2025 CVE Vulnerabilities
45,319 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-15289 | LOW | 3.1 | 0.2% | Feb 5, 2026 | Tanium addressed an improper access controls vulnerability in Interact. |
| CVE-2025-22873 | LOW | 3.8 | 0.2% | Feb 4, 2026 | It was possible to improperly access the parent directory of an os.Root by opening a filename ending in "../". For examp... |
| CVE-2025-2134 | LOW | 3.5 | 0.2% | Feb 4, 2026 | IBM Jazz Reporting Service could allow an authenticated user on the network to affect the system's performance using com... |
| CVE-2025-27550 | LOW | 3.5 | 0.2% | Feb 4, 2026 | IBM Jazz Reporting Service could allow an authenticated user on the host network to obtain sensitive information about o... |
| CVE-2025-1823 | LOW | 3.5 | 0.2% | Feb 4, 2026 | IBM Jazz Reporting Service could allow an authenticated user on the host network to cause a denial of service using spec... |
| CVE-2025-11598 | LOW | 1 | 0.2% | Feb 3, 2026 | In mObywatel iOS application an unauthorized user can use the App Switcher to view the account owner's personal informat... |
| CVE-2025-58381 | LOW | 2.3 | 0.2% | Feb 3, 2026 | A vulnerability in Brocade Fabric OS before 9.2.1c2 could allow an authenticated attacker with admin privileges using ... |
| CVE-2025-58380 | LOW | 2.3 | 0.2% | Feb 3, 2026 | A vulnerability in Brocade Fabric OS before 9.2.1 could allow an authenticated attacker with admin privileges using the ... |
| CVE-2025-67482 | LOW | 1.7 | 0.3% | Feb 3, 2026 | Vulnerability in Wikimedia Foundation Scribunto, Wikimedia Foundation luasandbox. This vulnerability is associated with ... |
| CVE-2025-61653 | LOW | 2.7 | 0.3% | Feb 3, 2026 | Vulnerability in Wikimedia Foundation TextExtracts. This vulnerability is associated with program files includes/ApiQuer... |
| CVE-2025-61652 | LOW | 2.7 | 0.3% | Feb 3, 2026 | Vulnerability in Wikimedia Foundation DiscussionTools.This issue affects DiscussionTools: from * before 1.43.4, 1.44.1. |
| CVE-2025-61650 | LOW | 1.1 | 0.2% | Feb 3, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F... |
| CVE-2025-61649 | LOW | 1.1 | 0.3% | Feb 3, 2026 | Vulnerability in Wikimedia Foundation CheckUser. This vulnerability is associated with program files src/Services/CheckU... |
| CVE-2025-61647 | LOW | 0.4 | 0.3% | Feb 3, 2026 | Vulnerability in Wikimedia Foundation CheckUser. This vulnerability is associated with program files src/Api/Rest/Handle... |
| CVE-2025-61634 | LOW | 3.1 | 0.3% | Feb 3, 2026 | Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Rest/Handl... |
| CVE-2025-6927 | LOW | 2.3 | 0.5% | Feb 2, 2026 | Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/specials/p... |
| CVE-2025-6593 | LOW | 2.1 | 0.4% | Feb 2, 2026 | Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/user/User.... |
| CVE-2025-6592 | LOW | 2.1 | 0.4% | Feb 2, 2026 | Vulnerability in Wikimedia Foundation AbuseFilter. This vulnerability is associated with program files includes/auth/Aut... |
| CVE-2025-6589 | LOW | 2.1 | 0.4% | Feb 2, 2026 | Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/specials/p... |
| CVE-2025-36194 | LOW | 3.3 | 0.1% | Feb 2, 2026 | IBM PowerVM Hypervisor FW1110.00 through FW1110.03, FW1060.00 through FW1060.51, and FW950.00 through FW950.F0 may expos... |
| CVE-2025-13881 | LOW | 2.7 | 0.4% | Feb 2, 2026 | A flaw was found in Keycloak Admin API. This vulnerability allows an administrator with limited privileges to retrieve s... |
| CVE-2025-15497 | LOW | 3.8 | 0.3% | Jan 30, 2026 | Insufficient epoch key slot processing in OpenVPN 2.7_alpha1 through 2.7_rc5 allows remote authenticated users to trigge... |
| CVE-2025-9615 | LOW | 3.3 | 0.2% | Jan 26, 2026 | A flaw was found in NetworkManager. The NetworkManager package allows access to files that may belong to other users. Ne... |
| CVE-2025-57784 | LOW | 3.3 | 0.1% | Jan 26, 2026 | Tomahawk auth timing attack due to usage of `strcmp` has been identified in Hiawatha webserver version 11.7 which allows... |
| CVE-2025-71148 | LOW | 3.3 | 0.1% | Jan 23, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/handshake: restore destructor on submit failure... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now