2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-36145MEDIUM5.3IBM watsonx.data 2.2 through 2.3.1 IBM Lakehouse does not properly restrict inbound and outbound connections which could...
CVE-2025-36126HIGH7.6IBM Cognos Analytics 11.2.0, 12.0, and 12.1.0 and IBM Cognos Transformer 12.0, 11.2.4, and 12.1.0 is vulnerable to store...
CVE-2025-14290MEDIUM5.4IBM webMethods Integration (on prem) -Integration Server 10.15 through IS_10.15_Core_Fix2611.1 to IS_11.1_Core_Fix10 IBM...
CVE-2025-13755MEDIUM5.5IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 for Linux, UNIX and Windows (includes DB2 Connect Server) store...
CVE-2025-11482HIGH8.7An Allocation of Resources Without Limits or Throttling vulnerability in the OPC-UA Server used in PPT30 Operating Syst...
CVE-2025-71310LOW1.8The GDPR cookies module for Backdrop CMS (before 1.x-1.3.5) doesn't sufficiently protect visitors from Cross Site Scri...
CVE-2025-62745MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PickPlugins Team S...
CVE-2025-46371MEDIUM5.5Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) a Use of a Broken or Risky Cryptographic Algorithm vulnerability ...
CVE-2025-45145HIGH7.5Directory traversal in Follett Software's Destiny Library Manager 22_0_2_rc1 and fixed in v.22.5 AU1 allows remote attac...
CVE-2025-32751MEDIUM5.5Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Insecure Storage of Sensitive Information vulnerability. A low...
CVE-2025-32749HIGH7.5Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Exposure of Information Through Directory Listing vulnerabilit...
CVE-2025-32747HIGH7.8Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Incorrect Privilege Assignment vulnerability. A low privileged...
CVE-2025-32746MEDIUM5.5Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Insecure Storage of Sensitive Information vulnerability. An un...
CVE-2025-32745MEDIUM6.5Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Improper Certificate Validation vulnerability. An unauthentica...
CVE-2025-26483HIGH8.2Dell PowerFlex Manager, versions 4.6.2 and prior, contains an Open Redirect Vulnerability. An unauthenticated attacker c...
CVE-2025-71217HIGH7.8An origin validation error vulnerability in the Trend Micro Apex One (mac) agent self-protection mechanism could allow a...
CVE-2025-71216HIGH7.8A time-of-check time-of-use vulnerability in the Trend Micro Apex One (mac) agent cache mechanism could allow a local at...
CVE-2025-71215HIGH7A time-of-check time-of-use vulnerability in the Trend Micro Apex One (mac) agent iCore service signature verification c...
CVE-2025-71214HIGH7.8An origin validation error vulnerability in the Trend Micro Apex One (mac) agent iCore service could allow a local attac...
CVE-2025-71213HIGH7.8An origin validation error vulnerability in Trend Micro Apex One could allow a local attacker to escalate privileges on ...
CVE-2025-71212HIGH7.8A link following vulnerability in the Trend Micro Apex One scan engine could allow a local attacker to escalate privileg...
CVE-2025-71211CRITICAL9.8A vulnerability in the Trend Micro Apex One management console could allow a remote attacker to upload malicious code an...
CVE-2025-71210CRITICAL9.8A vulnerability in the Trend Micro Apex One management console could allow a remote attacker to upload malicious code an...
CVE-2025-13479HIGH7.5Authorization bypass through User-Controlled key vulnerability in PosCube Hardware Software and Consulting Ltd. QR Menu ...
CVE-2025-13477HIGH7.1Exposure of private personal information to an unauthorized actor, Insufficiently Protected Credentials vulnerability in...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now