2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-8178 | HIGH | 8.8 | 0.8% | Jul 26, 2025 | A vulnerability classified as critical has been found in Tenda AC10 16.03.10.13. Affected is an unknown function of the ... |
| CVE-2025-6895 | CRITICAL | 9.8 | 0.7% | Jul 26, 2025 | The Melapress Login Security plugin for WordPress is vulnerable to Authentication Bypass due to missing authorization wi... |
| CVE-2025-8177 | HIGH | 7.8 | 0.3% | Jul 26, 2025 | A vulnerability was found in LibTIFF up to 4.7.0. It has been rated as critical. This issue affects the function setrow ... |
| CVE-2025-8176 | HIGH | 7.8 | 0.2% | Jul 26, 2025 | A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the funct... |
| CVE-2025-8103 | MEDIUM | 4.3 | 0.2% | Jul 26, 2025 | The WPeMatico RSS Feed Fetcher plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, a... |
| CVE-2025-54416 | CRITICAL | 9.1 | 0.5% | Jul 26, 2025 | tj-actions/branch-names is a Github actions repository that contains workflows to retrieve branch or tag names with supp... |
| CVE-2025-54415 | CRITICAL | 9.1 | 0.6% | Jul 26, 2025 | dag-factory is a library for Apache Airflow® to construct DAGs declaratively via configuration files. In versions 0.23.0... |
| CVE-2025-54414 | MEDIUM | 5.1 | 0.5% | Jul 26, 2025 | Anubis is a Web AI Firewall Utility that weighs the soul of users' connections using one or more challenges in order to ... |
| CVE-2025-54413 | HIGH | 8.7 | 0.1% | Jul 26, 2025 | skops is a Python library which helps users share and ship their scikit-learn based models. Versions 0.11.0 and below co... |
| CVE-2025-54412 | HIGH | 8.7 | 0.1% | Jul 26, 2025 | skops is a Python library which helps users share and ship their scikit-learn based models. Versions 0.11.0 and below co... |
| CVE-2025-54385 | CRITICAL | 9.8 | 0.6% | Jul 26, 2025 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In versions bet... |
| CVE-2025-54380 | MEDIUM | 6.5 | 0.4% | Jul 26, 2025 | Opencast is a free, open-source platform to support the management of educational audio and video content. Prior to vers... |
| CVE-2025-54378 | HIGH | 8.3 | 0.5% | Jul 26, 2025 | HAX CMS allows you to manage your microsite universe with PHP or NodeJs backends. In versions 11.0.13 and below of haxcm... |
| CVE-2025-54366 | HIGH | 8.8 | 1.0% | Jul 26, 2025 | FreeScout is a lightweight free open source help desk and shared inbox built with PHP (Laravel framework). In versions 1... |
| CVE-2025-50185 | HIGH | 7 | 0.4% | Jul 26, 2025 | DbGate is cross-platform database manager. In versions 6.6.0 and below, DbGate allows unauthorized file access due to in... |
| CVE-2025-50184 | HIGH | 7.1 | 0.6% | Jul 26, 2025 | DbGate is cross-platform database manager. In versions 6.4.3-premium-beta.5 and below, DbGate is vulnerable to a directo... |
| CVE-2025-8175 | HIGH | 7.5 | 1.5% | Jul 26, 2025 | A vulnerability was found in D-Link DI-8400 16.07.26A1. It has been classified as problematic. This affects an unknown p... |
| CVE-2025-8174 | MEDIUM | 6.3 | 0.3% | Jul 26, 2025 | A vulnerability was found in code-projects Voting System 1.0 and classified as critical. Affected by this issue is some ... |
| CVE-2025-8173 | CRITICAL | 9.8 | 0.5% | Jul 25, 2025 | A vulnerability has been found in 1000 Projects ABC Courier Management System 1.0 and classified as critical. Affected b... |
| CVE-2025-8172 | HIGH | 8.8 | 0.4% | Jul 25, 2025 | A vulnerability, which was classified as critical, was found in itsourcecode Employee Management System 1.0. Affected is... |
| CVE-2025-8171 | MEDIUM | 6.3 | 0.3% | Jul 25, 2025 | A vulnerability, which was classified as critical, has been found in code-projects Document Management System 1.0. This ... |
| CVE-2025-8101 | HIGH | 8.8 | 0.5% | Jul 25, 2025 | Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') vulnerability in Linkify (link... |
| CVE-2025-8170 | HIGH | 8.8 | 1.0% | Jul 25, 2025 | A vulnerability classified as critical was found in TOTOLINK T6 4.1.5cu.748_B20211015. This vulnerability affects the fu... |
| CVE-2025-8169 | CRITICAL | 9.8 | 1.5% | Jul 25, 2025 | A vulnerability classified as critical has been found in D-Link DIR-513 1.10. This affects the function formSetWanPPTPca... |
| CVE-2025-8197 | — | — | — | Jul 25, 2025 | Rejected reason: Maintainers have included reasons at https://gitlab.gnome.org/GNOME/libsoup/-/issues/465 |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now