2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-57155 | HIGH | 7.5 | 0.3% | Jan 20, 2026 | NULL pointer dereference in the daap_reply_groups function in src/httpd_daap.c in owntone-server through commit 5e6f19a ... |
| CVE-2025-55131 | HIGH | 7.1 | 3.5% | Jan 20, 2026 | A flaw in Node.js's buffer allocation logic can expose uninitialized memory when allocations are interrupted, when using... |
| CVE-2025-33233 | HIGH | 7.8 | 0.2% | Jan 20, 2026 | NVIDIA Merlin Transformers4Rec for all platforms contains a vulnerability where an attacker could cause code injection. ... |
| CVE-2025-33230 | HIGH | 7.3 | 1.2% | Jan 20, 2026 | NVIDIA Nsight Systems for Linux contains a vulnerability in the .run installer, where an attacker could cause an OS comm... |
| CVE-2025-33229 | HIGH | 7.3 | 0.2% | Jan 20, 2026 | NVIDIA Nsight Visual Studio for Windows contains a vulnerability in Nsight Monitor where an attacker can execute arbitra... |
| CVE-2025-33228 | HIGH | 7.3 | 1.2% | Jan 20, 2026 | NVIDIA Nsight Systems contains a vulnerability in the gfx_hotspot recipe, where an attacker could cause an OS command in... |
| CVE-2025-56353 | HIGH | 7.5 | 0.3% | Jan 20, 2026 | In tinyMQTT commit 6226ade15bd4f97be2d196352e64dd10937c1962 (2024-02-18), a memory leak occurs due to the broker's failu... |
| CVE-2025-33015 | HIGH | 8.8 | 0.3% | Jan 20, 2026 | IBM Concert 1.0.0 through 2.1.0 is vulnerable to malicious file upload by not validating the content of the file uploade... |
| CVE-2025-53912 | HIGH | 8.1 | 0.4% | Jan 20, 2026 | An arbitrary file read vulnerability exists in the encapsulatedDoc functionality of MedDream PACS Premium 7.3.6.870. A s... |
| CVE-2025-1722 | HIGH | 7.5 | 0.3% | Jan 20, 2026 | IBM Concert 1.0.0 through 2.1.0 could allow a remote attacker to obtain sensitive information from allocated memory due ... |
| CVE-2025-1719 | HIGH | 7.5 | 0.3% | Jan 20, 2026 | IBM Concert 1.0.0 through 2.1.0 could allow a remote attacker to obtain sensitive information from allocated memory due ... |
| CVE-2025-15380 | HIGH | 7.2 | 0.2% | Jan 20, 2026 | The NotificationX – FOMO, Live Sales Notification, WooCommerce Sales Popup, GDPR, Social Proof, Announcement Banner & Fl... |
| CVE-2025-15347 | HIGH | 8.8 | 0.3% | Jan 20, 2026 | The Creator LMS – The LMS for Creators, Coaches, and Trainers plugin for WordPress is vulnerable to unauthorized modific... |
| CVE-2025-14115 | HIGH | 8.4 | 0.1% | Jan 20, 2026 | IBM Sterling Connect:Direct for UNIX Container 6.3.0.0 through 6.3.0.6 Interim Fix 016, and 6.4.0.0 through 6.4.0.3 Inte... |
| CVE-2025-12985 | HIGH | 8.4 | 0.1% | Jan 20, 2026 | IBM Licensing Operator incorrectly assigns privileges to security critical files which could allow a local root escalati... |
| CVE-2025-9466 | HIGH | 7.5 | 0.6% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ... |
| CVE-2025-9465 | HIGH | 7.5 | 0.4% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ... |
| CVE-2025-9464 | HIGH | 7.5 | 0.3% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. This vulnerability is tr... |
| CVE-2025-9283 | HIGH | 7.5 | 0.5% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ... |
| CVE-2025-9282 | HIGH | 7.5 | 0.5% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ... |
| CVE-2025-9281 | HIGH | 7.5 | 0.5% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ... |
| CVE-2025-9280 | HIGH | 7.5 | 0.4% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. Fuzzing performed using ... |
| CVE-2025-9279 | HIGH | 7.5 | 0.5% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ... |
| CVE-2025-9278 | HIGH | 7.5 | 0.4% | Jan 20, 2026 | A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. After running a Burp Sui... |
| CVE-2025-15281 | HIGH | 7.5 | 0.3% | Jan 20, 2026 | Calling wordexp with WRDE_REUSE in conjunction with WRDE_APPEND in the GNU C Library version 2.0 to version 2.42 may cau... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now