2025 CVE Vulnerabilities

45,146 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-15380HIGH7.2The NotificationX – FOMO, Live Sales Notification, WooCommerce Sales Popup, GDPR, Social Proof, Announcement Banner & Fl...
CVE-2025-15347HIGH8.8The Creator LMS – The LMS for Creators, Coaches, and Trainers plugin for WordPress is vulnerable to unauthorized modific...
CVE-2025-15043MEDIUM5.4The The Events Calendar plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on t...
CVE-2025-14115HIGH8.4IBM Sterling Connect:Direct for UNIX Container 6.3.0.0 through 6.3.0.6 Interim Fix 016, and 6.4.0.0 through 6.4.0.3 Inte...
CVE-2025-13925MEDIUM4.9IBM Aspera Console 3.4.7 stores potentially sensitive information in log files that could be read by a local privileged ...
CVE-2025-12985HIGH8.4IBM Licensing Operator incorrectly assigns privileges to security critical files which could allow a local root escalati...
CVE-2025-9466HIGH7.5A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ...
CVE-2025-9465HIGH7.5A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ...
CVE-2025-9464HIGH7.5A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. This vulnerability is tr...
CVE-2025-9283HIGH7.5A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ...
CVE-2025-9282HIGH7.5A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ...
CVE-2025-9281HIGH7.5A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ...
CVE-2025-9280HIGH7.5A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. Fuzzing performed using ...
CVE-2025-9279HIGH7.5A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. During execution of the ...
CVE-2025-9278HIGH7.5A security issue exists within ArmorStart® LT that can result in a denial-of-service condition. After running a Burp Sui...
CVE-2025-15281HIGH7.5Calling wordexp with WRDE_REUSE in conjunction with WRDE_APPEND in the GNU C Library version 2.0 to version 2.42 may cau...
CVE-2025-14377HIGH8.8A security issue was discovered within the legacy Ansible playbook component of Verve Asset Manager, caused by plaintext...
CVE-2025-14376HIGH8.6A security issue was discovered within the legacy ADI server component of Verve Asset Manager, caused by plaintext secre...
CVE-2025-14027HIGH8.7Multiple denial-of-service vulnerabilities exist in the affected product. These issues can be triggered through various ...
CVE-2025-11743HIGH7.1A denial-of-service security issue in the affected product. The security issue occurs when a malformed CIP forward open ...
CVE-2025-41081MEDIUM5.1Reflected Cross-Site Scripting (XSS) vulnerability in IsMyGym by Zuinq Studio. This vulnerability allows an attacker to ...
CVE-2025-41025MEDIUM5.4Stored Cross-Site Scripting (XSS) in Poultry Farm Management System v1.0 due to the lack of proper validation of user in...
CVE-2025-41024MEDIUM5.4Stored Cross-Site Scripting (XSS) in Poultry Farm Management System v1.0 due to the lack of proper validation of user in...
CVE-2025-40679MEDIUM5.1HTML Injection vulnerability in Isshue by Bdtask, consisting os an HTML injection due to a lack os proper validation ...
CVE-2025-40644MEDIUM5.1Reflected Cross-Site Scripting (XSS) vulnerability in Riftzilla's QRGen. This vulnerability allows an attavker to execut...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now