2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-53824 | MEDIUM | 5.4 | 0.2% | Jul 14, 2025 | WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. A Reflected Cro... |
| CVE-2025-53823 | HIGH | 8.8 | 0.5% | Jul 14, 2025 | WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. Versions prior ... |
| CVE-2025-53822 | MEDIUM | 6.1 | 0.2% | Jul 14, 2025 | WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. A Reflected Cro... |
| CVE-2025-53821 | MEDIUM | 6.1 | 0.2% | Jul 14, 2025 | WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. An Open Redirec... |
| CVE-2025-53820 | MEDIUM | 6.1 | 0.2% | Jul 14, 2025 | WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. A Reflected Cro... |
| CVE-2025-53819 | HIGH | 7.9 | 0.1% | Jul 14, 2025 | Nix is a package manager for Linux and other Unix systems. Builds with Nix 2.30.0 on macOS were executed with elevated p... |
| CVE-2025-53818 | HIGH | 8.9 | 1.3% | Jul 14, 2025 | GitHub Kanban MCP Server is a Model Context Protocol (MCP) server for managing GitHub issues in Kanban board format and ... |
| CVE-2025-53643 | HIGH | 7.5 | 0.3% | Jul 14, 2025 | AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.12.14, the Python par... |
| CVE-2025-53640 | MEDIUM | 6.5 | 0.6% | Jul 14, 2025 | Indico is an event management system that uses Flask-Multipass, a multi-backend authentication system for Flask. Startin... |
| CVE-2025-53639 | CRITICAL | 9.8 | 0.4% | Jul 14, 2025 | MeterSphere is an open source continuous testing platform. Prior to version 3.6.5-lts, the sortField parameter in certai... |
| CVE-2025-53623 | HIGH | 8.1 | 0.7% | Jul 14, 2025 | The Job Iteration API is an an extension for ActiveJob that make jobs interruptible and resumable Versions prior to 1.11... |
| CVE-2025-53101 | CRITICAL | 9.8 | 0.8% | Jul 14, 2025 | ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.... |
| CVE-2025-53019 | HIGH | 7.5 | 0.5% | Jul 14, 2025 | ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.... |
| CVE-2025-53015 | HIGH | 7.5 | 0.7% | Jul 14, 2025 | ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.... |
| CVE-2025-7628 | HIGH | 8.1 | 0.7% | Jul 14, 2025 | A vulnerability was found in YiJiuSmile kkFileViewOfficeEdit up to 5fbc57c48e8fe6c1b91e0e7995e2d59615f37abd. It has been... |
| CVE-2025-7627 | CRITICAL | 9.8 | 0.4% | Jul 14, 2025 | A vulnerability was found in YiJiuSmile kkFileViewOfficeEdit up to 5fbc57c48e8fe6c1b91e0e7995e2d59615f37abd and classifi... |
| CVE-2025-53014 | CRITICAL | 9.8 | 0.6% | Jul 14, 2025 | ImageMagick is free and open-source software used for editing and manipulating digital images. Versions prior to 7.1.2-0... |
| CVE-2025-52363 | MEDIUM | 6.8 | 0.2% | Jul 14, 2025 | Tenda CP3 Pro Firmware V22.5.4.93 contains a hardcoded root password hash in the /etc/passwd file and /etc/passwd-. An a... |
| CVE-2025-7626 | HIGH | 7.5 | 0.5% | Jul 14, 2025 | A vulnerability has been found in YiJiuSmile kkFileViewOfficeEdit up to 5fbc57c48e8fe6c1b91e0e7995e2d59615f37abd and cla... |
| CVE-2025-7625 | MEDIUM | 4.3 | 0.5% | Jul 14, 2025 | A vulnerability, which was classified as critical, was found in YiJiuSmile kkFileViewOfficeEdit up to 5fbc57c48e8fe6c1b9... |
| CVE-2025-51660 | MEDIUM | 5.4 | 0.3% | Jul 14, 2025 | SemCms v5.0 was discovered to contain a SQL injection vulnerability via the lgid parameter at SEMCMS_Products.php. |
| CVE-2025-51659 | MEDIUM | 5.4 | 0.3% | Jul 14, 2025 | SemCms v5.0 was discovered to contain a SQL injection vulnerability via the ID parameter at SEMCMS_Products.php. |
| CVE-2025-51658 | MEDIUM | 5.4 | 0.3% | Jul 14, 2025 | SemCms v5.0 was discovered to contain a SQL injection vulnerability via the ID parameter at SEMCMS_InquiryView.php. |
| CVE-2025-51657 | MEDIUM | 5.4 | 0.3% | Jul 14, 2025 | SemCms v5.0 was discovered to contain a SQL injection vulnerability via the lgid parameter at SEMCMS_Link.php. |
| CVE-2025-51656 | MEDIUM | 5.4 | 0.3% | Jul 14, 2025 | SemCms v5.0 was discovered to contain a SQL injection vulnerability via the ID parameter at SEMCMS_Link.php. |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now