2025 CVE Vulnerabilities
45,277 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-5572 | HIGH | 7.5 | 3.9% | Jun 4, 2025 | A vulnerability was found in D-Link DCS-932L 2.18.01. It has been declared as critical. Affected by this vulnerability i... |
| CVE-2025-5571 | HIGH | 8.8 | 8.2% | Jun 4, 2025 | A vulnerability was found in D-Link DCS-932L 2.18.01. It has been classified as critical. Affected is the function setSy... |
| CVE-2025-5569 | HIGH | 8.8 | 1.3% | Jun 4, 2025 | A vulnerability was found in IdeaCMS up to 1.7 and classified as critical. This issue affects the function Article/Goods... |
| CVE-2025-4580 | MEDIUM | 4.3 | 0.1% | Jun 4, 2025 | The File Provider WordPress plugin through 1.2.3 does not have CSRF check in place when updating its settings, which cou... |
| CVE-2025-4578 | CRITICAL | 9.8 | 0.5% | Jun 4, 2025 | The File Provider WordPress plugin through 1.2.3 does not properly sanitise and escape a parameter before using it in a ... |
| CVE-2025-48710 | MEDIUM | 4.1 | 0.3% | Jun 4, 2025 | kro (Kube Resource Orchestrator) 0.1.0 before 0.2.1 allows users (with permission to create or modify ResourceGraphDefin... |
| CVE-2025-5566 | HIGH | 8.8 | 0.3% | Jun 4, 2025 | A vulnerability classified as critical has been found in PHPGurukul Notice Board System 1.0. This affects an unknown par... |
| CVE-2025-5562 | CRITICAL | 9.8 | 0.4% | Jun 4, 2025 | A vulnerability was found in PHPGurukul Curfew e-Pass Management System 1.0. It has been rated as critical. Affected by ... |
| CVE-2025-5561 | CRITICAL | 9.8 | 0.4% | Jun 4, 2025 | A vulnerability was found in PHPGurukul Curfew e-Pass Management System 1.0. It has been declared as critical. Affected ... |
| CVE-2025-5539 | MEDIUM | 6.4 | 0.2% | Jun 4, 2025 | The Simple Contact Form Plugin for WordPress – WP Easy Contact plugin for WordPress is vulnerable to Stored Cross-Site S... |
| CVE-2025-20996 | MEDIUM | 5 | 0.1% | Jun 4, 2025 | Improper authorization in Smart Switch installed on non-Samsung Device prior to version 3.7.64.10 allows local attackers... |
| CVE-2025-20995 | HIGH | 7.1 | 0.1% | Jun 4, 2025 | Improper handling of insufficient permission in ClientProvider in Samsung Internet installed on non-Samsung Device prior... |
| CVE-2025-20994 | HIGH | 7.1 | 0.1% | Jun 4, 2025 | Improper handling of insufficient permission in SyncClientProvider in Samsung Internet installed on non-Samsung Device p... |
| CVE-2025-20993 | MEDIUM | 6.8 | 0.1% | Jun 4, 2025 | Out-of-bounds write in libsecimaging.camera.samsung.so prior to SMR Jun-2025 Release 1 allows local attackers to write o... |
| CVE-2025-20992 | HIGH | 7.7 | 0.1% | Jun 4, 2025 | Out-of-bound read in libsecimaging.camera.samsung.so prior to SMR Feb-2025 Release 1 allows local attackers to read out-... |
| CVE-2025-20991 | MEDIUM | 5.1 | 0.1% | Jun 4, 2025 | Improper export of Android application components in Bluetooth prior to SMR Jun-2025 Release 1 allows local attackers to... |
| CVE-2025-20989 | MEDIUM | 5.2 | 0.1% | Jun 4, 2025 | Improper logging in fingerprint trustlet prior to SMR May-2025 Release 1 allows local privileged attackers to get a hmac... |
| CVE-2025-20988 | HIGH | 7.1 | 0.1% | Jun 4, 2025 | Out-of-bounds read in fingerprint trustlet prior to SMR May-2025 Release 1 allows local privileged attackers to read out... |
| CVE-2025-20987 | MEDIUM | 6.7 | 0.1% | Jun 4, 2025 | Improper access control in fingerprint trustlet prior to SMR May-2025 Release 1 allows local privileged attackers to get... |
| CVE-2025-20986 | MEDIUM | 5.5 | 0.1% | Jun 4, 2025 | Improper access control in ScreenCapture for Galaxy Watch prior to SMR Jun-2025 Release 1 allows local attackers to take... |
| CVE-2025-20985 | LOW | 3.3 | 0.1% | Jun 4, 2025 | Improper privilege management in ThemeManager prior to SMR Jun-2025 Release 1 allows local privileged attackers to reuse... |
| CVE-2025-20984 | MEDIUM | 6.2 | 0.1% | Jun 4, 2025 | Incorrect default permission in Samsung Cloud for Galaxy Watch prior to SMR Jun-2025 Release 1 allows local attackers to... |
| CVE-2025-20981 | MEDIUM | 6.2 | 0.1% | Jun 4, 2025 | Improper access control in AudioService prior to SMR Jun-2025 Release 1 allows local attackers to access sensitive infor... |
| CVE-2025-5560 | CRITICAL | 9.8 | 0.4% | Jun 4, 2025 | A vulnerability was found in PHPGurukul Curfew e-Pass Management System 1.0. It has been classified as critical. Affecte... |
| CVE-2025-5558 | HIGH | 8.8 | 0.3% | Jun 4, 2025 | A vulnerability was found in PHPGurukul Teacher Subject Allocation Management System 1.0 and classified as critical. Thi... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now