2025 CVE Vulnerabilities
45,259 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-7182 | MEDIUM | 6.1 | 0.3% | Jul 8, 2025 | A vulnerability has been found in itsourcecode Student Transcript Processing System 1.0 and classified as problematic. A... |
| CVE-2025-7037 | HIGH | 7.2 | 0.9% | Jul 8, 2025 | SQL injection in Ivanti Endpoint Manager before version 2024 SU3 and 2022 SU8 Security Update 1 allows a remote authenti... |
| CVE-2025-6996 | HIGH | 8.4 | 0.2% | Jul 8, 2025 | Improper use of encryption in the agent of Ivanti Endpoint Manager before version 2024 SU3 and 2022 SU8 Security Update ... |
| CVE-2025-6995 | HIGH | 8.4 | 0.2% | Jul 8, 2025 | Improper use of encryption in the agent of Ivanti Endpoint Manager before version 2024 SU3 and 2022 SU8 Security Update ... |
| CVE-2025-6770 | HIGH | 7.2 | 12.3% | Jul 8, 2025 | OS command injection in Ivanti Endpoint Manager Mobile (EPMM) before version 12.5.0.2 allows a remote authenticated atta... |
| CVE-2025-5463 | MEDIUM | 5.5 | 0.3% | Jul 8, 2025 | Insertion of sensitive information into a log file in Ivanti Connect Secure before version 22.7R2.8 and Ivanti Policy Se... |
| CVE-2025-5451 | MEDIUM | 4.9 | 0.7% | Jul 8, 2025 | A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.8 and Ivanti Policy Secure before version 2... |
| CVE-2025-5450 | LOW | 2.7 | 0.2% | Jul 8, 2025 | Improper access control in the certificate management component of Ivanti Connect Secure before version 22.7R2.8 and Iva... |
| CVE-2025-53545 | MEDIUM | 6.9 | 0.3% | Jul 8, 2025 | Press, a Frappe custom app that runs Frappe Cloud, manages infrastructure, subscription, marketplace, and software-as-a-... |
| CVE-2025-53480 | MEDIUM | 5.4 | 0.2% | Jul 8, 2025 | The CheckUser extension’s Special:Investigate page has a vulnerability in the Account information tab, where specific in... |
| CVE-2025-53372 | HIGH | 7.5 | 1.1% | Jul 8, 2025 | node-code-sandbox-mcp is a Node.js–based Model Context Protocol server that spins up disposable Docker containers to exe... |
| CVE-2025-3630 | MEDIUM | 5.4 | 0.2% | Jul 8, 2025 | IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.6, 6.2.0.0 through 6.2.0.4, IBM Sterling File Gateway 6.0.0.0 throug... |
| CVE-2025-36600 | HIGH | 8.2 | 0.2% | Jul 8, 2025 | Dell Client Platform BIOS contains an Improper Access Control Applied to Mirrored or Aliased Memory Regions vulnerabilit... |
| CVE-2025-2827 | MEDIUM | 4.3 | 0.2% | Jul 8, 2025 | IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6, and 6.2.0.0 through 6.2.0.4 could disclose sensitive installat... |
| CVE-2025-2793 | MEDIUM | 5.4 | 0.2% | Jul 8, 2025 | IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.6, 6.2.0.0 through 6.2.0.4, IBM Sterling File Gateway 6.0.0.0 throug... |
| CVE-2025-29267 | MEDIUM | 6.5 | 0.3% | Jul 8, 2025 | SQL Injection vulnerability in Abis, Inc Adjutant Core Accounting ERP build v.PreBeta250F allows a remote attacker to ob... |
| CVE-2025-24474 | LOW | 2.7 | 0.2% | Jul 8, 2025 | An Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability [CWE-89] in FortiM... |
| CVE-2025-7345 | HIGH | 7.5 | 1.1% | Jul 8, 2025 | A flaw exists in gdk‑pixbuf within the gdk_pixbuf__jpeg_image_load_increment function (io-jpeg.c) and in glib’s g_base64... |
| CVE-2025-7181 | CRITICAL | 9.8 | 0.4% | Jul 8, 2025 | A vulnerability, which was classified as critical, was found in code-projects Staff Audit System 1.0. Affected is an unk... |
| CVE-2025-7180 | CRITICAL | 9.8 | 0.5% | Jul 8, 2025 | A vulnerability, which was classified as critical, has been found in code-projects Staff Audit System 1.0. This issue af... |
| CVE-2025-47422 | HIGH | 7.5 | 0.4% | Jul 8, 2025 | Advanced Installer before 22.6 has an uncontrolled search path element local privilege escalation vulnerability. When ru... |
| CVE-2025-7179 | CRITICAL | 9.8 | 0.5% | Jul 8, 2025 | A vulnerability classified as critical was found in code-projects Library System 1.0. This vulnerability affects unknown... |
| CVE-2025-7178 | CRITICAL | 9.8 | 0.5% | Jul 8, 2025 | A vulnerability classified as critical has been found in code-projects Food Distributor Site 1.0. This affects an unknow... |
| CVE-2025-50130 | HIGH | 8.4 | 0.2% | Jul 8, 2025 | A heap-based buffer overflow vulnerability exists in VS6Sim.exe contained in V-SFT and TELLUS provided by FUJI ELECTRIC ... |
| CVE-2025-27061 | HIGH | 7.8 | 0.1% | Jul 8, 2025 | Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the vid... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now