2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-59439 | HIGH | 7.5 | 0.4% | Feb 3, 2026 | An issue was discovered in Samsung Mobile Processor, Wearable Processor and Modem Exynos 980, 990, 850, 1080, 9110, W920... |
| CVE-2025-58348 | MEDIUM | 5.5 | 0.1% | Feb 3, 2026 | An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12... |
| CVE-2025-58347 | MEDIUM | 5.5 | 0.1% | Feb 3, 2026 | An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12... |
| CVE-2025-58346 | MEDIUM | 5.5 | 0.1% | Feb 3, 2026 | An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12... |
| CVE-2025-58345 | MEDIUM | 5.5 | 0.1% | Feb 3, 2026 | An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12... |
| CVE-2025-58344 | MEDIUM | 6.2 | 0.2% | Feb 3, 2026 | An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12... |
| CVE-2025-58343 | MEDIUM | 5.5 | 0.1% | Feb 3, 2026 | An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12... |
| CVE-2025-58342 | MEDIUM | 6.2 | 0.2% | Feb 3, 2026 | An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12... |
| CVE-2025-58341 | MEDIUM | 6.2 | 0.2% | Feb 3, 2026 | An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12... |
| CVE-2025-58340 | MEDIUM | 6.2 | 0.2% | Feb 3, 2026 | An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12... |
| CVE-2025-57529 | CRITICAL | 9.8 | 0.6% | Feb 3, 2026 | YouDataSum CPAS Audit Management System <=v4.9 is vulnerable to SQL Injection in /cpasList/findArchiveReportByDah due to... |
| CVE-2025-52629 | MEDIUM | 6.1 | 0.1% | Feb 3, 2026 | HCL AION is susceptible to Missing Content-Security-Policy. An The absence of a CSP header may increase the risk of cr... |
| CVE-2025-52627 | HIGH | 7.5 | 0.1% | Feb 3, 2026 | Root File System Not Mounted as Read-Only configuration vulnerability. This can allow unintended modifications to critic... |
| CVE-2025-52626 | CRITICAL | 9.8 | 0.6% | Feb 3, 2026 | A Potential Command Injection vulnerability in HCL AION. An This can allow unintended command execution, potentially ... |
| CVE-2025-46651 | MEDIUM | 4.3 | 0.3% | Feb 3, 2026 | Tiny File Manager through 2.6 contains a server-side request forgery (SSRF) vulnerability in the URL upload feature. Due... |
| CVE-2025-65017 | MEDIUM | 6.5 | 0.3% | Feb 3, 2026 | Decidim is a participatory democracy framework. In versions from 0.30.0 to before 0.30.4 and from 0.31.0.rc1 to before 0... |
| CVE-2025-5319 | CRITICAL | 9.8 | 0.4% | Feb 3, 2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Emit Informatics a... |
| CVE-2025-14550 | HIGH | 7.5 | 1.0% | Feb 3, 2026 | An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4.2 before 4.2.28. `ASGIRequest` allows a remote att... |
| CVE-2025-13473 | MEDIUM | 5.3 | 0.7% | Feb 3, 2026 | An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4.2 before 4.2.28. The `django.contrib.auth.handlers... |
| CVE-2025-7760 | HIGH | 7.6 | 0.3% | Feb 3, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Ofisimo Web... |
| CVE-2025-6397 | HIGH | 8.6 | 0.2% | Feb 3, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Ankara Host... |
| CVE-2025-11598 | LOW | 1 | 0.2% | Feb 3, 2026 | In mObywatel iOS application an unauthorized user can use the App Switcher to view the account owner's personal informat... |
| CVE-2025-67857 | MEDIUM | 5.3 | 0.3% | Feb 3, 2026 | A flaw was found in moodle. During anonymous assignment submissions, user identifiers were inadvertently exposed in URLs... |
| CVE-2025-67856 | CRITICAL | 9.8 | 0.3% | Feb 3, 2026 | A flaw was found in Moodle. An authorization logic flaw, specifically due to incomplete role checks during the badge awa... |
| CVE-2025-67855 | MEDIUM | 6.1 | 0.4% | Feb 3, 2026 | A flaw was found in mooodle. A remote attacker could exploit a reflected Cross-Site Scripting (XSS) vulnerability in the... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now