2025 CVE Vulnerabilities

45,320 CVEs published in 2025.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2025-64681LOW3.7In JetBrains Hub before 2025.3.104992 a race condition allowed bypass of the user limit via invitations
CVE-2025-12919LOW3.7A vulnerability was detected in EverShop up to 2.0.1. Affected is an unknown function of the file /src/modules/oms/graph...
CVE-2025-64481LOW2.7Datasette is an open source multi-tool for exploring and publishing data. In versions 0.65.1 and below and 1.0a0 through...
CVE-2025-12854LOW3.7A vulnerability was identified in newbee-mall-plus up to 2.4.1. This vulnerability affects the function executeSeckill o...
CVE-2025-11219LOW3.1Use after free in V8 in Google Chrome prior to 141.0.7390.54 allowed a remote attacker to potentially perform out of bou...
CVE-2025-64326LOW3.5Weblate is a web based localization tool. In versions 5.14 and below, Weblate leaks the IP address of the project membe...
CVE-2025-21077LOW3.3Improper input validation in Samsung Email prior to version 6.2.06.0 allows local attackers to launch arbitrary activity...
CVE-2025-43442LOW3.3A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2, iOS...
CVE-2025-43423LOW2A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2, iOS 26....
CVE-2025-43408LOW2.4This issue was addressed by restricting options offered on a locked device. This issue is fixed in macOS Sequoia 15.7.2,...
CVE-2025-43395LOW3.3This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 1...
CVE-2025-43365LOW2.8A denial-of-service issue was addressed with improved input validation. This issue is fixed in iOS 18.7.2 and iPadOS 18....
CVE-2025-43350LOW2.4A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.1 and iPadOS 26.1. An atta...
CVE-2025-43309LOW2.4A logic issue was addressed with improved checks. This issue is fixed in iOS 26 and iPadOS 26. An attacker with physical...
CVE-2025-12623LOW3.1A vulnerability was identified in fushengqian fuint up to 41e26be8a2c609413a0feaa69bdad33a71ae8032. Affected by this iss...
CVE-2025-64352LOW2.7Missing Authorization vulnerability in WPDeveloper Essential Addons for Elementor essential-addons-for-elementor-lite al...
CVE-2025-64350LOW3.8Missing Authorization vulnerability in Rank Math SEO Rank Math SEO seo-by-rank-math allows Exploiting Incorrectly Config...
CVE-2025-23050LOW3.1QLowEnergyController in Qt before 6.8.2 mishandles malformed Bluetooth ATT commands, leading to an out-of-bounds read (o...
CVE-2025-10636LOW3.5The NS Maintenance Mode for WP WordPress plugin through 1.3.1 does not sanitise and escape some of its settings, which c...
CVE-2025-10931LOW3.8Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Umami Analy...
CVE-2025-11203LOW3.5LiteLLM Information health API_KEY Information Disclosure Vulnerability. This vulnerability allows remote attackers to d...
CVE-2025-56558LOW3The Dyson MQTT server (2022 and possibly later) allows publications and subscriptions by a client that has the correct v...
CVE-2025-62794LOW3.8GitHub Workflow Updater is a VS Code extension that automatically pins GitHub Actions to specific commits for enhanced s...
CVE-2025-10939LOW3.7A flaw was found in Keycloak. The Keycloak guides recommend to not expose /admin path to the outside in case the install...
CVE-2025-12251LOW3.5A vulnerability has been found in OpenWGA 7.11.12 Build 737. This impacts an unknown function of the component Admin UI....

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now