2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-67853 | HIGH | 7.5 | 0.4% | Feb 3, 2026 | A flaw was found in Moodle. A remote attacker could exploit a lack of proper rate limiting in the confirmation email ser... |
| CVE-2025-67852 | MEDIUM | 6.1 | 0.2% | Feb 3, 2026 | A flaw was found in Moodle. An open redirect vulnerability in the OAuth login flow allows a remote attacker to redirect ... |
| CVE-2025-67851 | HIGH | 7.8 | 0.3% | Feb 3, 2026 | A flaw was found in moodle. This formula injection vulnerability occurs when data fields are exported without proper esc... |
| CVE-2025-67850 | MEDIUM | 6.1 | 0.3% | Feb 3, 2026 | A flaw was found in moodle. This vulnerability, known as Cross-Site Scripting (XSS), occurs due to insufficient checks o... |
| CVE-2025-67849 | MEDIUM | 6.1 | 0.3% | Feb 3, 2026 | A flaw was found in Moodle. This cross-site scripting (XSS) vulnerability, caused by improper sanitization of AI prompt ... |
| CVE-2025-67848 | HIGH | 8.1 | 0.4% | Feb 3, 2026 | A flaw was found in Moodle. This authentication bypass vulnerability allows suspended users to authenticate through the ... |
| CVE-2025-59902 | HIGH | 7.1 | 0.3% | Feb 3, 2026 | HTML injection vulnerability in NICE Chat. This vulnerability allows an attacker to inject and render arbitrary HTML con... |
| CVE-2025-41065 | MEDIUM | 5.1 | 0.2% | Feb 3, 2026 | Stored Cross-Site Scripting (XSS) vulnerability type in LUNA software v7.5.5.6. This vulnerability allows an attacker to... |
| CVE-2025-8461 | HIGH | 7.6 | 0.2% | Feb 3, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Seres Softw... |
| CVE-2025-8456 | HIGH | 7.6 | 0.2% | Feb 3, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Kod8 Softwa... |
| CVE-2025-8590 | HIGH | 7.5 | 0.3% | Feb 3, 2026 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in AKCE Software Technology R&D Industry and Tr... |
| CVE-2025-8589 | HIGH | 7.6 | 0.3% | Feb 3, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in AKCE Softwa... |
| CVE-2025-9711 | HIGH | 7.8 | 0.1% | Feb 3, 2026 | A vulnerability in Brocade Fabric OS before 9.2.1c3 could allow elevating the privileges of the local authenticated user... |
| CVE-2025-58381 | LOW | 2.3 | 0.2% | Feb 3, 2026 | A vulnerability in Brocade Fabric OS before 9.2.1c2 could allow an authenticated attacker with admin privileges using ... |
| CVE-2025-14274 | MEDIUM | 5.4 | 0.2% | Feb 3, 2026 | The Unlimited Elements for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Border He... |
| CVE-2025-58380 | LOW | 2.3 | 0.2% | Feb 3, 2026 | A vulnerability in Brocade Fabric OS before 9.2.1 could allow an authenticated attacker with admin privileges using the ... |
| CVE-2025-67484 | CRITICAL | 9.8 | 0.4% | Feb 3, 2026 | Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Api/ApiFor... |
| CVE-2025-67483 | MEDIUM | 6.1 | 0.2% | Feb 3, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F... |
| CVE-2025-67482 | LOW | 1.7 | 0.3% | Feb 3, 2026 | Vulnerability in Wikimedia Foundation Scribunto, Wikimedia Foundation luasandbox. This vulnerability is associated with ... |
| CVE-2025-67481 | MEDIUM | 6.1 | 0.2% | Feb 3, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F... |
| CVE-2025-67480 | MEDIUM | 6.5 | 0.2% | Feb 3, 2026 | Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Api/ApiQue... |
| CVE-2025-67479 | NONE | 0 | 0.3% | Feb 3, 2026 | Vulnerability in Wikimedia Foundation MediaWiki, Wikimedia Foundation Cite. This vulnerability is associated with progra... |
| CVE-2025-67478 | HIGH | 8.8 | 0.3% | Feb 3, 2026 | Vulnerability in Wikimedia Foundation CheckUser. This vulnerability is associated with program files includes/Mail/UserM... |
| CVE-2025-67477 | MEDIUM | 6.1 | 0.2% | Feb 3, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F... |
| CVE-2025-67476 | MEDIUM | 4.3 | 0.3% | Feb 3, 2026 | Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Import/Imp... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now