2025 CVE Vulnerabilities
45,267 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-6132 | CRITICAL | 9.8 | 0.4% | Jun 16, 2025 | A vulnerability has been found in Chanjet CRM 1.0 and classified as critical. Affected by this vulnerability is an unkno... |
| CVE-2025-6179 | CRITICAL | 9.8 | 0.2% | Jun 16, 2025 | Permissions Bypass in Extension Management in Google ChromeOS 16181.27.0 on managed Chrome devices allows a loca... |
| CVE-2025-6177 | HIGH | 7.4 | 0.1% | Jun 16, 2025 | Privilege Escalation in MiniOS in Google ChromeOS (16063.45.2 and potentially others) on enrolled devices allows a local... |
| CVE-2025-6131 | MEDIUM | 4.8 | 0.3% | Jun 16, 2025 | A vulnerability, which was classified as problematic, was found in CodeAstro Food Ordering System 1.0. Affected is an un... |
| CVE-2025-6130 | HIGH | 8.8 | 0.8% | Jun 16, 2025 | A vulnerability, which was classified as critical, has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. This issue... |
| CVE-2025-5309 | CRITICAL | 9.8 | 0.9% | Jun 16, 2025 | The chat feature within Remote Support (RS) and Privileged Remote Access (PRA) is vulnerable to a Server-Side Template I... |
| CVE-2025-2327 | MEDIUM | 5.1 | 0.2% | Jun 16, 2025 | A flaw exists in FlashArray whereby the Key Encryption Key (KEK) is logged during key rotation when RDL is configured. |
| CVE-2025-6170 | LOW | 2.5 | 0.2% | Jun 16, 2025 | A flaw was found in the interactive shell of the xmllint command-line tool, used for parsing XML files. When a user inpu... |
| CVE-2025-6129 | HIGH | 8.8 | 0.8% | Jun 16, 2025 | A vulnerability classified as critical was found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. This vulnerability affects ... |
| CVE-2025-6128 | HIGH | 8.8 | 1.1% | Jun 16, 2025 | A vulnerability classified as critical has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. This affects an unknow... |
| CVE-2025-49796 | CRITICAL | 9.1 | 1.5% | Jun 16, 2025 | A vulnerability was found in libxml2. Processing certain sch:name elements from the input XML file can trigger a memory ... |
| CVE-2025-49795 | HIGH | 7.5 | 0.5% | Jun 16, 2025 | A NULL pointer dereference vulnerability was found in libxml2 when processing XPath XML expressions. This flaw allows an... |
| CVE-2025-49794 | CRITICAL | 9.1 | 0.8% | Jun 16, 2025 | A use-after-free vulnerability was found in libxml2. This issue occurs when parsing XPath elements under certain circums... |
| CVE-2025-6127 | MEDIUM | 5.4 | 0.2% | Jun 16, 2025 | A vulnerability was found in PHPGurukul Nipah Virus Testing Management System 1.0. It has been rated as problematic. Aff... |
| CVE-2025-6126 | MEDIUM | 5.4 | 0.3% | Jun 16, 2025 | A vulnerability was found in PHPGurukul Rail Pass Management System 1.0. It has been declared as problematic. Affected b... |
| CVE-2025-4565 | MEDIUM | 5.3 | 0.3% | Jun 16, 2025 | Any project that uses Protobuf Pure-Python backend to parse untrusted Protocol Buffers data containing an arbitrary numb... |
| CVE-2025-49125 | HIGH | 7.5 | 3.2% | Jun 16, 2025 | Authentication Bypass Using an Alternate Path or Channel vulnerability in Apache Tomcat. When using PreResources or Pos... |
| CVE-2025-49124 | HIGH | 8.4 | 0.3% | Jun 16, 2025 | Untrusted Search Path vulnerability in Apache Tomcat installer for Windows. During installation, the Tomcat installer fo... |
| CVE-2025-48988 | HIGH | 7.5 | 53.2% | Jun 16, 2025 | Allocation of Resources Without Limits or Throttling vulnerability in Apache Tomcat. This issue affects Apache Tomcat: ... |
| CVE-2025-48976 | HIGH | 7.5 | 63.3% | Jun 16, 2025 | Allocation of resources for multipart headers with insufficient limits enabled a DoS vulnerability in Apache Commons Fil... |
| CVE-2025-3594 | CRITICAL | 9.8 | 0.6% | Jun 16, 2025 | Path traversal vulnerability with the downloading and installation of Xuggler in Liferay Portal 7.0.0 through 7.4.3.4, a... |
| CVE-2025-3526 | HIGH | 7.5 | 0.5% | Jun 16, 2025 | SessionClicks in Liferay Portal 7.0.0 through 7.4.3.21, and Liferay DXP 7.4 GA through update 9, 7.3 GA through update 2... |
| CVE-2025-6125 | MEDIUM | 5.4 | 0.2% | Jun 16, 2025 | A vulnerability was found in PHPGurukul Rail Pass Management System 1.0. It has been classified as problematic. Affected... |
| CVE-2025-6124 | CRITICAL | 9.8 | 0.4% | Jun 16, 2025 | A vulnerability was found in code-projects Restaurant Order System 1.0 and classified as critical. This issue affects so... |
| CVE-2025-3602 | HIGH | 7.5 | 0.4% | Jun 16, 2025 | Liferay Portal 7.4.0 through 7.4.3.97, and Liferay DXP 2023.Q3.1 through 2023.Q3.2, 7.4 GA through update 92, 7.3 GA thr... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now