2025 CVE Vulnerabilities

45,320 CVEs published in 2025.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2025-12997LOW3.1Insecure Direct Object Reference vulnerability in Medtronic CareLink Network which allows an authenticated attacker with...
CVE-2025-20388LOW2.7In Splunk Enterprise versions below 10.0.1, 9.4.6, 9.3.8, and 9.2.10, and Splunk Cloud Platform versions below 10.1.2507...
CVE-2025-12954LOW2.7The Timetable and Event Schedule by MotoPress WordPress plugin before 2.4.16 does not verify a user has access to a spec...
CVE-2025-13640LOW3.5Inappropriate implementation in Passwords in Google Chrome prior to 143.0.7499.41 allowed a local attacker to bypass aut...
CVE-2025-59700LOW3.9Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7 (patched in 13.6.12 (LTS) and 13.9.0 (...
CVE-2025-59696LOW3.2Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7 (patched in 13.6.12 (LTS) and 13.9.0 (...
CVE-2025-65858LOW3.5A Stored Cross-Site Scripting (XSS) vulnerability in Calibre-Web v0.6.25 allows attackers to inject malicious JavaScript...
CVE-2025-13879LOW2.7Directory traversal vulnerability in SOLIDserver IPAM v8.2.3. This vulnerability allows an authenticated user with admin...
CVE-2025-58487LOW3.3Improper authorization in Samsung Account prior to version 15.5.01.1 allows local attacker to launch arbitrary activity ...
CVE-2025-58483LOW3.3Improper export of android application components in Galaxy Store for Galaxy Watch prior to version 1.0.06.29 allows loc...
CVE-2025-13805LOW3.7A weakness has been identified in nutzam NutzBoot up to 2.6.0-SNAPSHOT. This affects the function getInputStream of the ...
CVE-2025-13795LOW2.4A weakness has been identified in codingWithElias School Management System up to f1ac334bfd89ae9067cc14dea12ec6ff3f078c0...
CVE-2025-6666LOW2A vulnerability was determined in motogadget mo.lock Ignition Lock up to 20251125. Affected by this vulnerability is an ...
CVE-2025-66372LOW2.8Mustang before 2.16.3 allows exfiltrating files via XXE attacks.
CVE-2025-58308LOW3.3Vulnerability of improper criterion security check in the call module. Impact: Successful exploitation of this vulnerabi...
CVE-2025-13758LOW3.5Exposure of credentials in unintended requests in Devolutions Server.This issue affects Server: through 2025.2.20, throu...
CVE-2025-66040LOW3.6Spotipy is a Python library for the Spotify Web API. Prior to version 2.25.2, there is a cross-site scripting (XSS) vuln...
CVE-2025-65681LOW3.3An issue was discovered in Overhang.IO (tutor-open-edx) (overhangio/tutor) 20.0.2 allowing local unauthorized attackers ...
CVE-2025-20373LOW2.7In Splunk Add-on for Palo Alto Networks versions below 2.0.2, the add-on exposes client secrets in plain text in the _in...
CVE-2025-55174LOW3.2In KDE Skanpage before 25.08.0, an attempt at file overwrite can result in the contents of the new file at the beginning...
CVE-2025-65942LOW2.7VictoriaMetrics is a scalable solution for monitoring and managing time series data. In versions from 1.0.0 to before 1....
CVE-2025-33200LOW3.3NVIDIA DGX Spark GB10 contains a vulnerability in SROOT firmware, where an attacker could cause a resource to be reused....
CVE-2025-33199LOW3.8NVIDIA DGX Spark GB10 contains a vulnerability in SROOT firmware, where an attacker could cause incorrect control flow b...
CVE-2025-33198LOW3.3NVIDIA DGX Spark GB10 contains a vulnerability in SROOT firmware, where an attacker could cause a resource to be reused....
CVE-2025-13596LOW2.7A sensitive information disclosure vulnerability exists in the error handling component of ATISoluciones CIGES Applicati...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now