2025 CVE Vulnerabilities

45,321 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-68429MEDIUM5.3Storybook is a frontend workshop for building user interface components and pages in isolation. A vulnerability present ...
CVE-2025-68401MEDIUM4.8ChurchCRM is an open-source church management system. Prior to version 6.0.0, the application stores user-supplied HTML/...
CVE-2025-68399MEDIUM5.4ChurchCRM is an open-source church management system. In versions prior to 6.5.4, there is a Stored Cross-Site Scripting...
CVE-2025-68275MEDIUM4.8ChurchCRM is an open-source church management system. Versions prior to 6.5.3 have a stored cross-site scripting vulnera...
CVE-2025-67876MEDIUM5.4ChurchCRM is an open-source church management system. A stored cross-site scripting (XSS) vulnerability exists in Church...
CVE-2025-67875MEDIUM5.4ChurchCRM is an open-source church management system. A privilege escalation vulnerability exists in ChurchCRM prior to ...
CVE-2025-67794MEDIUM6.1An issue was discovered in DriveLock 24.1 through 24.1.*, 24.2 before 24.2.8, and 25.1 before 25.1.6. Directories and fi...
CVE-2025-67789MEDIUM5.3An issue was discovered in DriveLock 24.1 before 24.1.6, 24.2 before 24.2.7, and 25.1 before 25.1.5. Authenticated users...
CVE-2025-59849MEDIUM6.1Improper management of Content Security Policy in HCL BigFix Remote Control Lite Web Portal (versions 10.1.0.0326 and lo...
CVE-2025-55254MEDIUM4.8Improper management of Path-relative stylesheet import in HCL BigFix Remote Control Lite Web Portal (versions 10.1.0.032...
CVE-2025-46292MEDIUM5.5This issue was addressed with additional entitlement checks. This issue is fixed in iOS 18.7.3 and iPadOS 18.7.3, iOS 26...
CVE-2025-46288MEDIUM5.5A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.2 and iPadOS 26.2, macOS T...
CVE-2025-46283MEDIUM5.5A logic issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, ...
CVE-2025-46282MEDIUM5.5The issue was addressed with additional permissions checks. This issue is fixed in Safari 26.2, macOS Tahoe 26.2. An app...
CVE-2025-46278MEDIUM5.5The issue was addressed with improved handling of caches. This issue is fixed in macOS Tahoe 26.2. An app may be able to...
CVE-2025-43541MEDIUM4.3A type confusion issue was addressed with improved state handling. This issue is fixed in Safari 26.2, iOS 18.7.3 and iP...
CVE-2025-43536MEDIUM4.3A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.2, iOS 18.7.3 and...
CVE-2025-43535MEDIUM4.3The issue was addressed with improved memory handling. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3,...
CVE-2025-43533MEDIUM5.7The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.2 and i...
CVE-2025-43514MEDIUM5.5The issue was addressed with improved handling of caches. This issue is fixed in macOS Tahoe 26.2. An app may be able to...
CVE-2025-43501MEDIUM4.3A buffer overflow issue was addressed with improved memory handling. This issue is fixed in Safari 26.2, iOS 18.7.3 and ...
CVE-2025-43475MEDIUM5.5A logging issue was addressed with improved data redaction. This issue is fixed in iOS 26.2 and iPadOS 26.2. An app may ...
CVE-2025-14764MEDIUM5.3Missing cryptographic key commitment in the Amazon S3 Encryption Client for Go may allow a user with write access to the...
CVE-2025-14763MEDIUM6Missing cryptographic key commitment in the Amazon S3 Encryption Client for Java may allow a user with write access to t...
CVE-2025-14762MEDIUM5.3Missing cryptographic key commitment in the AWS SDK for Ruby may allow a user with write access to the S3 bucket to intr...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now