2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-27560 | MEDIUM | 6.7 | 0.1% | Feb 10, 2026 | Loop with unreachable exit condition ('infinite loop') for some Intel(R) Platform within Ring 0: Kernel may allow a deni... |
| CVE-2025-27535 | MEDIUM | 4.1 | 0.1% | Feb 10, 2026 | Exposed ioctl with insufficient access control in the firmware for some Intel(R) Ethernet Connection E825-C. before vers... |
| CVE-2025-27243 | MEDIUM | 4.4 | 0.1% | Feb 10, 2026 | Out-of-bounds write in the firmware for some Intel(R) Ethernet Controller E810 before version cvl fw 1.7.8.x within Ring... |
| CVE-2025-25210 | HIGH | 8.2 | 0.1% | Feb 10, 2026 | Improper input validation for some Server Firmware Update Utility(SysFwUpdt) before version 16.0.12 within Ring 3: User ... |
| CVE-2025-25058 | LOW | 3.3 | 0.1% | Feb 10, 2026 | Improper initialization for some ESXi kernel mode driver for the Intel(R) Ethernet 800-Series before version 2.2.2.0 (es... |
| CVE-2025-24851 | MEDIUM | 4.4 | 0.1% | Feb 10, 2026 | Uncaught exception in the firmware for some 100GbE Intel(R) Ethernet Controller E810 before version cvl fw 1.7.8.x withi... |
| CVE-2025-22885 | MEDIUM | 5.6 | 0.1% | Feb 10, 2026 | Improper buffer restrictions in the firmware for the TDX Module may allow an escalation of privilege. System software ad... |
| CVE-2025-22849 | MEDIUM | 6.7 | 0.1% | Feb 10, 2026 | Incorrect default permissions for the Intel(R) Optane(TM) PMem management software before versions CR_MGMT_01.00.00.3584... |
| CVE-2025-22453 | HIGH | 7.5 | 0.1% | Feb 10, 2026 | Improper input validation for some Server Firmware Update Utility(SysFwUpdt) before version 16.0.12 within Ring 3: User ... |
| CVE-2025-20106 | MEDIUM | 6.7 | 0.1% | Feb 10, 2026 | Uncontrolled search path in some software installer for some VTune(TM) Profiler software and Intel(R) oneAPI Base Toolki... |
| CVE-2025-20080 | HIGH | 8.2 | 0.2% | Feb 10, 2026 | Null pointer dereference in the firmware for some Intel(R) AMT and Intel(R) Standard Manageability within Ring 0: Kernel... |
| CVE-2025-20070 | MEDIUM | 6.7 | 0.1% | Feb 10, 2026 | Improper conditions check for the Intel(R) Optane(TM) PMem management software before versions CR_MGMT_02.00.00.4052, CR... |
| CVE-2025-70347 | MEDIUM | 5.5 | 0.1% | Feb 10, 2026 | An issue in mquickjs before commit 74b7e (2026-01-15) allows a local attacker to cause a denial of service via a crafted... |
| CVE-2025-68686 | MEDIUM | 5.9 | 0.5% | Feb 10, 2026 | An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS ... |
| CVE-2025-64157 | HIGH | 7.2 | 1.4% | Feb 10, 2026 | A use of externally-controlled format string vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4, FortiOS 7.4.0 throug... |
| CVE-2025-62676 | HIGH | 7.1 | 0.2% | Feb 10, 2026 | An Improper Link Resolution Before File Access ('Link Following') vulnerability [CWE-59] vulnerability in Fortinet Forti... |
| CVE-2025-62439 | MEDIUM | 4.2 | 0.1% | Feb 10, 2026 | An Improper Verification of Source of a Communication Channel vulnerability [CWE-940] vulnerability in Fortinet FortiOS ... |
| CVE-2025-55018 | MEDIUM | 5.8 | 0.4% | Feb 10, 2026 | An inconsistent interpretation of http requests ('http request smuggling') vulnerability in Fortinet FortiOS 7.6.0, Fort... |
| CVE-2025-52436 | CRITICAL | 9.6 | 7.5% | Feb 10, 2026 | An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability [CWE-79] vulnerabi... |
| CVE-2025-15572 | MEDIUM | 5.5 | 0.2% | Feb 10, 2026 | A vulnerability has been found in wasm3 up to 0.5.0. The affected element is the function NewCodePage. The manipulation ... |
| CVE-2025-11004 | HIGH | 7.5 | 0.3% | Feb 10, 2026 | The Simplicity Device Manager Tool has a Reflected XSS (Cross-site-scripting) vulnerability in several API endpoints. Th... |
| CVE-2025-7636 | HIGH | 8.8 | 0.3% | Feb 10, 2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ergosis Security S... |
| CVE-2025-7347 | HIGH | 8.8 | 0.3% | Feb 10, 2026 | Authorization Bypass Through User-Controlled Key vulnerability in Dinibh Puzzle Software Solutions Dinibh Patrol Trackin... |
| CVE-2025-15571 | MEDIUM | 5.5 | 0.2% | Feb 10, 2026 | A security vulnerability has been detected in ckolivas lrzip up to 0.651. This vulnerability affects the function ucompt... |
| CVE-2025-6967 | HIGH | 8.7 | 0.4% | Feb 10, 2026 | Execution After Redirect (EAR) vulnerability in Sarman Soft Software and Technology Services Industry and Trade Ltd. Co.... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now