2025 CVE Vulnerabilities
45,268 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-0673 | HIGH | 7.5 | 0.5% | Jun 12, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions from 17.7 before 17.10.8, 17.11 before 17.11.4, and ... |
| CVE-2025-5996 | MEDIUM | 6.5 | 0.6% | Jun 12, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions from 2.1.0 before 17.10.8, 17.11 before 17.11.4, and... |
| CVE-2025-4278 | HIGH | 8.7 | 6.1% | Jun 12, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions starting with 18.0 before 18.0.2. Under certain cond... |
| CVE-2025-2254 | MEDIUM | 6.1 | 0.3% | Jun 12, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions from 17.9 before 17.10.8, 17.11 before 17.11.4, and ... |
| CVE-2025-1516 | HIGH | 7.5 | 0.3% | Jun 12, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions from 8.7 before 17.10.8, 17.11 before 17.11.4, and 1... |
| CVE-2025-1478 | HIGH | 7.5 | 0.3% | Jun 12, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions from 8.13 before 17.10.7, 17.11 before 17.11.3, and ... |
| CVE-2025-6003 | MEDIUM | 5.3 | 0.3% | Jun 12, 2025 | The WordPress Single Sign-On (SSO) plugin for WordPress is vulnerable to unauthorized access due to a misconfigured capa... |
| CVE-2025-4613 | HIGH | 8.8 | 0.5% | Jun 12, 2025 | Path traversal in Google Web Designer's template handling versions prior to 16.3.0.0407 on Windows allows attacker to ac... |
| CVE-2025-5301 | MEDIUM | 6.1 | 34.9% | Jun 12, 2025 | ONLYOFFICE Docs (DocumentServer) in versions equal and below 8.3.1 are affected by a reflected cross-site scripting (XSS... |
| CVE-2025-40592 | MEDIUM | 6.1 | 0.4% | Jun 12, 2025 | A vulnerability has been identified in Mendix Studio Pro 10 (All versions < V10.23.0), Mendix Studio Pro 10.12 (All vers... |
| CVE-2025-5012 | HIGH | 8.8 | 0.5% | Jun 12, 2025 | The Workreap plugin for WordPress, used by the Workreap - Freelance Marketplace WordPress Theme, is vulnerable to arbitr... |
| CVE-2025-4973 | CRITICAL | 9.8 | 0.4% | Jun 12, 2025 | The Workreap plugin for WordPress, used by the Workreap - Freelance Marketplace WordPress Theme, is vulnerable to authen... |
| CVE-2025-35978 | HIGH | 7.1 | 0.1% | Jun 12, 2025 | Improper restriction of communication channel to intended endpoints issue exists in UpdateNavi V1.4 L10 to L33 and Updat... |
| CVE-2025-6009 | HIGH | 7.2 | 0.3% | Jun 12, 2025 | A vulnerability was found in kiCode111 like-girl 5.2.0 and classified as critical. Affected by this issue is some unknow... |
| CVE-2025-49822 | — | — | — | Jun 12, 2025 | Rejected reason: Not used |
| CVE-2025-49821 | — | — | — | Jun 12, 2025 | Rejected reason: Not used |
| CVE-2025-49820 | — | — | — | Jun 12, 2025 | Rejected reason: Not used |
| CVE-2025-49819 | — | — | — | Jun 12, 2025 | Rejected reason: Not used |
| CVE-2025-49818 | — | — | — | Jun 12, 2025 | Rejected reason: Not used |
| CVE-2025-49817 | — | — | — | Jun 12, 2025 | Rejected reason: Not used |
| CVE-2025-49816 | — | — | — | Jun 12, 2025 | Rejected reason: Not used |
| CVE-2025-49815 | — | — | — | Jun 12, 2025 | Rejected reason: Not used |
| CVE-2025-49814 | — | — | — | Jun 12, 2025 | Rejected reason: Not used |
| CVE-2025-6008 | HIGH | 7.2 | 0.3% | Jun 12, 2025 | A vulnerability has been found in kiCode111 like-girl 5.2.0 and classified as critical. Affected by this vulnerability i... |
| CVE-2025-6007 | HIGH | 7.2 | 0.3% | Jun 12, 2025 | A vulnerability, which was classified as critical, was found in kiCode111 like-girl 5.2.0. Affected is an unknown functi... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now