2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-25210 | HIGH | 8.2 | 0.1% | Feb 10, 2026 | Improper input validation for some Server Firmware Update Utility(SysFwUpdt) before version 16.0.12 within Ring 3: User ... |
| CVE-2025-22453 | HIGH | 7.5 | 0.1% | Feb 10, 2026 | Improper input validation for some Server Firmware Update Utility(SysFwUpdt) before version 16.0.12 within Ring 3: User ... |
| CVE-2025-20080 | HIGH | 8.2 | 0.2% | Feb 10, 2026 | Null pointer dereference in the firmware for some Intel(R) AMT and Intel(R) Standard Manageability within Ring 0: Kernel... |
| CVE-2025-64157 | HIGH | 7.2 | 1.4% | Feb 10, 2026 | A use of externally-controlled format string vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4, FortiOS 7.4.0 throug... |
| CVE-2025-62676 | HIGH | 7.1 | 0.2% | Feb 10, 2026 | An Improper Link Resolution Before File Access ('Link Following') vulnerability [CWE-59] vulnerability in Fortinet Forti... |
| CVE-2025-11004 | HIGH | 7.5 | 0.3% | Feb 10, 2026 | The Simplicity Device Manager Tool has a Reflected XSS (Cross-site-scripting) vulnerability in several API endpoints. Th... |
| CVE-2025-7636 | HIGH | 8.8 | 0.3% | Feb 10, 2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ergosis Security S... |
| CVE-2025-7347 | HIGH | 8.8 | 0.3% | Feb 10, 2026 | Authorization Bypass Through User-Controlled Key vulnerability in Dinibh Puzzle Software Solutions Dinibh Patrol Trackin... |
| CVE-2025-6967 | HIGH | 8.7 | 0.4% | Feb 10, 2026 | Execution After Redirect (EAR) vulnerability in Sarman Soft Software and Technology Services Industry and Trade Ltd. Co.... |
| CVE-2025-15570 | HIGH | 7.8 | 0.2% | Feb 10, 2026 | A vulnerability was found in ckolivas lrzip up to 0.651. This impacts the function lzma_decompress_buf of the file strea... |
| CVE-2025-15569 | HIGH | 7.3 | 0.1% | Feb 10, 2026 | A flaw has been found in Artifex MuPDF up to 1.26.1 on Windows. The impacted element is the function get_system_dpi of t... |
| CVE-2025-40587 | HIGH | 7.6 | 0.3% | Feb 10, 2026 | A vulnerability has been identified in Polarion V2404 (All versions < V2404.5), Polarion V2410 (All versions < V2410.2).... |
| CVE-2025-11547 | HIGH | 7.8 | 0.1% | Feb 10, 2026 | AXIS Camera Station Pro contained a flaw to perform a privilege escalation attack on the server as a non-admin user. |
| CVE-2025-11142 | HIGH | 8.8 | 0.5% | Feb 10, 2026 | The VAPIX API mediaclip.cgi that did not have a sufficient input validation allowing for a possible remote code executio... |
| CVE-2025-15314 | HIGH | 8.1 | 0.3% | Feb 10, 2026 | Tanium addressed an arbitrary file deletion vulnerability in end-user-cx. |
| CVE-2025-15313 | HIGH | 7.1 | 0.2% | Feb 10, 2026 | Tanium addressed an arbitrary file deletion vulnerability in Tanium EUSS. |
| CVE-2025-15310 | HIGH | 7.8 | 0.2% | Feb 10, 2026 | Tanium addressed a local privilege escalation vulnerability in Patch Endpoint Tools. |
| CVE-2025-15319 | HIGH | 7.8 | 0.2% | Feb 9, 2026 | Tanium addressed a local privilege escalation vulnerability in Patch Endpoint Tools. |
| CVE-2025-15316 | HIGH | 7.8 | 0.1% | Feb 9, 2026 | Tanium addressed a local privilege escalation vulnerability in Tanium Server. |
| CVE-2025-15315 | HIGH | 7.8 | 0.1% | Feb 9, 2026 | Tanium addressed a local privilege escalation vulnerability in Tanium Module Server. |
| CVE-2025-59023 | HIGH | 8.2 | 0.3% | Feb 9, 2026 | Crafted delegations or IP fragments can poison cached delegations in Recursor. |
| CVE-2025-10465 | HIGH | 8.8 | 0.4% | Feb 9, 2026 | Unrestricted Upload of File with Dangerous Type vulnerability in Birtech Information Technologies Industry and Trade Ltd... |
| CVE-2025-10463 | HIGH | 7.3 | 0.3% | Feb 9, 2026 | Improper Authentication vulnerability in Birtech Information Technologies Industry and Trade Ltd. Co. Senseway allows Au... |
| CVE-2025-7799 | HIGH | 8.6 | 0.3% | Feb 9, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Zirve Infor... |
| CVE-2025-66598 | HIGH | 7.5 | 0.2% | Feb 9, 2026 | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product supports old SSL... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now