2025 CVE Vulnerabilities

45,296 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-31350HIGH8.8A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v...
CVE-2025-31349HIGH8.8A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v...
CVE-2025-31343HIGH8.8A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v...
CVE-2025-30032HIGH8.8A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v...
CVE-2025-30031HIGH8.8A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v...
CVE-2025-30030HIGH8.8A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v...
CVE-2025-30003HIGH8.8A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v...
CVE-2025-30002HIGH8.8A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v...
CVE-2025-2291CRITICAL9.8Password can be used past expiry in PgBouncer due to auth_query not taking into account Postgres its VALID UNTIL value, ...
CVE-2025-29905HIGH8.8A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v...
CVE-2025-27540CRITICAL9.8A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v...
CVE-2025-27539CRITICAL9.8A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v...
CVE-2025-27495CRITICAL9.8A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v...
CVE-2025-22872MEDIUM6.5The tokenizer incorrectly interprets tags with unquoted attribute values that end with a solidus character (/) as self-c...
CVE-2025-3739MEDIUM5.9Vulnerability in Drupal Drupal 8 Google Optimize Hide Page.This issue affects Drupal 8 Google Optimize Hide Page: *.*.
CVE-2025-3738MEDIUM5.9Vulnerability in Drupal Google Optimize.This issue affects Google Optimize: *.*.
CVE-2025-3737MEDIUM5.9Vulnerability in Drupal Google Maps: Store Locator.This issue affects Google Maps: Store Locator: *.*.
CVE-2025-3736MEDIUM5.9Vulnerability in Drupal Simple GTM.This issue affects Simple GTM: *.*.
CVE-2025-3735MEDIUM5.9Vulnerability in Drupal Panelizer (obsolete).This issue affects Panelizer (obsolete): *.*.
CVE-2025-3734MEDIUM5.9Allocation of Resources Without Limits or Throttling vulnerability in Drupal Stage File Proxy allows Flooding.This issue...
CVE-2025-3733MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal baguetteBox...
CVE-2025-2564MEDIUM4.3Mattermost versions 10.5.x <= 10.5.1, 10.4.x <= 10.4.3, 9.11.x <= 9.11.9 fail to properly enforce the 'Allow users to vi...
CVE-2025-20236HIGH8.8A vulnerability in the custom URL parser of Cisco Webex App could allow an unauthenticated, remote attacker to persuade ...
CVE-2025-20178HIGH7.2A vulnerability in the web-based management interface of Cisco Secure Network Analytics could allow an authenticated, re...
CVE-2025-20150MEDIUM5.3A vulnerability in Cisco Nexus Dashboard could allow an unauthenticated, remote attacker to enumerate LDAP user accounts...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now