2025 CVE Vulnerabilities
45,277 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-31199 | MEDIUM | 5.5 | 0.4% | May 29, 2025 | A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequo... |
| CVE-2025-31198 | MEDIUM | 5.5 | 0.2% | May 29, 2025 | This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 1... |
| CVE-2025-31189 | HIGH | 8.2 | 0.2% | May 29, 2025 | A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 1... |
| CVE-2025-30466 | CRITICAL | 9.8 | 0.3% | May 29, 2025 | This issue was addressed through improved state management. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4... |
| CVE-2025-5328 | HIGH | 8.8 | 1.0% | May 29, 2025 | A vulnerability was found in chshcms mccms 2.7. It has been declared as critical. This vulnerability affects the functio... |
| CVE-2025-5327 | HIGH | 8.8 | 0.4% | May 29, 2025 | A vulnerability was found in chshcms mccms 2.7. It has been classified as critical. This affects the function index of t... |
| CVE-2025-5326 | HIGH | 8.8 | 0.4% | May 29, 2025 | A vulnerability was found in zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 1.0.0 and classified as cr... |
| CVE-2025-5325 | CRITICAL | 9.8 | 0.4% | May 29, 2025 | A vulnerability has been found in zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 1.0.0 and classified ... |
| CVE-2025-4967 | CRITICAL | 9.1 | 0.4% | May 29, 2025 | Esri Portal for ArcGIS 11.4 and prior allows a remote, unauthenticated attacker to bypass the Portal’s SSRF protections. |
| CVE-2025-47933 | MEDIUM | 5.4 | 0.4% | May 29, 2025 | Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Prior to versions 2.13.8, 2.14.13, and 3.0.4, ... |
| CVE-2025-47288 | LOW | 3.5 | 0.2% | May 29, 2025 | Discourse Policy plugin gives the ability to confirm users have seen or done something. Prior to version 0.1.1, if there... |
| CVE-2025-3050 | MEDIUM | 6.5 | 0.3% | May 29, 2025 | IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 could ... |
| CVE-2025-2518 | HIGH | 7.5 | 0.3% | May 29, 2025 | IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 is v... |
| CVE-2025-5324 | MEDIUM | 4.8 | 0.1% | May 29, 2025 | A vulnerability, which was classified as problematic, was found in TechPowerUp GPU-Z 2.23.0. Affected is the function su... |
| CVE-2025-48336 | CRITICAL | 9.8 | 0.4% | May 29, 2025 | Deserialization of Untrusted Data vulnerability in ThimPress Course Builder course-builder allows Object Injection.This ... |
| CVE-2025-46701 | HIGH | 7.3 | 2.6% | May 29, 2025 | Improper Handling of Case Sensitivity vulnerability in Apache Tomcat's GCI servlet allows security constraint bypass of ... |
| CVE-2025-32752 | MEDIUM | 4.6 | 0.1% | May 29, 2025 | Dell ThinOS 2502 and prior contain a Cleartext Storage of Sensitive Information vulnerability. A high privileged attacke... |
| CVE-2025-5323 | MEDIUM | 6.3 | 0.1% | May 29, 2025 | A vulnerability, which was classified as problematic, has been found in fossasia open-event-server 1.19.1. This issue af... |
| CVE-2025-46823 | HIGH | 8 | 0.3% | May 29, 2025 | openmrs-module-fhir2 provides the FHIR REST API and related services for OpenMRS, an open medical records system. In ver... |
| CVE-2025-29632 | MEDIUM | 5.4 | 0.3% | May 29, 2025 | Buffer Overflow vulnerability in Free5gc v.4.0.0 allows a remote attacker to cause a denial of service via the AMF, NGAP... |
| CVE-2025-48475 | HIGH | 8.1 | 0.3% | May 29, 2025 | FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.180, the System does not provide a ch... |
| CVE-2025-46722 | HIGH | 7.3 | 0.3% | May 29, 2025 | vLLM is an inference and serving engine for large language models (LLMs). In versions starting from 0.7.0 to before 0.9.... |
| CVE-2025-46570 | LOW | 2.6 | 0.2% | May 29, 2025 | vLLM is an inference and serving engine for large language models (LLMs). Prior to version 0.9.0, when a new prompt is p... |
| CVE-2025-48474 | HIGH | 8.1 | 0.4% | May 29, 2025 | FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.180, the application incorrectly chec... |
| CVE-2025-48473 | MEDIUM | 4.3 | 0.3% | May 29, 2025 | FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.179, when creating a conversation fro... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now