2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-69416 | MEDIUM | 4.3 | 0.3% | Jan 2, 2026 | In the plex.tv backend for Plex Media Server (PMS) through 2025-12-31, a non-server device token can retrieve other toke... |
| CVE-2025-34171 | MEDIUM | 5.3 | 0.5% | Jan 2, 2026 | CasaOS versions up to and including 0.4.15 expose multiple unauthenticated endpoints that allow remote attackers to retr... |
| CVE-2025-15439 | MEDIUM | 6.3 | 0.2% | Jan 2, 2026 | A vulnerability was identified in Daptin 0.10.3. Affected by this vulnerability is the function goqu.L of the file serve... |
| CVE-2025-69284 | MEDIUM | 4.3 | 0.2% | Jan 2, 2026 | Plane is an an open-source project management tool. In plane.io, a guest user doesn't have a permission to access https[... |
| CVE-2025-62852 | MEDIUM | 6.5 | 0.3% | Jan 2, 2026 | A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker... |
| CVE-2025-59381 | MEDIUM | 4.9 | 0.4% | Jan 2, 2026 | A path traversal vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker ... |
| CVE-2025-59380 | MEDIUM | 4.9 | 0.5% | Jan 2, 2026 | A path traversal vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker ... |
| CVE-2025-53597 | MEDIUM | 6.5 | 0.6% | Jan 2, 2026 | A buffer overflow vulnerability has been reported to affect License Center. If a remote attacker gains an administrator ... |
| CVE-2025-53594 | MEDIUM | 4.4 | 0.1% | Jan 2, 2026 | A path traversal vulnerability has been reported to affect several product versions. If a local attacker gains a user ac... |
| CVE-2025-52871 | MEDIUM | 6.5 | 0.5% | Jan 2, 2026 | An out-of-bounds read vulnerability has been reported to affect License Center. If a remote attacker gains a user accoun... |
| CVE-2025-48721 | MEDIUM | 6.5 | 0.4% | Jan 2, 2026 | A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker... |
| CVE-2025-62857 | MEDIUM | 6.1 | 0.2% | Jan 2, 2026 | A cross-site scripting (XSS) vulnerability has been reported to affect QuMagie. The remote attackers can then exploit th... |
| CVE-2025-57705 | MEDIUM | 4.9 | 0.3% | Jan 2, 2026 | An allocation of resources without limits or throttling vulnerability has been reported to affect several QNAP operating... |
| CVE-2025-54166 | MEDIUM | 4.9 | 0.3% | Jan 2, 2026 | An out-of-bounds read vulnerability has been reported to affect several QNAP operating system versions. If a remote atta... |
| CVE-2025-54165 | MEDIUM | 4.9 | 0.3% | Jan 2, 2026 | An out-of-bounds read vulnerability has been reported to affect several QNAP operating system versions. If a remote atta... |
| CVE-2025-54164 | MEDIUM | 4.9 | 0.3% | Jan 2, 2026 | An out-of-bounds read vulnerability has been reported to affect several QNAP operating system versions. If a remote atta... |
| CVE-2025-53596 | MEDIUM | 4.9 | 0.3% | Jan 2, 2026 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote... |
| CVE-2025-53593 | MEDIUM | 6.5 | 0.3% | Jan 2, 2026 | A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker... |
| CVE-2025-53592 | MEDIUM | 6.5 | 0.3% | Jan 2, 2026 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote... |
| CVE-2025-53591 | MEDIUM | 6.5 | 0.3% | Jan 2, 2026 | A use of externally-controlled format string vulnerability has been reported to affect several QNAP operating system ver... |
| CVE-2025-53590 | MEDIUM | 4.9 | 0.3% | Jan 2, 2026 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote... |
| CVE-2025-53589 | MEDIUM | 4.9 | 0.3% | Jan 2, 2026 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote... |
| CVE-2025-53414 | MEDIUM | 4.9 | 0.3% | Jan 2, 2026 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote... |
| CVE-2025-53405 | MEDIUM | 4.9 | 0.3% | Jan 2, 2026 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote... |
| CVE-2025-52431 | MEDIUM | 4.9 | 0.3% | Jan 2, 2026 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now