2025 CVE Vulnerabilities
45,295 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-22884 | CRITICAL | 9.8 | 0.3% | Apr 30, 2025 | Delta Electronics ISPSoft version 3.20 is vulnerable to a Stack-Based buffer overflow vulnerability that could allow an ... |
| CVE-2025-22883 | CRITICAL | 9.8 | 0.3% | Apr 30, 2025 | Delta Electronics ISPSoft version 3.20 is vulnerable to an Out-Of-Bounds Write vulnerability that could allow an attacke... |
| CVE-2025-22882 | CRITICAL | 9.8 | 0.3% | Apr 30, 2025 | Delta Electronics ISPSoft version 3.20 is vulnerable to a Stack-Based buffer overflow vulnerability that could allow an ... |
| CVE-2025-3953 | MEDIUM | 5.4 | 0.2% | Apr 30, 2025 | The WP Statistics – The Most Popular Privacy-Friendly Analytics Plugin plugin for WordPress is vulnerable to unauthorize... |
| CVE-2025-3471 | MEDIUM | 4.9 | 0.3% | Apr 30, 2025 | The SureForms WordPress plugin before 1.4.4 does not have proper authorisation check when updating its settings via the... |
| CVE-2025-46782 | — | — | — | Apr 30, 2025 | Rejected reason: Not used |
| CVE-2025-46781 | — | — | — | Apr 30, 2025 | Rejected reason: Not used |
| CVE-2025-46780 | — | — | — | Apr 30, 2025 | Rejected reason: Not used |
| CVE-2025-46779 | — | — | — | Apr 30, 2025 | Rejected reason: Not used |
| CVE-2025-46778 | — | — | — | Apr 30, 2025 | Rejected reason: Not used |
| CVE-2025-46560 | HIGH | 7.5 | 0.4% | Apr 30, 2025 | vLLM is a high-throughput and memory-efficient inference and serving engine for LLMs. Versions starting from 0.8.0 and p... |
| CVE-2025-32444 | CRITICAL | 9.8 | 1.5% | Apr 30, 2025 | vLLM is a high-throughput and memory-efficient inference and serving engine for LLMs. Versions starting from 0.6.5 and p... |
| CVE-2025-30202 | HIGH | 7.5 | 0.5% | Apr 30, 2025 | vLLM is a high-throughput and memory-efficient inference and serving engine for LLMs. Versions starting from 0.5.2 and p... |
| CVE-2025-46552 | MEDIUM | 6.3 | 0.3% | Apr 29, 2025 | KHC-INVITATION-AUTOMATION is a GitHub automation script that automatically invites followers of a bot account to join yo... |
| CVE-2025-3358 | — | — | — | Apr 29, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2025-29906 | HIGH | 8.6 | 0.2% | Apr 29, 2025 | Finit is a fast init for Linux systems. Versions starting from 3.0-rc1 and prior to version 4.11 bundle an implementatio... |
| CVE-2025-46550 | MEDIUM | 6.1 | 0.5% | Apr 29, 2025 | YesWiki is a wiki system written in PHP. Prior to version 4.5.4, the `/?BazaR` endpoint and `idformulaire` parameter are... |
| CVE-2025-46549 | MEDIUM | 6.1 | 0.5% | Apr 29, 2025 | YesWiki is a wiki system written in PHP. Prior to version 4.5.4, an attacker can use a reflected cross-site scripting at... |
| CVE-2025-46348 | CRITICAL | 9.8 | 0.6% | Apr 29, 2025 | YesWiki is a wiki system written in PHP. Prior to version 4.5.4, the request to commence a site backup can be performed ... |
| CVE-2025-46344 | MEDIUM | 4.9 | 0.4% | Apr 29, 2025 | The Auth0 Next.js SDK is a library for implementing user authentication in Next.js applications. Versions starting from ... |
| CVE-2025-3910 | MEDIUM | 5.4 | 0.4% | Apr 29, 2025 | A flaw was found in Keycloak. The org.keycloak.authorization package may be vulnerable to circumventing required actions... |
| CVE-2025-3501 | HIGH | 8.2 | 0.4% | Apr 29, 2025 | A flaw was found in Keycloak. By setting a verification policy to 'ALL', the trust store certificate verification is ski... |
| CVE-2025-4080 | HIGH | 8.8 | 0.3% | Apr 29, 2025 | A vulnerability has been found in PHPGurukul Online Nurse Hiring System 1.0 and classified as critical. Affected by this... |
| CVE-2025-4078 | MEDIUM | 5.3 | 0.9% | Apr 29, 2025 | A vulnerability, which was classified as problematic, has been found in Wangshen SecGate 3600 2400. This issue affects s... |
| CVE-2025-0520 | CRITICAL | 9.4 | 0.9% | Apr 29, 2025 | An unrestricted file upload vulnerability in ShowDoc caused by improper validation of file extension allows execution of... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now