2025 CVEs
19 CVE-2025 IDs the feed has covered, by the month coverage started.
September 2026 4
- CVE-2025-39964 crypto: af_alg - Disallow concurrent writes in af_alg_sendmsg
- CVE-2025-39682 tls: fix handling of zero-length records on the rx_list
- CVE-2025-25249 Fortinet FortiSwitchManager
- CVE-2025-12768 FactoryTalk® Historian Machine Edition - Out-of-Bounds Write Vulnerability
August 2026 2
- CVE-2025-62593 Ray is vulnerable to RCE via Safari & Firefox Browsers through DNS Rebinding Attack
- CVE-2025-7639 AVEVA Enterprise SCADA Deserialization of Untrusted Data
March 2026 11
- CVE-2025-53521 BigIP APM Vulnerability
- CVE-2025-70614 n/a n/a
- CVE-2025-49844 Redis Lua Use-After-Free may lead to remote code execution
- CVE-2025-46819 Redis is vulnerable to DoS via specially crafted LUA scripts
- CVE-2025-46818 Redis: Authenticated users can execute LUA scripts as a different user
- CVE-2025-46817 Lua library commands may lead to integer overflow and potential RCE
- CVE-2025-54068 Livewire vulnerable to remote command execution during property update hydration
- CVE-2025-43520 Apple iOS and iPadOS
- CVE-2025-43510 Apple iOS and iPadOS
- CVE-2025-32432 Craft CMS Allows Remote Code Execution
- CVE-2025-31277 Apple Safari
February 2026 2
- CVE-2025-59536 Claude Code's startup trust dialog could lead to Command Execution attack
- CVE-2025-8088 Path traversal vulnerability in WinRAR