2025 CVE Vulnerabilities
45,296 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-31350 | HIGH | 8.8 | 0.6% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-31349 | HIGH | 8.8 | 0.6% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-31343 | HIGH | 8.8 | 0.6% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-30032 | HIGH | 8.8 | 0.6% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-30031 | HIGH | 8.8 | 0.6% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-30030 | HIGH | 8.8 | 0.6% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-30003 | HIGH | 8.8 | 0.6% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-30002 | HIGH | 8.8 | 0.6% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-2291 | CRITICAL | 9.8 | 0.3% | Apr 16, 2025 | Password can be used past expiry in PgBouncer due to auth_query not taking into account Postgres its VALID UNTIL value, ... |
| CVE-2025-29905 | HIGH | 8.8 | 0.7% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-27540 | CRITICAL | 9.8 | 0.8% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-27539 | CRITICAL | 9.8 | 0.8% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-27495 | CRITICAL | 9.8 | 0.8% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-22872 | MEDIUM | 6.5 | 0.4% | Apr 16, 2025 | The tokenizer incorrectly interprets tags with unquoted attribute values that end with a solidus character (/) as self-c... |
| CVE-2025-3739 | MEDIUM | 5.9 | 0.3% | Apr 16, 2025 | Vulnerability in Drupal Drupal 8 Google Optimize Hide Page.This issue affects Drupal 8 Google Optimize Hide Page: *.*. |
| CVE-2025-3738 | MEDIUM | 5.9 | 0.3% | Apr 16, 2025 | Vulnerability in Drupal Google Optimize.This issue affects Google Optimize: *.*. |
| CVE-2025-3737 | MEDIUM | 5.9 | 0.3% | Apr 16, 2025 | Vulnerability in Drupal Google Maps: Store Locator.This issue affects Google Maps: Store Locator: *.*. |
| CVE-2025-3736 | MEDIUM | 5.9 | 0.3% | Apr 16, 2025 | Vulnerability in Drupal Simple GTM.This issue affects Simple GTM: *.*. |
| CVE-2025-3735 | MEDIUM | 5.9 | 0.3% | Apr 16, 2025 | Vulnerability in Drupal Panelizer (obsolete).This issue affects Panelizer (obsolete): *.*. |
| CVE-2025-3734 | MEDIUM | 5.9 | 0.3% | Apr 16, 2025 | Allocation of Resources Without Limits or Throttling vulnerability in Drupal Stage File Proxy allows Flooding.This issue... |
| CVE-2025-3733 | MEDIUM | 6.5 | 0.2% | Apr 16, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal baguetteBox... |
| CVE-2025-2564 | MEDIUM | 4.3 | 0.2% | Apr 16, 2025 | Mattermost versions 10.5.x <= 10.5.1, 10.4.x <= 10.4.3, 9.11.x <= 9.11.9 fail to properly enforce the 'Allow users to vi... |
| CVE-2025-20236 | HIGH | 8.8 | 0.9% | Apr 16, 2025 | A vulnerability in the custom URL parser of Cisco Webex App could allow an unauthenticated, remote attacker to persuade ... |
| CVE-2025-20178 | HIGH | 7.2 | 0.3% | Apr 16, 2025 | A vulnerability in the web-based management interface of Cisco Secure Network Analytics could allow an authenticated, re... |
| CVE-2025-20150 | MEDIUM | 5.3 | 0.5% | Apr 16, 2025 | A vulnerability in Cisco Nexus Dashboard could allow an unauthenticated, remote attacker to enumerate LDAP user accounts... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now