2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-26483 | HIGH | 8.2 | 0.2% | May 22, 2026 | Dell PowerFlex Manager, versions 4.6.2 and prior, contains an Open Redirect Vulnerability. An unauthenticated attacker c... |
| CVE-2025-71217 | HIGH | 7.8 | 0.3% | May 21, 2026 | An origin validation error vulnerability in the Trend Micro Apex One (mac) agent self-protection mechanism could allow a... |
| CVE-2025-71216 | HIGH | 7.8 | 0.3% | May 21, 2026 | A time-of-check time-of-use vulnerability in the Trend Micro Apex One (mac) agent cache mechanism could allow a local at... |
| CVE-2025-71215 | HIGH | 7 | 0.3% | May 21, 2026 | A time-of-check time-of-use vulnerability in the Trend Micro Apex One (mac) agent iCore service signature verification c... |
| CVE-2025-71214 | HIGH | 7.8 | 0.4% | May 21, 2026 | An origin validation error vulnerability in the Trend Micro Apex One (mac) agent iCore service could allow a local attac... |
| CVE-2025-71213 | HIGH | 7.8 | 0.3% | May 21, 2026 | An origin validation error vulnerability in Trend Micro Apex One could allow a local attacker to escalate privileges on ... |
| CVE-2025-71212 | HIGH | 7.8 | 0.5% | May 21, 2026 | A link following vulnerability in the Trend Micro Apex One scan engine could allow a local attacker to escalate privileg... |
| CVE-2025-13479 | HIGH | 7.5 | 0.3% | May 21, 2026 | Authorization bypass through User-Controlled key vulnerability in PosCube Hardware Software and Consulting Ltd. QR Menu ... |
| CVE-2025-13477 | HIGH | 7.1 | 0.2% | May 21, 2026 | Exposure of private personal information to an unauthorized actor, Insufficiently Protected Credentials vulnerability in... |
| CVE-2025-32750 | HIGH | 7.5 | 0.4% | May 20, 2026 | Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Exposure of Information Through Directory Listing vulnerabilit... |
| CVE-2025-11954 | HIGH | 8 | 0.2% | May 20, 2026 | Cross-Site request forgery (CSRF) vulnerability in Sitemio Information Technologies Trade Ltd. Co. WISECP allows Cross S... |
| CVE-2025-70950 | HIGH | 7.3 | 0.5% | May 19, 2026 | An issue in gohttp commit 34ea51 allows attackers to execute a directory traversal via supplying a crafted request. |
| CVE-2025-51427 | HIGH | 7.3 | 0.5% | May 19, 2026 | An issue was discovered in ModelScope 1.25.0 allowing attackers to execute arbitrary code via crafted module listed in t... |
| CVE-2025-15609 | HIGH | 7.5 | 0.4% | May 19, 2026 | The Fortis for WooCommerce WordPress plugin before 1.3.1 may leak sensitive API keys to unauthenticated attackers, allow... |
| CVE-2025-57282 | HIGH | 8.8 | 1.0% | May 18, 2026 | ngrok v4.3.3 and 5.0.0-beta.2 is vulnerable to Command Injection. |
| CVE-2025-56352 | HIGH | 7.5 | 0.3% | May 18, 2026 | In tinyMQTT commit 6226ade15bd4f97be2d196352e64dd10937c1962 (2024-02-18), the broker mishandles protocol violations duri... |
| CVE-2025-54518 | HIGH | 7.3 | 0.3% | May 15, 2026 | Improper isolation of shared resources within the CPU operation cache on Zen 2-based products could allow an attacker to... |
| CVE-2025-54517 | HIGH | 8.5 | 0.1% | May 15, 2026 | Out of bounds write in AMD AMDGV_CMD_GET_DIAG_DATA ioctl handler could allow a local user to escalate privileges via rem... |
| CVE-2025-29938 | HIGH | 7.1 | 0.1% | May 15, 2026 | An unchecked return value within the AMD Platform Management Framework (PMF) could allow an attacker to write to an arbi... |
| CVE-2025-29936 | HIGH | 8.4 | 0.1% | May 15, 2026 | Improper input validation within the AMD Platform Management Framework (PMF) could allow an attacker to unmap arbitrary ... |
| CVE-2025-29935 | HIGH | 8.4 | 0.1% | May 15, 2026 | An out of bounds write within the AMD Platform Management Framework (PMF) could allow an attacker to execute arbitrary c... |
| CVE-2025-0028 | HIGH | 8.3 | 0.1% | May 15, 2026 | An unchecked return value within the AMD Platform Management Framework (PMF) could allow an attacker to read or modify ... |
| CVE-2025-52540 | HIGH | 8.5 | 0.1% | May 15, 2026 | An improper input validation vulnerability within the AMD Platform Management Framework (PMF) Driver can allow a local a... |
| CVE-2025-48519 | HIGH | 8.5 | 0.1% | May 15, 2026 | An improper input validation vulnerability within the AMD Platform Management Framework (PMF) driver can allow a local a... |
| CVE-2025-48512 | HIGH | 7 | 0.1% | May 15, 2026 | Incorrect default permissions in the installation directory for the AMD general-purpose input/output controller (GPIO) c... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now