightlinuxfoundation · nats-serverEPSS 0.84%via NVD
CVE-2025-67030High· 8.8
6mo ago

Directory Traversal vulnerability in the extractFile method of org.codehaus.plexus.util.Expand in plexus-utils before 6d780b3378829318ba5c2d29547e0012d5b29642

Directory Traversal vulnerability in the extractFile method of org.codehaus.plexus.util.Expand in plexus-utils before 6d780b3378829318ba5c2d29547e0012d5b29642. This allows an attacker to execute arbitrary code

▾ Twilightcodehaus-plexus · plexus-utilsEPSS 0.66%via NVD
CVE-2026-33216High· 8.6
6mo ago

NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system

NATS-Server is a High-Performance server for NATS.io, a cloud and edge native messaging system. Prior to versions 2.11.15 and 2.12.6, for MQTT deployments using usercodes/passwords: MQTT passwords are incorrectly classified as a non-auth…

▾ Twilightlinuxfoundation · nats-serverEPSS 0.63%via NVD
CVE-2026-20084High· 8.6
6mo ago

A vulnerability in the DHCP snooping feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause BOOTP packets to be forwarded between VLANs, resulting in a denial of service (DoS) condition

A vulnerability in the DHCP snooping feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause BOOTP packets to be forwarded between VLANs, resulting in a denial of service (DoS) condition. This vulner…

▾ Twilightcisco · ios_xeEPSS 0.35%via NVD
CVE-2026-20012High· 8.6
6mo ago

A vulnerability in the Internet Key Exchange version 2 (IKEv2) feature of Cisco IOS Software, Cisco IOS XE Software, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, and Cisco Secure Firewall Threat Defense (FTD) Softwar…

A vulnerability in the Internet Key Exchange version 2 (IKEv2) feature of Cisco IOS Software, Cisco IOS XE Software, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, and Cisco Secure Firewall Threat Defense (FTD) Softwar…

▾ Twilightcisco · secure_firewall_threat_defenseEPSS 0.35%via NVD
CVE-2026-2072High· 8.2
6mo ago

Cross-Site Scripting vulnerability in Hitachi Infrastructure Analytics Advisor (Analytics probe component), Hitachi Ops Center Analyzer.This issue affects Hitachi Infrastructure Analytics Advisor:; Hitachi Ops Center Analyzer: from 10.0.…

Cross-Site Scripting vulnerability in Hitachi Infrastructure Analytics Advisor (Analytics probe component), Hitachi Ops Center Analyzer.This issue affects Hitachi Infrastructure Analytics Advisor:; Hitachi Ops Center Analyzer: from 10.0.…

▾ Twilighthitachi · infrastructure_analytics_advisorEPSS 0.16%via NVD
CVE-2026-28529High· 7.8
6mo ago

cryptodev-linux version 1.14 and prior contain a page reference handling flaw in the get_userbuf function of the /dev/crypto device driver that allows local users to trigger use-after-free conditions

cryptodev-linux version 1.14 and prior contain a page reference handling flaw in the get_userbuf function of the /dev/crypto device driver that allows local users to trigger use-after-free conditions. Attackers with access to the /dev/cr…

▾ Twilightcryptodev-linux · cryptodev-linuxEPSS 0.18%via NVD
CVE-2026-23392High· 7.8
6mo ago

netfilter: nf_tables: release flowtable after rcu grace period on error

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: release flowtable after rcu grace period on error Call synchronize_rcu() after unregistering the hooks from error path, since a hook that already…

▾ TwilightLinux · LinuxEPSS 0.12%via CVEORG
CVE-2026-23391High· 7.8
6mo ago

netfilter: xt_CT: drop pending enqueued packets on template removal

In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_CT: drop pending enqueued packets on template removal Templates refer to objects that can go away while packets are sitting in nfqueue refer to: - helpe…

▾ TwilightLinux · LinuxEPSS 0.13%via CVEORG
CVE-2026-23378High· 7.8
6mo ago

net/sched: act_ife: Fix metalist update behavior

In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ife: Fix metalist update behavior Whenever an ife action replace changes the metalist, instead of replacing the old data on the metalist, the current if…

▾ TwilightLinux · LinuxEPSS 0.13%via CVEORG
CVE-2026-23351High· 7.8
6mo ago

netfilter: nft_set_pipapo: split gc into unlink and reclaim phase

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo: split gc into unlink and reclaim phase Yiming Qian reports Use-after-free in the pipapo set type: Under a large number of expired elements…

▾ TwilightLinux · LinuxEPSS 0.13%via CVEORG
CVE-2026-23340High· 7.8
6mo ago

net: sched: avoid qdisc_reset_all_tx_gt() vs dequeue race for lockless qdiscs

In the Linux kernel, the following vulnerability has been resolved: net: sched: avoid qdisc_reset_all_tx_gt() vs dequeue race for lockless qdiscs When shrinking the number of real tx queues, netif_set_real_num_tx_queues() calls qdisc_r…

▾ TwilightLinux · LinuxEPSS 0.14%via CVEORG

Most-affected vendors

By CVEs published in the period.