2025 CVE Vulnerabilities
45,320 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-71190 | MEDIUM | 5.5 | 0.2% | Jan 31, 2026 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: bcm-sba-raid: fix device leak on probe ... |
| CVE-2025-71189 | MEDIUM | 5.5 | 0.2% | Jan 31, 2026 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw: dmamux: fix OF node leak on route al... |
| CVE-2025-71188 | MEDIUM | 5.5 | 0.2% | Jan 31, 2026 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: lpc18xx-dmamux: fix device leak on route... |
| CVE-2025-71187 | MEDIUM | 5.5 | 0.2% | Jan 31, 2026 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: sh: rz-dmac: fix device leak on probe fa... |
| CVE-2025-71186 | MEDIUM | 5.5 | 0.2% | Jan 31, 2026 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: stm32: dmamux: fix device leak on route ... |
| CVE-2025-71185 | MEDIUM | 5.5 | 0.2% | Jan 31, 2026 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: ti: dma-crossbar: fix device leak on am3... |
| CVE-2025-71184 | MEDIUM | 5.5 | 0.1% | Jan 31, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix NULL dereference on root when tracing in... |
| CVE-2025-71183 | MEDIUM | 5.5 | 0.2% | Jan 31, 2026 | In the Linux kernel, the following vulnerability has been resolved: btrfs: always detect conflicting inodes when loggin... |
| CVE-2025-71182 | MEDIUM | 5.5 | 0.2% | Jan 31, 2026 | In the Linux kernel, the following vulnerability has been resolved: can: j1939: make j1939_session_activate() fail if d... |
| CVE-2025-71181 | MEDIUM | 5.5 | 0.1% | Jan 31, 2026 | In the Linux kernel, the following vulnerability has been resolved: rust_binder: remove spin_lock() in rust_shrink_free... |
| CVE-2025-71180 | MEDIUM | 5.5 | 0.1% | Jan 31, 2026 | In the Linux kernel, the following vulnerability has been resolved: counter: interrupt-cnt: Drop IRQF_NO_THREAD flag A... |
| CVE-2025-15525 | MEDIUM | 5.3 | 0.3% | Jan 31, 2026 | The Ajax Load More – Infinite Scroll, Load More, & Lazy Load plugin for WordPress is vulnerable to unauthorized access o... |
| CVE-2025-15510 | MEDIUM | 5.3 | 0.3% | Jan 31, 2026 | The NEX-Forms – Ultimate Forms Plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabi... |
| CVE-2025-36428 | MEDIUM | 5.3 | 0.3% | Jan 30, 2026 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 could allow an aut... |
| CVE-2025-36427 | MEDIUM | 6.5 | 0.3% | Jan 30, 2026 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) could allow a user to cause a denial of service due to... |
| CVE-2025-36424 | MEDIUM | 6.5 | 0.3% | Jan 30, 2026 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) could allow a user to cause a denial of service due to... |
| CVE-2025-36423 | MEDIUM | 5.5 | 0.2% | Jan 30, 2026 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 12.1.0 - 12.1.3 could allow a local user to cause a de... |
| CVE-2025-36407 | MEDIUM | 5.5 | 0.3% | Jan 30, 2026 | IBM® Db2® is vulnerable to a denial of service with a specially crafted query that uses ALTER TABLE operations. |
| CVE-2025-36387 | MEDIUM | 6.5 | 0.3% | Jan 30, 2026 | IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 - 11.5.9 could allow an authenticated user to c... |
| CVE-2025-36366 | MEDIUM | 6.5 | 0.4% | Jan 30, 2026 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) could allow a user to cause a denial of service by exe... |
| CVE-2025-36353 | MEDIUM | 5.5 | 0.2% | Jan 30, 2026 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 could allow a loca... |
| CVE-2025-36123 | MEDIUM | 5.5 | 0.1% | Jan 30, 2026 | IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 could allow a loca... |
| CVE-2025-36098 | MEDIUM | 6.5 | 0.3% | Jan 30, 2026 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 could allow an aut... |
| CVE-2025-36009 | MEDIUM | 6.5 | 0.3% | Jan 30, 2026 | IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow an authenticated user to cause a denial of... |
| CVE-2025-36001 | MEDIUM | 6.5 | 0.3% | Jan 30, 2026 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 could allow an aut... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now