2025 CVE Vulnerabilities

45,296 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-39517MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in WP Map Plugins Basic Interactive World Map basic-interactive-world-ma...
CVE-2025-39516MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Alan Petersen Auth...
CVE-2025-39515MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in tnomi Attendance M...
CVE-2025-39514MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Asgaros Asgaros Fo...
CVE-2025-39513MEDIUM5.3Missing Authorization vulnerability in ActiveDEMAND Online Agency Marketing Automation ActiveDEMAND activedemand allows ...
CVE-2025-39512MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Yuya Hoshino Bulk Term Editor bulk-term-editor allows Cross Site Requ...
CVE-2025-1983MEDIUM5.1A cross-site scripting (XSS) vulnerability in Ready_'s File Explorer upload functionality allows injection of arbitrary ...
CVE-2025-1982HIGH7.1Local File Inclusion vulnerability in Ready's attachment upload panel allows low privileged user to provide link to a lo...
CVE-2025-1981CRITICAL9.4Improper neutralization of input provided by a low-privileged user into a file search functionality in Ready_'s Invoices...
CVE-2025-1980CRITICAL9.4The Ready_ application's Profile section allows users to upload files of any type and extension without restriction. If ...
CVE-2025-3688MEDIUM4.8A vulnerability, which was classified as problematic, was found in mirweiye Seven Bears Library CMS 2023. This affects a...
CVE-2025-3687MEDIUM5.3A vulnerability, which was classified as problematic, has been found in misstt123 oasys 1.0. Affected by this issue is s...
CVE-2025-3686MEDIUM5.3A vulnerability classified as problematic was found in misstt123 oasys 1.0. Affected by this vulnerability is the functi...
CVE-2025-3685HIGH8.8A vulnerability classified as critical has been found in code-projects Patient Record Management System 1.0. Affected is...
CVE-2025-3684CRITICAL9.8A vulnerability was found in Xianqi Kindergarten Management System 2.0 Bulid 20190808. It has been rated as critical. Th...
CVE-2025-3683CRITICAL9.8A vulnerability was found in PCMan FTP Server 2.0.7. It has been declared as critical. This vulnerability affects unknow...
CVE-2025-3682CRITICAL9.8A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as critical. This affects an unknown part of...
CVE-2025-30960HIGH8.3Missing Authorization vulnerability in fs-code FS Poster fs-poster.This issue affects FS Poster: from n/a through <= 6.5...
CVE-2025-22023HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: xhci: Don't skip on Stopped - Length Invalid ...
CVE-2025-22022HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: xhci: Apply the link chain quirk on NEC isoc e...
CVE-2025-22021MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: netfilter: socket: Lookup orig tuple for IPv6 SNAT ...
CVE-2025-22020HIGH7.8In the Linux kernel, the following vulnerability has been resolved: memstick: rtsx_usb_ms: Fix slab-use-after-free in r...
CVE-2025-22019MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bcachefs: bch2_ioctl_subvolume_destroy() fixes bch...
CVE-2025-3681CRITICAL9.8A vulnerability was found in PCMan FTP Server 2.0.7 and classified as critical. Affected by this issue is some unknown f...
CVE-2025-3680CRITICAL9.8A vulnerability has been found in PCMan FTP Server 2.0.7 and classified as critical. Affected by this vulnerability is a...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now