2025 CVE Vulnerabilities
45,146 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-15380 | HIGH | 7.2 | 0.2% | Jan 20, 2026 | The NotificationX – FOMO, Live Sales Notification, WooCommerce Sales Popup, GDPR, Social Proof, Announcement Banner & Fl... |
| CVE-2025-15347 | HIGH | 8.8 | 0.3% | Jan 20, 2026 | The Creator LMS – The LMS for Creators, Coaches, and Trainers plugin for WordPress is vulnerable to unauthorized modific... |
| CVE-2025-15043 | MEDIUM | 5.4 | 0.2% | Jan 20, 2026 | The The Events Calendar plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on t... |
| CVE-2025-14115 | HIGH | 8.4 | 0.1% | Jan 20, 2026 | IBM Sterling Connect:Direct for UNIX Container 6.3.0.0 through 6.3.0.6 Interim Fix 016, and 6.4.0.0 through 6.4.0.3 Inte... |
| CVE-2025-13925 | MEDIUM | 4.9 | 0.3% | Jan 20, 2026 | IBM Aspera Console 3.4.7 stores potentially sensitive information in log files that could be read by a local privileged ... |
| CVE-2025-12985 | HIGH | 8.4 | 0.1% | Jan 20, 2026 | IBM Licensing Operator incorrectly assigns privileges to security critical files which could allow a local root escalati... |
| CVE-2025-9466 | HIGH | 7.5 | 0.6% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ... |
| CVE-2025-9465 | HIGH | 7.5 | 0.4% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ... |
| CVE-2025-9464 | HIGH | 7.5 | 0.3% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. This vulnerability is tr... |
| CVE-2025-9283 | HIGH | 7.5 | 0.5% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ... |
| CVE-2025-9282 | HIGH | 7.5 | 0.5% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ... |
| CVE-2025-9281 | HIGH | 7.5 | 0.5% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ... |
| CVE-2025-9280 | HIGH | 7.5 | 0.4% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. Fuzzing performed using ... |
| CVE-2025-9279 | HIGH | 7.5 | 0.5% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ... |
| CVE-2025-9278 | HIGH | 7.5 | 0.4% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. After running a Burp Sui... |
| CVE-2025-15281 | HIGH | 7.5 | 0.3% | Jan 20, 2026 | Calling wordexp with WRDE_REUSE in conjunction with WRDE_APPEND in the GNU C Library version 2.0 to version 2.42 may cau... |
| CVE-2025-14377 | HIGH | 8.8 | 0.2% | Jan 20, 2026 | A security issue was discovered within the legacy Ansible playbook component of Verve Asset Manager, caused by plaintext... |
| CVE-2025-14376 | HIGH | 8.6 | 0.1% | Jan 20, 2026 | A security issue was discovered within the legacy ADI server component of Verve Asset Manager, caused by plaintext secre... |
| CVE-2025-14027 | HIGH | 8.7 | 0.4% | Jan 20, 2026 | Multiple denial-of-service vulnerabilities exist in the affected product. These issues can be triggered through various ... |
| CVE-2025-11743 | HIGH | 7.1 | 0.2% | Jan 20, 2026 | A denial-of-service security issue in the affected product. The security issue occurs when a malformed CIP forward open ... |
| CVE-2025-41081 | MEDIUM | 5.1 | 0.3% | Jan 20, 2026 | Reflected Cross-Site Scripting (XSS) vulnerability in IsMyGym by Zuinq Studio. This vulnerability allows an attacker to ... |
| CVE-2025-41025 | MEDIUM | 5.4 | 0.1% | Jan 20, 2026 | Stored Cross-Site Scripting (XSS) in Poultry Farm Management System v1.0 due to the lack of proper validation of user in... |
| CVE-2025-41024 | MEDIUM | 5.4 | 0.2% | Jan 20, 2026 | Stored Cross-Site Scripting (XSS) in Poultry Farm Management System v1.0 due to the lack of proper validation of user in... |
| CVE-2025-40679 | MEDIUM | 5.1 | 0.3% | Jan 20, 2026 | HTML Injection vulnerability in Isshue by Bdtask, consisting os an HTML injection due to a lack os proper validation ... |
| CVE-2025-40644 | MEDIUM | 5.1 | 0.3% | Jan 20, 2026 | Reflected Cross-Site Scripting (XSS) vulnerability in Riftzilla's QRGen. This vulnerability allows an attavker to execut... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now