2025 CVE Vulnerabilities

45,145 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-13881LOW2.7A flaw was found in Keycloak Admin API. This vulnerability allows an administrator with limited privileges to retrieve s...
CVE-2025-13348HIGH8.5An improper access control vulnerability exists in ASUS Secure Delete Driver of ASUS Business Manager. This vulnerabilit...
CVE-2025-14554HIGH7.2The Sell BTC - Cryptocurrency Selling Calculator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via t...
CVE-2025-71191MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: at_hdmac: fix device leak on of_dma_xlat...
CVE-2025-71190MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: bcm-sba-raid: fix device leak on probe ...
CVE-2025-71189MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw: dmamux: fix OF node leak on route al...
CVE-2025-71188MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: lpc18xx-dmamux: fix device leak on route...
CVE-2025-71187MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: sh: rz-dmac: fix device leak on probe fa...
CVE-2025-71186MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: stm32: dmamux: fix device leak on route ...
CVE-2025-71185MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: ti: dma-crossbar: fix device leak on am3...
CVE-2025-71184MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: btrfs: fix NULL dereference on root when tracing in...
CVE-2025-71183MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: btrfs: always detect conflicting inodes when loggin...
CVE-2025-71182MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: can: j1939: make j1939_session_activate() fail if d...
CVE-2025-71181MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: rust_binder: remove spin_lock() in rust_shrink_free...
CVE-2025-71180MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: counter: interrupt-cnt: Drop IRQF_NO_THREAD flag A...
CVE-2025-15525MEDIUM5.3The Ajax Load More – Infinite Scroll, Load More, & Lazy Load plugin for WordPress is vulnerable to unauthorized access o...
CVE-2025-15510MEDIUM5.3The NEX-Forms – Ultimate Forms Plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabi...
CVE-2025-36442HIGH7.5IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 is vulnerable to a...
CVE-2025-36428MEDIUM5.3IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 could allow an aut...
CVE-2025-36427MEDIUM6.5IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) could allow a user to cause a denial of service due to...
CVE-2025-36424MEDIUM6.5IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) could allow a user to cause a denial of service due to...
CVE-2025-36423MEDIUM5.5IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 12.1.0 - 12.1.3 could allow a local user to cause a de...
CVE-2025-36407MEDIUM5.5IBM® Db2® is vulnerable to a denial of service with a specially crafted query that uses ALTER TABLE operations.
CVE-2025-36387MEDIUM6.5IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 - 11.5.9 could allow an authenticated user to c...
CVE-2025-36384HIGH7.8IBM Db2 for Windows 12.1.0 - 12.1.3 could allow a local user with filesystem access to escalate their privileges due to...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now