2025 CVE Vulnerabilities
45,296 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-3562 | MEDIUM | 5.3 | 0.5% | Apr 14, 2025 | A vulnerability was found in Yonyou YonBIP MA2.7. It has been declared as problematic. Affected by this vulnerability is... |
| CVE-2025-27009 | HIGH | 7.1 | 0.1% | Apr 14, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in wphocus My auctions allegro my-auctions-allegro-free-edition allows S... |
| CVE-2025-3561 | MEDIUM | 6.5 | 0.3% | Apr 14, 2025 | A vulnerability was found in ghostxbh uzy-ssm-mall 1.0.0. It has been classified as problematic. Affected is an unknown ... |
| CVE-2025-3560 | MEDIUM | 5.4 | 0.3% | Apr 14, 2025 | A vulnerability was found in ghostxbh uzy-ssm-mall 1.0.0 and classified as problematic. This issue affects some unknown ... |
| CVE-2025-3559 | CRITICAL | 9.8 | 0.4% | Apr 14, 2025 | A vulnerability has been found in ghostxbh uzy-ssm-mall 1.0.0 and classified as critical. This vulnerability affects the... |
| CVE-2025-3558 | CRITICAL | 9.8 | 0.4% | Apr 14, 2025 | A vulnerability, which was classified as critical, was found in ghostxbh uzy-ssm-mall 1.0.0. This affects an unknown par... |
| CVE-2025-24859 | HIGH | 8.8 | 1.1% | Apr 14, 2025 | A session management vulnerability exists in Apache Roller before version 6.1.5 where active user sessions are not prope... |
| CVE-2025-3557 | MEDIUM | 5.3 | 0.3% | Apr 14, 2025 | A vulnerability, which was classified as problematic, has been found in ScriptAndTools eCommerce-website-in-PHP 3.0. Aff... |
| CVE-2025-3556 | HIGH | 8.1 | 0.8% | Apr 14, 2025 | A vulnerability classified as problematic was found in ScriptAndTools eCommerce-website-in-PHP 3.0. Affected by this vul... |
| CVE-2025-31344 | HIGH | 7.3 | 0.2% | Apr 14, 2025 | Heap-based Buffer Overflow vulnerability in openEuler giflib on Linux. This vulnerability is associated with program fil... |
| CVE-2025-3555 | HIGH | 8.1 | 0.8% | Apr 14, 2025 | A vulnerability classified as problematic has been found in ScriptAndTools eCommerce-website-in-PHP 3.0. Affected is an ... |
| CVE-2025-3554 | MEDIUM | 6.1 | 0.4% | Apr 14, 2025 | A vulnerability was found in phpshe 1.8. It has been rated as problematic. This issue affects some unknown processing of... |
| CVE-2025-32093 | MEDIUM | 4.9 | 0.2% | Apr 14, 2025 | Mattermost versions 10.5.x <= 10.5.1, 10.4.x <= 10.4.3, 9.11.x <= 9.11.9 fail to restrict certain operations on system a... |
| CVE-2025-30516 | HIGH | 7.5 | 0.2% | Apr 14, 2025 | Mattermost Mobile Apps versions <=2.25.0 fail to terminate sessions during logout under certain conditions (e.g. poor c... |
| CVE-2025-3553 | CRITICAL | 9.8 | 0.4% | Apr 14, 2025 | A vulnerability was found in phpshe 1.8. It has been declared as critical. This vulnerability affects the function pe_de... |
| CVE-2025-3552 | — | — | — | Apr 14, 2025 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn b... |
| CVE-2025-2563 | HIGH | 8.1 | 44.4% | Apr 14, 2025 | The User Registration & Membership WordPress plugin before 4.1.2 does not prevent users to set their account role when ... |
| CVE-2025-3551 | — | — | — | Apr 14, 2025 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn b... |
| CVE-2025-3550 | MEDIUM | 5.3 | 0.3% | Apr 14, 2025 | A vulnerability has been found in wowjoy 浙江湖州华卓信息科技有限公司 Internet Doctor Workstation System 1.0 and classified as problem... |
| CVE-2025-3572 | HIGH | 7.5 | 0.4% | Apr 14, 2025 | SmartRobot from INTUMIT has a Server-Side Request Forgery vulnerability, allowing unauthenticated remote attackers to pr... |
| CVE-2025-3549 | LOW | 3.3 | 0.2% | Apr 14, 2025 | A vulnerability, which was classified as critical, was found in Open Asset Import Library Assimp 5.4.3. Affected is the ... |
| CVE-2025-3548 | LOW | 3.3 | 0.2% | Apr 14, 2025 | A vulnerability, which was classified as critical, has been found in Open Asset Import Library Assimp up to 5.4.3. This ... |
| CVE-2025-3547 | MEDIUM | 6.3 | 0.4% | Apr 14, 2025 | A vulnerability classified as critical was found in frdel Agent-Zero 0.8.1.2. This vulnerability affects unknown code of... |
| CVE-2025-3546 | HIGH | 8.6 | 1.9% | Apr 14, 2025 | A vulnerability was found in H3C Magic NX15, Magic NX30 Pro, Magic NX400, Magic R3010 and Magic BE18000 up to V100R014. ... |
| CVE-2025-3545 | HIGH | 8.6 | 1.3% | Apr 14, 2025 | A vulnerability was found in H3C Magic NX15, Magic NX30 Pro, Magic NX400, Magic R3010 and Magic BE18000 up to V100R014. ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now