2025 CVE Vulnerabilities
45,268 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-6006 | HIGH | 7.2 | 0.3% | Jun 12, 2025 | A vulnerability, which was classified as critical, has been found in kiCode111 like-girl 5.2.0. This issue affects some ... |
| CVE-2025-6005 | HIGH | 7.2 | 0.3% | Jun 12, 2025 | A vulnerability classified as critical was found in kiCode111 like-girl 5.2.0. This vulnerability affects unknown code o... |
| CVE-2025-32466 | MEDIUM | 6.7 | 0.3% | Jun 11, 2025 | A SQL injection vulnerability in RSMediaGallery! component 1.7.4 - 2.1.7 for Joomla was discovered. The issue occurs wit... |
| CVE-2025-32465 | HIGH | 8.5 | 0.3% | Jun 11, 2025 | A stored XSS vulnerability in RSTickets! component 1.9.12 - 3.3.0 for Joomla was discovered. It allows attackers to perf... |
| CVE-2025-30085 | CRITICAL | 9.2 | 0.5% | Jun 11, 2025 | Remote code execution vulnerability in RSForm!pro component 3.0.0 - 3.3.14 for Joomla was discovered. The issue occurs w... |
| CVE-2025-49150 | MEDIUM | 5.9 | 0.3% | Jun 11, 2025 | Cursor is a code editor built for programming with AI. Prior to 0.51.0, by default, the setting json.schemaDownload.enab... |
| CVE-2025-40912 | CRITICAL | 9.8 | 0.4% | Jun 11, 2025 | CryptX for Perl before version 0.065 contains a dependency that may be susceptible to malformed unicode. CryptX embeds ... |
| CVE-2025-25032 | HIGH | 7.5 | 0.3% | Jun 11, 2025 | IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, and 12.0.4 could allow an a... |
| CVE-2025-0923 | MEDIUM | 5.3 | 0.2% | Jun 11, 2025 | IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, and 12.0.4 stores source co... |
| CVE-2025-0917 | MEDIUM | 4.8 | 0.2% | Jun 11, 2025 | IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, and 12.0.4 is vulnerable to... |
| CVE-2025-0913 | MEDIUM | 5.5 | 0.2% | Jun 11, 2025 | os.OpenFile(path, os.O_CREATE|O_EXCL) behaved differently on Unix and Windows systems when the target path was a danglin... |
| CVE-2025-6002 | HIGH | 7.2 | 0.7% | Jun 11, 2025 | An unrestricted file upload vulnerability exists in the Product Image section of the VirtueMart backend. Authenticated a... |
| CVE-2025-6001 | HIGH | 8.3 | 0.2% | Jun 11, 2025 | A Cross-Site Request Forgery (CSRF) vulnerability exists in the product image upload function of VirtueMart that bypasse... |
| CVE-2025-4673 | MEDIUM | 6.8 | 0.6% | Jun 11, 2025 | Proxy-Authorization and Proxy-Authenticate headers persisted on cross-origin redirects potentially leaking sensitive inf... |
| CVE-2025-40915 | HIGH | 7 | 0.2% | Jun 11, 2025 | Mojolicious::Plugin::CSRF 1.03 for Perl uses a weak random number source for generating CSRF tokens. That version of th... |
| CVE-2025-22874 | HIGH | 7.5 | 0.3% | Jun 11, 2025 | Calling Verify with a VerifyOptions.KeyUsages that contains ExtKeyUsageAny unintentionally disabledpolicy validation. Th... |
| CVE-2025-1699 | LOW | 2.8 | 0.1% | Jun 11, 2025 | An incorrect default permissions vulnerability was reported in the MotoSignature application that could result in unauth... |
| CVE-2025-1698 | LOW | 2.8 | 0.1% | Jun 11, 2025 | Null pointer exception vulnerabilities were reported in the fingerprint sensor service that could allow a local attacker... |
| CVE-2025-26383 | MEDIUM | 6.3 | 0.2% | Jun 11, 2025 | The iSTAR Configuration Utility (ICU) tool leaks memory, which could result in the unintended exposure of unauthorized d... |
| CVE-2025-49148 | HIGH | 7.3 | 0.1% | Jun 11, 2025 | ClipShare is a lightweight and cross-platform tool for clipboard sharing. Prior to 3.8.5, ClipShare Server for Windows u... |
| CVE-2025-49146 | MEDIUM | 5.9 | 0.5% | Jun 11, 2025 | pgjdbc is an open source postgresql JDBC Driver. From 42.7.4 and until 42.7.7, when the PostgreSQL JDBC driver is config... |
| CVE-2025-48448 | MEDIUM | 6.5 | 0.3% | Jun 11, 2025 | Allocation of Resources Without Limits or Throttling vulnerability in Drupal Admin Audit Trail allows Excessive Allocati... |
| CVE-2025-48447 | HIGH | 7.1 | 0.3% | Jun 11, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Lightgaller... |
| CVE-2025-48446 | HIGH | 8.8 | 0.3% | Jun 11, 2025 | Incorrect Authorization vulnerability in Drupal Commerce Alphabank Redirect allows Functionality Misuse.This issue affec... |
| CVE-2025-48445 | HIGH | 8.8 | 0.3% | Jun 11, 2025 | Incorrect Authorization vulnerability in Drupal Commerce Eurobank (Redirect) allows Functionality Misuse.This issue affe... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now