2025 CVE Vulnerabilities
45,264 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-2141 | MEDIUM | 6.1 | 0.2% | Jul 1, 2025 | IBM System Storage Virtualization Engine TS7700 3957 VED R5.4 8.54.2.17, R6.0 8.60.0.115, 3948 VED R5.4 8.54.2.17, R6.0 ... |
| CVE-2025-6936 | CRITICAL | 9.8 | 0.4% | Jul 1, 2025 | A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been classified as critical. This af... |
| CVE-2025-6935 | CRITICAL | 9.8 | 0.4% | Jul 1, 2025 | A vulnerability was found in Campcodes Sales and Inventory System 1.0 and classified as critical. Affected by this issue... |
| CVE-2025-6932 | LOW | 3.7 | 0.9% | Jun 30, 2025 | A vulnerability, which was classified as problematic, was found in D-Link DCS-7517 up to 2.02.0. This affects the functi... |
| CVE-2025-6931 | HIGH | 7.4 | 1.6% | Jun 30, 2025 | A vulnerability classified as problematic was found in D-Link DCS-6517 and DCS-7517 up to 2.02.0. Affected by this vulne... |
| CVE-2025-6930 | HIGH | 8.8 | 0.3% | Jun 30, 2025 | A vulnerability classified as critical has been found in PHPGurukul Zoo Management System 2.1. Affected is an unknown fu... |
| CVE-2025-6554 | HIGH | 8.1 | 6.6% | Jun 30, 2025 | Type confusion in V8 in Google Chrome prior to 138.0.7204.96 allowed a remote attacker to perform arbitrary read/write v... |
| CVE-2025-6929 | HIGH | 8.8 | 0.3% | Jun 30, 2025 | A vulnerability was found in PHPGurukul Zoo Management System 2.1. It has been rated as critical. This issue affects som... |
| CVE-2025-53004 | CRITICAL | 9.8 | 0.5% | Jun 30, 2025 | DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.11, there is a bypas... |
| CVE-2025-49521 | HIGH | 8.8 | 0.5% | Jun 30, 2025 | A flaw was found in the EDA component of the Ansible Automation Platform, where user-supplied Git branch or refspec valu... |
| CVE-2025-49520 | HIGH | 8.8 | 0.5% | Jun 30, 2025 | A flaw was found in Ansible Automation Platform’s EDA component where user-supplied Git URLs are passed unsanitized to t... |
| CVE-2025-32463 | HIGH | 7.8 | 47.5% | Jun 30, 2025 | Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director... |
| CVE-2025-32462 | HIGH | 8.8 | 3.2% | Jun 30, 2025 | Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allo... |
| CVE-2025-52997 | HIGH | 7.5 | 0.5% | Jun 30, 2025 | File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, previ... |
| CVE-2025-52996 | MEDIUM | 4.3 | 0.3% | Jun 30, 2025 | File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, previ... |
| CVE-2025-52995 | MEDIUM | 6.6 | 0.5% | Jun 30, 2025 | File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, previ... |
| CVE-2025-52901 | MEDIUM | 6.5 | 0.5% | Jun 30, 2025 | File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, previ... |
| CVE-2025-52491 | MEDIUM | 5.8 | 0.3% | Jun 30, 2025 | Akamai CloudTest before 60 2025.06.09 (12989) allows SSRF. |
| CVE-2025-49493 | MEDIUM | 5.8 | 3.4% | Jun 30, 2025 | Akamai CloudTest before 60 2025.06.02 (12988) allows file inclusion via XML External Entity (XXE) injection. |
| CVE-2025-36593 | HIGH | 8.8 | 0.2% | Jun 30, 2025 | Dell OpenManage Network Integration, versions prior to 3.8, contains an Authentication Bypass by Capture-replay vulnerab... |
| CVE-2025-6925 | CRITICAL | 9.1 | 0.9% | Jun 30, 2025 | A vulnerability has been found in Dromara RuoYi-Vue-Plus 5.4.0 and classified as critical. Affected by this vulnerabilit... |
| CVE-2025-6917 | CRITICAL | 9.8 | 0.4% | Jun 30, 2025 | A vulnerability has been found in code-projects Online Hotel Booking 1.0 and classified as critical. This vulnerability ... |
| CVE-2025-52898 | HIGH | 8.8 | 0.4% | Jun 30, 2025 | Frappe is a full-stack web application framework. Prior to versions 14.94.3 and 15.58.0, a carefully crafted request cou... |
| CVE-2025-6916 | HIGH | 8.8 | 0.7% | Jun 30, 2025 | A vulnerability, which was classified as critical, was found in TOTOLINK T6 4.1.5cu.748_B20211015. This affects the func... |
| CVE-2025-6915 | HIGH | 8.8 | 0.3% | Jun 30, 2025 | A vulnerability, which was classified as critical, has been found in PHPGurukul Student Record System 3.2. Affected by t... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now