2025 CVE Vulnerabilities
45,296 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-3544 | HIGH | 8.6 | 1.3% | Apr 14, 2025 | A vulnerability was found in H3C Magic NX15, Magic NX30 Pro, Magic NX400, Magic R3010 and Magic BE18000 up to V100R014 a... |
| CVE-2025-3543 | HIGH | 8.6 | 1.3% | Apr 14, 2025 | A vulnerability has been found in H3C Magic NX15, Magic NX30 Pro, Magic NX400 and Magic R3010 up to V100R014 and classif... |
| CVE-2025-3542 | HIGH | 8.6 | 1.3% | Apr 14, 2025 | A vulnerability, which was classified as critical, was found in H3C Magic NX15, Magic NX400 and Magic R3010 up to V100R0... |
| CVE-2025-3541 | HIGH | 8.6 | 1.3% | Apr 13, 2025 | A vulnerability, which was classified as critical, has been found in H3C Magic NX15, Magic NX30 Pro, Magic NX400 and Mag... |
| CVE-2025-3540 | HIGH | 8.6 | 1.3% | Apr 13, 2025 | A vulnerability classified as critical was found in H3C Magic NX15, Magic NX30 Pro, Magic NX400 and Magic R3010 up to V1... |
| CVE-2025-3539 | HIGH | 8.6 | 1.3% | Apr 13, 2025 | A vulnerability classified as critical has been found in H3C Magic NX15, Magic NX30 Pro, Magic NX400, Magic R3010 and Ma... |
| CVE-2025-3445 | HIGH | 8.1 | 0.4% | Apr 13, 2025 | A Path Traversal "Zip Slip" vulnerability has been identified in mholt/archiver in Go. This vulnerability allows using a... |
| CVE-2025-3538 | HIGH | 8.8 | 8.3% | Apr 13, 2025 | A vulnerability was found in D-Link DI-8100 16.07.26A1. It has been rated as critical. This issue affects the function a... |
| CVE-2025-3537 | MEDIUM | 6.9 | 0.5% | Apr 13, 2025 | A vulnerability was found in Tutorials-Website Employee Management System 1.0. It has been classified as critical. This ... |
| CVE-2025-3536 | MEDIUM | 6.9 | 0.6% | Apr 13, 2025 | A vulnerability was found in Tutorials-Website Employee Management System 1.0 and classified as critical. Affected by th... |
| CVE-2025-3423 | MEDIUM | 5.4 | 0.2% | Apr 13, 2025 | IBM Aspera Faspex 5.0.0 through 5.0.11 is vulnerable to cross-site scripting. This vulnerability allows an authenticated... |
| CVE-2025-3535 | MEDIUM | 5.3 | 0.4% | Apr 13, 2025 | A vulnerability has been found in shuanx BurpAPIFinder up to 2.0.2 and classified as problematic. Affected by this vulne... |
| CVE-2025-3534 | MEDIUM | 6.3 | 0.3% | Apr 13, 2025 | A vulnerability, which was classified as critical, was found in PowerCreator CMS 1.0. Affected is an unknown function of... |
| CVE-2025-3533 | MEDIUM | 6.1 | 0.4% | Apr 13, 2025 | A vulnerability, which was classified as problematic, has been found in YouDianCMS 9.5.21. This issue affects some unkno... |
| CVE-2025-3532 | MEDIUM | 6.1 | 0.4% | Apr 13, 2025 | A vulnerability classified as problematic was found in YouDianCMS 9.5.21. This vulnerability affects unknown code of the... |
| CVE-2025-3531 | MEDIUM | 6.1 | 0.4% | Apr 13, 2025 | A vulnerability classified as problematic has been found in YouDianCMS 9.5.21. This affects an unknown part of the file ... |
| CVE-2025-2814 | MEDIUM | 4 | 0.2% | Apr 13, 2025 | Crypt::CBC versions between 1.21 and 3.05 for Perl may use the rand() function as the default source of entropy, which i... |
| CVE-2025-1456 | MEDIUM | 5.4 | 0.2% | Apr 12, 2025 | The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `widg... |
| CVE-2025-1455 | MEDIUM | 5.4 | 0.2% | Apr 12, 2025 | The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Woo G... |
| CVE-2025-3418 | HIGH | 8.8 | 0.3% | Apr 12, 2025 | The WPC Admin Columns plugin for WordPress is vulnerable to privilege escalation in versions 2.0.6 to 2.1.0. This is due... |
| CVE-2025-3292 | MEDIUM | 4.3 | 0.3% | Apr 12, 2025 | The User Registration & Membership – Custom Registration Form, Login Form, and User Profile plugin for WordPress is vuln... |
| CVE-2025-3282 | MEDIUM | 5.3 | 0.2% | Apr 12, 2025 | The User Registration & Membership – Custom Registration Form, Login Form, and User Profile plugin for WordPress is vuln... |
| CVE-2025-3276 | MEDIUM | 5.4 | 0.2% | Apr 12, 2025 | The SKT Blocks – Gutenberg based Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ... |
| CVE-2025-2871 | MEDIUM | 4.3 | 0.2% | Apr 12, 2025 | The WordPress Mega Menu – QuadMenu plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up t... |
| CVE-2025-2881 | MEDIUM | 5.3 | 0.3% | Apr 12, 2025 | The Developer Toolbar plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now