2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-64098 | MEDIUM | 5.9 | 0.4% | Feb 3, 2026 | Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). ... |
| CVE-2025-62799 | CRITICAL | 9.8 | 0.5% | Feb 3, 2026 | Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). ... |
| CVE-2025-62603 | HIGH | 7.5 | 0.5% | Feb 3, 2026 | Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). ... |
| CVE-2025-62602 | HIGH | 7.5 | 0.5% | Feb 3, 2026 | Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). ... |
| CVE-2025-62601 | HIGH | 7.5 | 0.5% | Feb 3, 2026 | Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). ... |
| CVE-2025-10878 | CRITICAL | 10 | 0.6% | Feb 3, 2026 | A SQL injection vulnerability exists in the login functionality of Fikir Odalari AdminPando 1.0.1 before 2026-01-26. The... |
| CVE-2025-62673 | HIGH | 8 | 0.5% | Feb 3, 2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tdpserver modules) allows adjacent attackers to ca... |
| CVE-2025-62600 | HIGH | 7.5 | 0.4% | Feb 3, 2026 | eprosima Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management ... |
| CVE-2025-62501 | HIGH | 8.1 | 0.5% | Feb 3, 2026 | SSH Hostkey misconfiguration vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows attackers to obtain de... |
| CVE-2025-62405 | HIGH | 8 | 0.5% | Feb 3, 2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent a... |
| CVE-2025-62404 | HIGH | 8 | 0.5% | Feb 3, 2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent a... |
| CVE-2025-61983 | HIGH | 8 | 0.5% | Feb 3, 2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent a... |
| CVE-2025-61944 | HIGH | 8 | 0.4% | Feb 3, 2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent a... |
| CVE-2025-59487 | HIGH | 8 | 0.4% | Feb 3, 2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent a... |
| CVE-2025-59482 | HIGH | 8 | 0.4% | Feb 3, 2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent a... |
| CVE-2025-58455 | HIGH | 8 | 0.4% | Feb 3, 2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent a... |
| CVE-2025-58077 | HIGH | 8 | 0.4% | Feb 3, 2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent a... |
| CVE-2025-52633 | MEDIUM | 5.3 | 0.2% | Feb 3, 2026 | HCL AION is affected by a Permanent Cookie Containing Sensitive Session Information vulnerability. It is storing sensiti... |
| CVE-2025-52631 | HIGH | 8.1 | 0.2% | Feb 3, 2026 | HCL AION is affected by a Missing or Insecure HTTP Strict-Transport-Security (HSTS) Header vulnerability. This can allow... |
| CVE-2025-52628 | HIGH | 8.8 | 0.2% | Feb 3, 2026 | HCL AION is affected by a Cookie with Insecure, Improper, or Missing SameSite vulnerability. This can allow cookies to ... |
| CVE-2025-52623 | MEDIUM | 6.5 | 0.2% | Feb 3, 2026 | HCL AION is affected by an Autocomplete HTML Attribute Not Disabled for Password Field vulnerability. This can allow au... |
| CVE-2025-71179 | MEDIUM | 6.1 | 0.2% | Feb 3, 2026 | Creativeitem Academy LMS 7.0 contains reflected Cross-Site Scripting (XSS) vulnerabilities via the search parameter to t... |
| CVE-2025-70849 | MEDIUM | 6.1 | 0.2% | Feb 3, 2026 | Arbitrary File Upload in podinfo thru 6.9.0 allows unauthenticated attackers to upload arbitrary files via crafted POST ... |
| CVE-2025-70841 | HIGH | 7.5 | 0.4% | Feb 3, 2026 | Dokans Multi-Tenancy Based eCommerce Platform SaaS 3.9.2 allows unauthenticated remote attackers to obtain sensitive app... |
| CVE-2025-70758 | HIGH | 7.5 | 0.6% | Feb 3, 2026 | chetans9 core-php-admin-panel through commit a94a780d6 contains an authentication bypass vulnerability in includes/auth_... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now