2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-15577 | HIGH | 7.5 | 0.5% | Feb 12, 2026 | An unauthenticated attacker can exploit this vulnerability by manipulating URL to achieve arbitrary file read access.Thi... |
| CVE-2025-14892 | CRITICAL | 9.8 | 0.4% | Feb 12, 2026 | The Prime Listing Manager WordPress plugin through 1.1 allows an attacker to gain administrative access without having a... |
| CVE-2025-67135 | CRITICAL | 9.8 | 0.3% | Feb 11, 2026 | Weak Security in the PF-50 1.2 keyfob of PGST PG107 Alarm System 1.25.05.hf allows attackers to compromise access contro... |
| CVE-2025-64074 | MEDIUM | 5.3 | 0.4% | Feb 11, 2026 | A path-traversal vulnerability in the logout functionality of Shenzhen Zhibotong Electronics ZBT WE2001 23.09.27 allows ... |
| CVE-2025-46310 | MEDIUM | 6 | 0.2% | Feb 11, 2026 | This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma 14... |
| CVE-2025-46305 | MEDIUM | 5.7 | 0.3% | Feb 11, 2026 | The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.2 and i... |
| CVE-2025-46304 | MEDIUM | 5.7 | 0.3% | Feb 11, 2026 | The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.2 and i... |
| CVE-2025-46303 | MEDIUM | 5.7 | 0.3% | Feb 11, 2026 | The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.2 and i... |
| CVE-2025-46302 | MEDIUM | 5.7 | 0.3% | Feb 11, 2026 | The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.2 and i... |
| CVE-2025-46301 | MEDIUM | 5.7 | 0.3% | Feb 11, 2026 | The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.2 and i... |
| CVE-2025-46300 | MEDIUM | 5.7 | 0.3% | Feb 11, 2026 | The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.2 and i... |
| CVE-2025-46290 | HIGH | 7.5 | 0.9% | Feb 11, 2026 | A logic issue was addressed with improved checks. This issue is fixed in iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPad... |
| CVE-2025-43537 | MEDIUM | 5.5 | 0.5% | Feb 11, 2026 | A path handling issue was addressed with improved validation. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 2... |
| CVE-2025-43417 | MEDIUM | 5.5 | 0.2% | Feb 11, 2026 | A path handling issue was addressed with improved logic. This issue is fixed in macOS Sonoma 14.8.4, macOS Tahoe 26.2. A... |
| CVE-2025-43403 | MEDIUM | 5.5 | 0.2% | Feb 11, 2026 | An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.4, macOS ... |
| CVE-2025-68663 | MEDIUM | 5.3 | 0.2% | Feb 11, 2026 | Outline is a service that allows for collaborative documentation. Prior to 1.1.0, a vulnerability was found in Outline's... |
| CVE-2025-64487 | HIGH | 7.6 | 0.2% | Feb 11, 2026 | Outline is a service that allows for collaborative documentation. Prior to 1.1.0, a privilege escalation vulnerability e... |
| CVE-2025-70297 | MEDIUM | 6.1 | 0.2% | Feb 11, 2026 | A stored cross-site scripting (XSS) vulnerability in the recipe asset upload and media serving component in Mealie 3.3.1... |
| CVE-2025-70296 | MEDIUM | 5.4 | 0.2% | Feb 11, 2026 | A stored HTML injection vulnerability in the Recipe Notes rendering component in Mealie 3.3.1 allows remote authenticate... |
| CVE-2025-69873 | LOW | 2.9 | 0.5% | Feb 11, 2026 | ajv (Another JSON Schema Validator) before 8.18.0 is vulnerable to Regular Expression Denial of Service (ReDoS) when the... |
| CVE-2025-69872 | CRITICAL | 9.8 | 0.5% | Feb 11, 2026 | DiskCache (python-diskcache) through 5.6.3 uses Python pickle for serialization by default. An attacker with write acces... |
| CVE-2025-69871 | HIGH | 8.1 | 0.4% | Feb 11, 2026 | A race condition vulnerability exists in MedusaJS Medusa v2.12.2 and earlier in the registerUsage() function of the prom... |
| CVE-2025-70085 | CRITICAL | 9.8 | 0.5% | Feb 11, 2026 | An issue was discovered in OpenSatKit 2.2.1. The EventErrStr buffer has a fixed size of 256 bytes. The code uses sprintf... |
| CVE-2025-70084 | HIGH | 7.5 | 0.8% | Feb 11, 2026 | Directory traversal vulnerability in OpenSatKit 2.2.1 allows attackers to gain access to sensitive information or delete... |
| CVE-2025-70083 | HIGH | 7.8 | 0.2% | Feb 11, 2026 | An issue was discovered in OpenSatKit 2.2.1. The DirName field in the telecommand is provided by the ground segment and ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now