2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-61642 | MEDIUM | 6.1 | 0.2% | Feb 3, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F... |
| CVE-2025-61641 | MEDIUM | 6.1 | 0.3% | Feb 3, 2026 | Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/api/ApiQue... |
| CVE-2025-61640 | MEDIUM | 4.8 | 0.2% | Feb 3, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F... |
| CVE-2025-61639 | MEDIUM | 4.8 | 0.2% | Feb 3, 2026 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation MediaWiki. This vulnera... |
| CVE-2025-61638 | MEDIUM | 4.8 | 0.2% | Feb 3, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F... |
| CVE-2025-61637 | MEDIUM | 4.8 | 0.2% | Feb 3, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F... |
| CVE-2025-61636 | MEDIUM | 4.8 | 0.2% | Feb 3, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F... |
| CVE-2025-61635 | NONE | 0 | 0.4% | Feb 3, 2026 | Vulnerability in Wikimedia Foundation ConfirmEdit. This vulnerability is associated with program files includes/FancyCap... |
| CVE-2025-61634 | LOW | 3.1 | 0.3% | Feb 3, 2026 | Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Rest/Handl... |
| CVE-2025-70960 | MEDIUM | 5.4 | 0.2% | Feb 2, 2026 | A stored cross-site scripting (XSS) vulnerability in the Forums module of Tendenci CMS v15.3.7 allows attackers to execu... |
| CVE-2025-70959 | MEDIUM | 5.4 | 0.2% | Feb 2, 2026 | A stored cross-site scripting (XSS) vulnerability in the Jobs module of Tendenci CMS v15.3.7 allows attackers to execute... |
| CVE-2025-70958 | MEDIUM | 6.1 | 0.3% | Feb 2, 2026 | Multiple reflected cross-site scripting (XSS) vulnerabilities in the installation module of Subrion CMS v4.2.1 allows at... |
| CVE-2025-6927 | LOW | 2.3 | 0.5% | Feb 2, 2026 | Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/specials/p... |
| CVE-2025-6597 | NONE | 0 | 0.5% | Feb 2, 2026 | Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/auth/AuthM... |
| CVE-2025-6596 | NONE | 0 | 0.4% | Feb 2, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F... |
| CVE-2025-6595 | MEDIUM | 4.7 | 0.3% | Feb 2, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F... |
| CVE-2025-6594 | MEDIUM | 4.7 | 0.3% | Feb 2, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F... |
| CVE-2025-6593 | LOW | 2.1 | 0.4% | Feb 2, 2026 | Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/user/User.... |
| CVE-2025-6592 | LOW | 2.1 | 0.4% | Feb 2, 2026 | Vulnerability in Wikimedia Foundation AbuseFilter. This vulnerability is associated with program files includes/auth/Aut... |
| CVE-2025-6591 | NONE | 0 | 0.4% | Feb 2, 2026 | Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/api/ApiFee... |
| CVE-2025-6590 | MEDIUM | 4.6 | 0.3% | Feb 2, 2026 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation MediaWiki. This vulnera... |
| CVE-2025-6589 | LOW | 2.1 | 0.4% | Feb 2, 2026 | Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/specials/p... |
| CVE-2025-69207 | HIGH | 7.1 | 0.4% | Feb 2, 2026 | Khoj is a self-hostable artificial intelligence app. Prior to 2.0.0-beta.23, an IDOR in the Notion OAuth callback allows... |
| CVE-2025-66480 | CRITICAL | 9.8 | 1.4% | Feb 2, 2026 | Wildfire IM is an instant messaging and real-time audio/video solution. Prior to 1.4.3, a critical vulnerability exists ... |
| CVE-2025-36436 | MEDIUM | 5.4 | 0.2% | Feb 2, 2026 | IBM Cloud Pak for Business Automation 25.0.0 through 25.0.0 Interim Fix 002, 24.0.1 through 24.0.1 Interim Fix 005, and ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now