2025 CVE Vulnerabilities

45,264 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-6818HIGH7.8A vulnerability, which was classified as problematic, was found in HDF5 1.14.6. Affected is the function H5O__chunk_prot...
CVE-2025-1991HIGH7.5IBM Informix Dynamic Server 12.10,14.10, and15.0 could allow a remote attacker to cause a denial of service due to an in...
CVE-2025-6817LOW3.3A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. This issue affects the function H5C...
CVE-2025-6816LOW3.3A vulnerability classified as problematic was found in HDF5 1.14.6. This vulnerability affects the function H5O__fsinfo_...
CVE-2025-5937MEDIUM4.3The MicroPayments – Fans Paysite: Paid Creator Subscriptions, Digital Assets, Wallet plugin for WordPress is vulnerable ...
CVE-2025-38086MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: ch9200: fix uninitialised access during mii_nw...
CVE-2025-38085MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: fix huge_pmd_unshare() vs GUP-fast race...
CVE-2025-38084MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: unshare page tables during VMA split, n...
CVE-2025-6755HIGH8.8The Game Users Share Buttons plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path...
CVE-2025-5304CRITICAL9.8The PT Project Notebooks plugin for WordPress is vulnerable to Privilege Escalation due to missing authorization in the ...
CVE-2025-6252MEDIUM5.4The Qi Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several parameters in ...
CVE-2025-6381HIGH8.8The BeeTeam368 Extensions plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including...
CVE-2025-6379HIGH8.8The BeeTeam368 Extensions Pro plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and inclu...
CVE-2025-6350MEDIUM5.4The WP VR – 360 Panorama and Free Virtual Tour Builder For WordPress plugin for WordPress is vulnerable to Stored Cross-...
CVE-2025-53388Rejected reason: Not used
CVE-2025-53387Rejected reason: Not used
CVE-2025-53386Rejected reason: Not used
CVE-2025-53385Rejected reason: Not used
CVE-2025-53384Rejected reason: Not used
CVE-2025-53383Rejected reason: Not used
CVE-2025-53382Rejected reason: Not used
CVE-2025-53381Rejected reason: Not used
CVE-2025-53380Rejected reason: Not used
CVE-2025-36027MEDIUM5.4IBM Datacap 9.1.7, 9.1.8, and 9.1.9 could allow a remote attacker to hijack the clicking action of the victim. By pe...
CVE-2025-36026MEDIUM4.3IBM Datacap 9.1.7, 9.1.8, and 9.1.9 does not set the secure attribute on authorization tokens or session cookies. Atta...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now