2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2025-64773LOW3.7In JetBrains YouTrack before 2025.3.104432 a race condition allowed bypass of helpdesk Agent limit
CVE-2025-13015LOW3.4Spoofing issue in Firefox. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, and Firefox ESR 115.30.
CVE-2025-8998LOW3.1It was possible to upload files with a specific name to a temporary directory, which may result in process crashes and i...
CVE-2025-42883LOW2.7Migration Workbench (DX Workbench) in SAP NetWeaver Application Server for ABAP fails to trigger a malware scan when an ...
CVE-2025-64682LOW3.7In JetBrains Hub before 2025.3.104432 a race condition allowed bypass of the Agent-user limit
CVE-2025-64681LOW3.7In JetBrains Hub before 2025.3.104992 a race condition allowed bypass of the user limit via invitations
CVE-2025-12919LOW3.7A vulnerability was detected in EverShop up to 2.0.1. Affected is an unknown function of the file /src/modules/oms/graph...
CVE-2025-64481LOW2.7Datasette is an open source multi-tool for exploring and publishing data. In versions 0.65.1 and below and 1.0a0 through...
CVE-2025-12854LOW3.7A vulnerability was identified in newbee-mall-plus up to 2.4.1. This vulnerability affects the function executeSeckill o...
CVE-2025-11219LOW3.1Use after free in V8 in Google Chrome prior to 141.0.7390.54 allowed a remote attacker to potentially perform out of bou...
CVE-2025-64326LOW3.5Weblate is a web based localization tool. In versions 5.14 and below, Weblate leaks the IP address of the project membe...
CVE-2025-21077LOW3.3Improper input validation in Samsung Email prior to version 6.2.06.0 allows local attackers to launch arbitrary activity...
CVE-2025-43442LOW3.3A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2, iOS...
CVE-2025-43423LOW2A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2, iOS 26....
CVE-2025-43408LOW2.4This issue was addressed by restricting options offered on a locked device. This issue is fixed in macOS Sequoia 15.7.2,...
CVE-2025-43395LOW3.3This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 1...
CVE-2025-43365LOW2.8A denial-of-service issue was addressed with improved input validation. This issue is fixed in iOS 18.7.2 and iPadOS 18....
CVE-2025-43350LOW2.4A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.1 and iPadOS 26.1. An atta...
CVE-2025-43309LOW2.4A logic issue was addressed with improved checks. This issue is fixed in iOS 26 and iPadOS 26. An attacker with physical...
CVE-2025-12623LOW3.1A vulnerability was identified in fushengqian fuint up to 41e26be8a2c609413a0feaa69bdad33a71ae8032. Affected by this iss...
CVE-2025-64352LOW2.7Missing Authorization vulnerability in WPDeveloper Essential Addons for Elementor essential-addons-for-elementor-lite al...
CVE-2025-64350LOW3.8Missing Authorization vulnerability in Rank Math SEO Rank Math SEO seo-by-rank-math allows Exploiting Incorrectly Config...
CVE-2025-23050LOW3.1QLowEnergyController in Qt before 6.8.2 mishandles malformed Bluetooth ATT commands, leading to an out-of-bounds read (o...
CVE-2025-10636LOW3.5The NS Maintenance Mode for WP WordPress plugin through 1.3.1 does not sanitise and escape some of its settings, which c...
CVE-2025-10931LOW3.8Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Umami Analy...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now