2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-12679MEDIUM6.5A vulnerability in Brocade SANnav before 2.4.0b prints the Password-Based Encryption (PBE) key in plaintext in the syst...
CVE-2025-47402MEDIUM6.5Transient DOS when processing a received frame with an excessively large authentication information element.
CVE-2025-15395MEDIUM5.4IBM Jazz Foundation 7.0.3 through 7.0.3 iFix019 and 7.1.0 through 7.1.0 iFix005 is vulnerable to access control violatio...
CVE-2025-7105MEDIUM5.7A vulnerability in danny-avila/librechat allows attackers to exploit the unrestricted Fork Function in `/api/convos/fork...
CVE-2025-6208MEDIUM5.3The `SimpleDirectoryReader` component in `llama_index.core` version 0.12.23 suffers from uncontrolled memory consumption...
CVE-2025-71191MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: at_hdmac: fix device leak on of_dma_xlat...
CVE-2025-71190MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: bcm-sba-raid: fix device leak on probe ...
CVE-2025-71189MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw: dmamux: fix OF node leak on route al...
CVE-2025-71188MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: lpc18xx-dmamux: fix device leak on route...
CVE-2025-71187MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: sh: rz-dmac: fix device leak on probe fa...
CVE-2025-71186MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: stm32: dmamux: fix device leak on route ...
CVE-2025-71185MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: ti: dma-crossbar: fix device leak on am3...
CVE-2025-71184MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: btrfs: fix NULL dereference on root when tracing in...
CVE-2025-71183MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: btrfs: always detect conflicting inodes when loggin...
CVE-2025-71182MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: can: j1939: make j1939_session_activate() fail if d...
CVE-2025-71181MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: rust_binder: remove spin_lock() in rust_shrink_free...
CVE-2025-71180MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: counter: interrupt-cnt: Drop IRQF_NO_THREAD flag A...
CVE-2025-15525MEDIUM5.3The Ajax Load More – Infinite Scroll, Load More, & Lazy Load plugin for WordPress is vulnerable to unauthorized access o...
CVE-2025-15510MEDIUM5.3The NEX-Forms – Ultimate Forms Plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabi...
CVE-2025-36428MEDIUM5.3IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 could allow an aut...
CVE-2025-36427MEDIUM6.5IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) could allow a user to cause a denial of service due to...
CVE-2025-36424MEDIUM6.5IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) could allow a user to cause a denial of service due to...
CVE-2025-36423MEDIUM5.5IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 12.1.0 - 12.1.3 could allow a local user to cause a de...
CVE-2025-36407MEDIUM5.5IBM® Db2® is vulnerable to a denial of service with a specially crafted query that uses ALTER TABLE operations.
CVE-2025-36387MEDIUM6.5IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 - 11.5.9 could allow an authenticated user to c...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now