2025 CVE Vulnerabilities
45,259 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-49535 | CRITICAL | 9.3 | 0.5% | Jul 8, 2025 | ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by an Improper Restriction of XML External Entity ... |
| CVE-2025-43584 | MEDIUM | 5.5 | 0.2% | Jul 8, 2025 | Substance3D - Viewer versions 0.22 and earlier are affected by an out-of-bounds read vulnerability that could lead to di... |
| CVE-2025-43583 | MEDIUM | 5.5 | 0.2% | Jul 8, 2025 | Substance3D - Viewer versions 0.22 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead ... |
| CVE-2025-43582 | HIGH | 7.8 | 0.2% | Jul 8, 2025 | Substance3D - Viewer versions 0.22 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could res... |
| CVE-2025-7193 | CRITICAL | 9.8 | 0.4% | Jul 8, 2025 | A vulnerability was found in itsourcecode Agri-Trading Online Shopping System up to 1.0. It has been classified as criti... |
| CVE-2025-7192 | HIGH | 8.8 | 4.0% | Jul 8, 2025 | A vulnerability was found in D-Link DIR-645 up to 1.05B01 and classified as critical. This issue affects the function ss... |
| CVE-2025-53355 | HIGH | 7.5 | 2.2% | Jul 8, 2025 | MCP Server Kubernetes is an MCP Server that can connect to a Kubernetes cluster and manage it. A command injection vulne... |
| CVE-2025-37103 | CRITICAL | 9.8 | 1.0% | Jul 8, 2025 | Hard-coded login credentials were found in HPE Networking Instant On Access Points, allowing anyone with knowledge of i... |
| CVE-2025-7191 | CRITICAL | 9.8 | 0.4% | Jul 8, 2025 | A vulnerability has been found in code-projects Student Enrollment System 1.0 and classified as critical. This vulnerabi... |
| CVE-2025-7190 | HIGH | 8.8 | 0.3% | Jul 8, 2025 | A vulnerability, which was classified as critical, was found in code-projects Library Management System 2.0. This affect... |
| CVE-2025-48386 | MEDIUM | 6.3 | 0.3% | Jul 8, 2025 | Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-... |
| CVE-2025-48385 | HIGH | 8.6 | 0.8% | Jul 8, 2025 | Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-... |
| CVE-2025-48384 | HIGH | 8 | 2.8% | Jul 8, 2025 | Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-... |
| CVE-2025-37102 | HIGH | 7.2 | 1.5% | Jul 8, 2025 | An authenticated command injection vulnerability exists in the Command line interface of HPE Networking Instant On Acces... |
| CVE-2025-27369 | MEDIUM | 4.3 | 0.2% | Jul 8, 2025 | IBM OpenPages with Watson 8.3 and 9.0 is vulnerable to information disclosure of sensitive information due to a ... |
| CVE-2025-27367 | MEDIUM | 6.5 | 0.2% | Jul 8, 2025 | IBM OpenPages with Watson 8.3 and 9.0 is vulnerable to improper input validation due to bypassing of client-side v... |
| CVE-2025-7363 | MEDIUM | 5.4 | 0.2% | Jul 8, 2025 | The TitleIcon extension for MediaWiki is vulnerable to stored XSS through the #titleicon_unicode parser function. User i... |
| CVE-2025-7362 | MEDIUM | 5.4 | 0.2% | Jul 8, 2025 | The MsUpload extension for MediaWiki is vulnerable to stored XSS via the msu-continue system message, which is inserted ... |
| CVE-2025-7189 | HIGH | 8.8 | 0.4% | Jul 8, 2025 | A vulnerability, which was classified as critical, has been found in code-projects Chat System 1.0. Affected by this iss... |
| CVE-2025-7188 | HIGH | 8.8 | 0.4% | Jul 8, 2025 | A vulnerability classified as critical was found in code-projects Chat System 1.0. Affected by this vulnerability is an ... |
| CVE-2025-53479 | MEDIUM | 5.4 | 0.2% | Jul 8, 2025 | The CheckUser extension’s Special:CheckUser interface is vulnerable to reflected XSS via the rev-deleted-user message. T... |
| CVE-2025-4663 | MEDIUM | 4.9 | 0.3% | Jul 8, 2025 | An Improper Check for Unusual or Exceptional Conditions vulnerability in Brocade Fabric OS before 9.2.2.a could allow ... |
| CVE-2025-47135 | MEDIUM | 5.5 | 0.2% | Jul 8, 2025 | Dimension versions 4.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure o... |
| CVE-2025-30312 | HIGH | 7.8 | 0.2% | Jul 8, 2025 | Dimension versions 4.1.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary... |
| CVE-2025-0928 | HIGH | 8.8 | 0.6% | Jul 8, 2025 | In Juju versions prior to 3.6.8 and 2.9.52, any authenticated controller user was allowed to upload arbitrary agent bina... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now