2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-62616 | CRITICAL | 9.8 | 0.3% | Feb 4, 2026 | AutoGPT is a platform that allows users to create, deploy, and manage continuous artificial intelligence agents that aut... |
| CVE-2025-62615 | CRITICAL | 9.8 | 0.4% | Feb 4, 2026 | AutoGPT is a platform that allows users to create, deploy, and manage continuous artificial intelligence agents that aut... |
| CVE-2025-22873 | LOW | 3.8 | 0.2% | Feb 4, 2026 | It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp... |
| CVE-2025-2134 | LOW | 3.5 | 0.2% | Feb 4, 2026 | IBM Jazz Reporting Service could allow an authenticated user on the network to affect the system's performance using com... |
| CVE-2025-27550 | LOW | 3.5 | 0.2% | Feb 4, 2026 | IBM Jazz Reporting Service could allow an authenticated user on the host network to obtain sensitive information about o... |
| CVE-2025-1823 | LOW | 3.5 | 0.2% | Feb 4, 2026 | IBM Jazz Reporting Service could allow an authenticated user on the host network to cause a denial of service using spec... |
| CVE-2025-15555 | HIGH | 8.2 | 0.5% | Feb 4, 2026 | A security flaw has been discovered in Open5GS up to 2.7.6. Affected by this vulnerability is the function hss_ogs_diam_... |
| CVE-2025-13375 | CRITICAL | 9.8 | 0.5% | Feb 4, 2026 | IBM Common Cryptographic Architecture (CCA) 7.5.52 and 8.4.82 could allow an unauthenticated user to execute arbitrary c... |
| CVE-2025-71031 | HIGH | 7.5 | 0.5% | Feb 4, 2026 | Water-Melon Melon commit 9df9292 and below is vulnerable to Denial of Service. The HTTP component doesn't have any maxim... |
| CVE-2025-68699 | MEDIUM | 6.5 | 0.3% | Feb 4, 2026 | NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. In version 0.24.6, NanoMQ has a protocol parsing /... |
| CVE-2025-69215 | HIGH | 8.8 | 0.4% | Feb 4, 2026 | OpenSTAManager is an open source management software for technical assistance and invoicing. In version 2.9.8 and prior,... |
| CVE-2025-69213 | HIGH | 8.8 | 0.4% | Feb 4, 2026 | OpenSTAManager is an open source management software for technical assistance and invoicing. In version 2.9.8 and prior,... |
| CVE-2025-64712 | CRITICAL | 9.8 | 0.6% | Feb 4, 2026 | The unstructured library provides open-source components for ingesting and pre-processing images and text documents, suc... |
| CVE-2025-71199 | — | — | 0.2% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: iio: adc: at91-sama5d2_adc: Fix potential use-after... |
| CVE-2025-71198 | — | — | 0.2% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: iio: imu: st_lsm6dsx: fix iio_chan_spec for sensors... |
| CVE-2025-71197 | — | — | 0.2% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: w1: therm: Fix off-by-one buffer overflow in alarms... |
| CVE-2025-71196 | — | — | 0.2% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: phy: stm32-usphyc: Fix off by one in probe() The "... |
| CVE-2025-71195 | — | — | 0.2% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: xilinx: xdma: Fix regmap max_register T... |
| CVE-2025-71194 | — | — | 0.2% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix deadlock in wait_current_trans() due to ... |
| CVE-2025-71193 | — | — | 0.2% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: phy: qcom-qusb2: Fix NULL pointer dereference on ea... |
| CVE-2025-61917 | HIGH | 7.7 | 0.4% | Feb 4, 2026 | n8n is an open source workflow automation platform. From version 1.65.0 to before 1.114.3, the use of Buffer.allocUnsafe... |
| CVE-2025-71192 | HIGH | 7 | 0.2% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: ALSA: ac97: fix a double free in snd_ac97_controlle... |
| CVE-2025-70545 | MEDIUM | 6.1 | 0.4% | Feb 4, 2026 | A stored cross-site scripting (XSS) vulnerability exists in the web management interface of the PPC (Belden) ONT 2K05X r... |
| CVE-2025-70997 | MEDIUM | 6.5 | 0.2% | Feb 4, 2026 | A vulnerability has been discovered in eladmin v2.7 and before. This vulnerability allows for an arbitrary user password... |
| CVE-2025-69618 | MEDIUM | 6.5 | 0.3% | Feb 4, 2026 | An arbitrary file overwrite vulnerability in the file import process of Tarot, Astro & Healing v11.4.0 allows attackers ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now