2025 CVE Vulnerabilities
45,277 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-48880 | MEDIUM | 6.6 | 0.3% | May 30, 2025 | FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.181, when an administrative account i... |
| CVE-2025-48875 | MEDIUM | 5.4 | 0.2% | May 30, 2025 | FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.181, the system's incorrect validatio... |
| CVE-2025-48865 | CRITICAL | 9.1 | 0.5% | May 30, 2025 | Fabio is an HTTP(S) and TCP router for deploying applications managed by consul. Prior to version 1.6.6, Fabio allows cl... |
| CVE-2025-48492 | HIGH | 8.8 | 0.8% | May 30, 2025 | GetSimple CMS is a content management system. In versions starting from 3.3.16 to 3.3.21, an authenticated user with acc... |
| CVE-2025-48489 | MEDIUM | 4.8 | 0.2% | May 30, 2025 | FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.180, the application is vulnerable to... |
| CVE-2025-48488 | MEDIUM | 5.4 | 0.2% | May 30, 2025 | FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.180, deleting the file .htaccess allo... |
| CVE-2025-48487 | MEDIUM | 4.8 | 0.2% | May 30, 2025 | FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.180, when creating a translation of a... |
| CVE-2025-48486 | MEDIUM | 5.4 | 0.2% | May 30, 2025 | FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.180, the cross-site scripiting (XSS) ... |
| CVE-2025-48485 | MEDIUM | 5.4 | 0.2% | May 30, 2025 | FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.180, the application is vulnerable to... |
| CVE-2025-47697 | HIGH | 7.5 | 0.3% | May 30, 2025 | Client-side enforcement of server-side security issue exists in wivia 5 all versions. If exploited, an unauthenticated a... |
| CVE-2025-41406 | MEDIUM | 6.1 | 0.2% | May 30, 2025 | Cross-site scripting vulnerability exists in wivia 5 all versions. If exploited, when a user connects to the affected de... |
| CVE-2025-41385 | HIGH | 7.2 | 1.2% | May 30, 2025 | An OS Command Injection issue exists in wivia 5 all versions. If this vulnerability is exploited, an arbitrary OS comman... |
| CVE-2025-5259 | MEDIUM | 6.4 | 0.2% | May 30, 2025 | The Minimal Share Buttons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘align’ parameter in... |
| CVE-2025-4659 | MEDIUM | 5.3 | 0.3% | May 30, 2025 | The Integration for Salesforce and Contact Form 7, WPForms, Elementor, Formidable, Ninja Forms plugin for WordPress is v... |
| CVE-2025-4429 | MEDIUM | 6.1 | 0.2% | May 30, 2025 | The Gearside Developer Dashboard WordPress plugin through 1.0.72 does not sanitise and escape a parameter before outputt... |
| CVE-2025-48889 | HIGH | 7.5 | 0.6% | May 30, 2025 | Gradio is an open-source Python package that allows quick building of demos and web application for machine learning mod... |
| CVE-2025-48881 | HIGH | 8.3 | 0.3% | May 30, 2025 | Valtimo is a platform for Business Process Automation. In versions starting from 11.0.0.RELEASE to 11.3.3.RELEASE and 12... |
| CVE-2025-48490 | MEDIUM | 6.6 | 0.5% | May 30, 2025 | Laravel Rest Api is an API generator. Prior to version 2.13.0, a validation bypass vulnerability was discovered where mu... |
| CVE-2025-41235 | HIGH | 8.6 | 0.3% | May 30, 2025 | Spring Cloud Gateway Server forwards the X-Forwarded-For and Forwarded headers from untrusted proxies. |
| CVE-2025-48484 | MEDIUM | 5.4 | 0.2% | May 30, 2025 | FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.178, the application is vulnerable to... |
| CVE-2025-48483 | MEDIUM | 5.4 | 0.1% | May 30, 2025 | FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.180, the application is vulnerable to... |
| CVE-2025-48482 | MEDIUM | 4.3 | 0.3% | May 30, 2025 | FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.180, there is a mass assignment vulne... |
| CVE-2025-48481 | CRITICAL | 9.8 | 0.5% | May 30, 2025 | FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.180, an attacker with an unactivated ... |
| CVE-2025-48480 | LOW | 2.7 | 0.3% | May 30, 2025 | FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.180, an authorized user with the admi... |
| CVE-2025-48479 | LOW | 2.7 | 0.3% | May 30, 2025 | FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.180, the laravel-translation-manager ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now