2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-71031 | HIGH | 7.5 | 0.5% | Feb 4, 2026 | Water-Melon Melon commit 9df9292 and below is vulnerable to Denial of Service. The HTTP component doesn't have any maxim... |
| CVE-2025-69215 | HIGH | 8.8 | 0.4% | Feb 4, 2026 | OpenSTAManager is an open source management software for technical assistance and invoicing. In version 2.9.8 and prior,... |
| CVE-2025-69213 | HIGH | 8.8 | 0.4% | Feb 4, 2026 | OpenSTAManager is an open source management software for technical assistance and invoicing. In version 2.9.8 and prior,... |
| CVE-2025-61917 | HIGH | 7.7 | 0.4% | Feb 4, 2026 | n8n is an open source workflow automation platform. From version 1.65.0 to before 1.114.3, the use of Buffer.allocUnsafe... |
| CVE-2025-71192 | HIGH | 7 | 0.2% | Feb 4, 2026 | In the Linux kernel, the following vulnerability has been resolved: ALSA: ac97: fix a double free in snd_ac97_controlle... |
| CVE-2025-15368 | HIGH | 8.8 | 0.8% | Feb 4, 2026 | The SportsPress plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.7.26 ... |
| CVE-2025-15285 | HIGH | 7.5 | 0.4% | Feb 4, 2026 | The SEO Flow by LupsOnline plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capa... |
| CVE-2025-15268 | HIGH | 7.5 | 0.4% | Feb 4, 2026 | The Infility Global plugin for WordPress is vulnerable to unauthenticated SQL Injection via the 'infility_get_data' API ... |
| CVE-2025-29867 | HIGH | 8.5 | 0.2% | Feb 4, 2026 | Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Hancom Inc. Hancom Office 2018, Hancom In... |
| CVE-2025-69621 | HIGH | 8.1 | 0.5% | Feb 4, 2026 | An arbitrary file overwrite vulnerability in the file import process of Comic Book Reader v1.0.95 allows attackers to ov... |
| CVE-2025-36094 | HIGH | 8.1 | 0.2% | Feb 3, 2026 | IBM Cloud Pak for Business Automation 25.0.0 through 25.0.0 Interim Fix 002, 24.0.1 through 24.0.1 Interim Fix 005, and ... |
| CVE-2025-65077 | HIGH | 8.8 | 0.6% | Feb 3, 2026 | A relative path traversal vulnerability has been identified in the Embedded Solutions Framework in various Lexmark devic... |
| CVE-2025-64438 | HIGH | 7.5 | 0.5% | Feb 3, 2026 | Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). ... |
| CVE-2025-62603 | HIGH | 7.5 | 0.5% | Feb 3, 2026 | Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). ... |
| CVE-2025-62602 | HIGH | 7.5 | 0.5% | Feb 3, 2026 | Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). ... |
| CVE-2025-62601 | HIGH | 7.5 | 0.5% | Feb 3, 2026 | Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group ). ... |
| CVE-2025-62673 | HIGH | 8 | 0.5% | Feb 3, 2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tdpserver modules) allows adjacent attackers to ca... |
| CVE-2025-62600 | HIGH | 7.5 | 0.4% | Feb 3, 2026 | eprosima Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management ... |
| CVE-2025-62501 | HIGH | 8.1 | 0.5% | Feb 3, 2026 | SSH Hostkey misconfiguration vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows attackers to obtain de... |
| CVE-2025-62405 | HIGH | 8 | 0.5% | Feb 3, 2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent a... |
| CVE-2025-62404 | HIGH | 8 | 0.5% | Feb 3, 2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent a... |
| CVE-2025-61983 | HIGH | 8 | 0.5% | Feb 3, 2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent a... |
| CVE-2025-61944 | HIGH | 8 | 0.4% | Feb 3, 2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent a... |
| CVE-2025-59487 | HIGH | 8 | 0.4% | Feb 3, 2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent a... |
| CVE-2025-59482 | HIGH | 8 | 0.4% | Feb 3, 2026 | Heap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent a... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now