2025 CVE Vulnerabilities

45,268 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-0673HIGH7.5An issue has been discovered in GitLab CE/EE affecting all versions from 17.7 before 17.10.8, 17.11 before 17.11.4, and ...
CVE-2025-5996MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions from 2.1.0 before 17.10.8, 17.11 before 17.11.4, and...
CVE-2025-4278HIGH8.7An issue has been discovered in GitLab CE/EE affecting all versions starting with 18.0 before 18.0.2. Under certain cond...
CVE-2025-2254MEDIUM6.1An issue has been discovered in GitLab CE/EE affecting all versions from 17.9 before 17.10.8, 17.11 before 17.11.4, and ...
CVE-2025-1516HIGH7.5An issue has been discovered in GitLab CE/EE affecting all versions from 8.7 before 17.10.8, 17.11 before 17.11.4, and 1...
CVE-2025-1478HIGH7.5An issue has been discovered in GitLab CE/EE affecting all versions from 8.13 before 17.10.7, 17.11 before 17.11.3, and ...
CVE-2025-6003MEDIUM5.3The WordPress Single Sign-On (SSO) plugin for WordPress is vulnerable to unauthorized access due to a misconfigured capa...
CVE-2025-4613HIGH8.8Path traversal in Google Web Designer's template handling versions prior to 16.3.0.0407 on Windows allows attacker to ac...
CVE-2025-5301MEDIUM6.1ONLYOFFICE Docs (DocumentServer) in versions equal and below 8.3.1 are affected by a reflected cross-site scripting (XSS...
CVE-2025-40592MEDIUM6.1A vulnerability has been identified in Mendix Studio Pro 10 (All versions < V10.23.0), Mendix Studio Pro 10.12 (All vers...
CVE-2025-5012HIGH8.8The Workreap plugin for WordPress, used by the Workreap - Freelance Marketplace WordPress Theme, is vulnerable to arbitr...
CVE-2025-4973CRITICAL9.8The Workreap plugin for WordPress, used by the Workreap - Freelance Marketplace WordPress Theme, is vulnerable to authen...
CVE-2025-35978HIGH7.1Improper restriction of communication channel to intended endpoints issue exists in UpdateNavi V1.4 L10 to L33 and Updat...
CVE-2025-6009HIGH7.2A vulnerability was found in kiCode111 like-girl 5.2.0 and classified as critical. Affected by this issue is some unknow...
CVE-2025-49822Rejected reason: Not used
CVE-2025-49821Rejected reason: Not used
CVE-2025-49820Rejected reason: Not used
CVE-2025-49819Rejected reason: Not used
CVE-2025-49818Rejected reason: Not used
CVE-2025-49817Rejected reason: Not used
CVE-2025-49816Rejected reason: Not used
CVE-2025-49815Rejected reason: Not used
CVE-2025-49814Rejected reason: Not used
CVE-2025-6008HIGH7.2A vulnerability has been found in kiCode111 like-girl 5.2.0 and classified as critical. Affected by this vulnerability i...
CVE-2025-6007HIGH7.2A vulnerability, which was classified as critical, was found in kiCode111 like-girl 5.2.0. Affected is an unknown functi...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now