2025 CVE Vulnerabilities

45,296 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-3562MEDIUM5.3A vulnerability was found in Yonyou YonBIP MA2.7. It has been declared as problematic. Affected by this vulnerability is...
CVE-2025-27009HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in wphocus My auctions allegro my-auctions-allegro-free-edition allows S...
CVE-2025-3561MEDIUM6.5A vulnerability was found in ghostxbh uzy-ssm-mall 1.0.0. It has been classified as problematic. Affected is an unknown ...
CVE-2025-3560MEDIUM5.4A vulnerability was found in ghostxbh uzy-ssm-mall 1.0.0 and classified as problematic. This issue affects some unknown ...
CVE-2025-3559CRITICAL9.8A vulnerability has been found in ghostxbh uzy-ssm-mall 1.0.0 and classified as critical. This vulnerability affects the...
CVE-2025-3558CRITICAL9.8A vulnerability, which was classified as critical, was found in ghostxbh uzy-ssm-mall 1.0.0. This affects an unknown par...
CVE-2025-24859HIGH8.8A session management vulnerability exists in Apache Roller before version 6.1.5 where active user sessions are not prope...
CVE-2025-3557MEDIUM5.3A vulnerability, which was classified as problematic, has been found in ScriptAndTools eCommerce-website-in-PHP 3.0. Aff...
CVE-2025-3556HIGH8.1A vulnerability classified as problematic was found in ScriptAndTools eCommerce-website-in-PHP 3.0. Affected by this vul...
CVE-2025-31344HIGH7.3Heap-based Buffer Overflow vulnerability in openEuler giflib on Linux. This vulnerability is associated with program fil...
CVE-2025-3555HIGH8.1A vulnerability classified as problematic has been found in ScriptAndTools eCommerce-website-in-PHP 3.0. Affected is an ...
CVE-2025-3554MEDIUM6.1A vulnerability was found in phpshe 1.8. It has been rated as problematic. This issue affects some unknown processing of...
CVE-2025-32093MEDIUM4.9Mattermost versions 10.5.x <= 10.5.1, 10.4.x <= 10.4.3, 9.11.x <= 9.11.9 fail to restrict certain operations on system a...
CVE-2025-30516HIGH7.5Mattermost Mobile Apps versions <=2.25.0  fail to terminate sessions during logout under certain conditions (e.g. poor c...
CVE-2025-3553CRITICAL9.8A vulnerability was found in phpshe 1.8. It has been declared as critical. This vulnerability affects the function pe_de...
CVE-2025-3552Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn b...
CVE-2025-2563HIGH8.1The User Registration & Membership WordPress plugin before 4.1.2 does not prevent users to set their account role when ...
CVE-2025-3551Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn b...
CVE-2025-3550MEDIUM5.3A vulnerability has been found in wowjoy 浙江湖州华卓信息科技有限公司 Internet Doctor Workstation System 1.0 and classified as problem...
CVE-2025-3572HIGH7.5SmartRobot from INTUMIT has a Server-Side Request Forgery vulnerability, allowing unauthenticated remote attackers to pr...
CVE-2025-3549LOW3.3A vulnerability, which was classified as critical, was found in Open Asset Import Library Assimp 5.4.3. Affected is the ...
CVE-2025-3548LOW3.3A vulnerability, which was classified as critical, has been found in Open Asset Import Library Assimp up to 5.4.3. This ...
CVE-2025-3547MEDIUM6.3A vulnerability classified as critical was found in frdel Agent-Zero 0.8.1.2. This vulnerability affects unknown code of...
CVE-2025-3546HIGH8.6A vulnerability was found in H3C Magic NX15, Magic NX30 Pro, Magic NX400, Magic R3010 and Magic BE18000 up to V100R014. ...
CVE-2025-3545HIGH8.6A vulnerability was found in H3C Magic NX15, Magic NX30 Pro, Magic NX400, Magic R3010 and Magic BE18000 up to V100R014. ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now