2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-13246 | MEDIUM | 6.3 | 0.4% | Nov 16, 2025 | A vulnerability was identified in shsuishang ShopSuite ModulithShop up to 45a99398cec3b7ad7ff9383694f0b53339f2d35a. Impa... |
| CVE-2025-13245 | MEDIUM | 5.4 | 0.2% | Nov 16, 2025 | A vulnerability was identified in code-projects Student Information System 2.0. The impacted element is an unknown funct... |
| CVE-2025-13244 | MEDIUM | 6.1 | 0.3% | Nov 16, 2025 | A vulnerability was determined in code-projects Student Information System 2.0. The affected element is an unknown funct... |
| CVE-2025-13221 | MEDIUM | 5.5 | 0.3% | Nov 15, 2025 | A weakness has been identified in Intelbras UnniTI 24.07.11. The affected element is an unknown function of the file /xm... |
| CVE-2025-13209 | MEDIUM | 6.3 | 0.3% | Nov 15, 2025 | A weakness has been identified in bestfeng oa_git_free up to 9.5. This affects the function updateWriteBack of the file ... |
| CVE-2025-13208 | MEDIUM | 6.3 | 0.2% | Nov 15, 2025 | A security flaw has been discovered in FantasticLBP Hotels Server up to 67b44df162fab26df209bd5d5d542875fcbec1d0. The im... |
| CVE-2025-13202 | MEDIUM | 5.4 | 0.2% | Nov 15, 2025 | A security flaw has been discovered in code-projects Simple Cafe Ordering System 1.0. This affects an unknown part of th... |
| CVE-2025-13200 | MEDIUM | 5.5 | 0.4% | Nov 15, 2025 | A vulnerability was determined in SourceCodester Farm Management System 1.0. Affected by this vulnerability is an unknow... |
| CVE-2025-13199 | MEDIUM | 5.5 | 0.2% | Nov 15, 2025 | A vulnerability was found in code-projects Email Logging Interface 2.0. Affected is an unknown function of the file sign... |
| CVE-2025-13198 | MEDIUM | 4.7 | 0.2% | Nov 15, 2025 | A vulnerability has been found in DouPHP up to 1.8 Release 20251022. This impacts an unknown function of the file upload... |
| CVE-2025-12983 | MEDIUM | 6.5 | 0.4% | Nov 15, 2025 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.9 before 18.3.6, 18.4 before 18.4.4, and 1... |
| CVE-2025-7736 | MEDIUM | 4.3 | 0.2% | Nov 15, 2025 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.9 before 18.3.6, 18.4 before 18.4.4, and 1... |
| CVE-2025-7000 | MEDIUM | 4.3 | 0.3% | Nov 15, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions from 17.6 before 18.3.6, 18.4 before 18.4.4, and 1... |
| CVE-2025-6171 | MEDIUM | 4.3 | 0.2% | Nov 15, 2025 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.2 before 18.3.6, 18.4 before 18.4.4, and 1... |
| CVE-2025-2615 | MEDIUM | 6.5 | 0.3% | Nov 15, 2025 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.7 before 18.3.6, 18.4 before 18.4.4, and ... |
| CVE-2025-11865 | MEDIUM | 5.3 | 0.2% | Nov 15, 2025 | An issue has been discovered in GitLab EE affecting all versions from 18.1 before 18.3.6, 18.4 before 18.4.4, and 18.5 b... |
| CVE-2025-12849 | MEDIUM | 5.3 | 0.3% | Nov 15, 2025 | The Contest Gallery plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 28.... |
| CVE-2025-8994 | MEDIUM | 6.5 | 0.2% | Nov 15, 2025 | The Project Management, Team Collaboration, Kanban Board, Gantt Charts, Task Manager and More – WP Project Manager plugi... |
| CVE-2025-12847 | MEDIUM | 4.3 | 0.2% | Nov 15, 2025 | The All in One SEO – Powerful SEO Plugin to Boost SEO Rankings & Increase Traffic plugin for WordPress is vulnerable to ... |
| CVE-2025-12494 | MEDIUM | 4.3 | 0.2% | Nov 15, 2025 | The Image Gallery – Photo Grid & Video Gallery plugin for WordPress is vulnerable to arbitrary file deletion due to insu... |
| CVE-2025-12182 | MEDIUM | 4.3 | 0.2% | Nov 15, 2025 | The Qi Blocks plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the `resize... |
| CVE-2025-13186 | MEDIUM | 5.4 | 0.2% | Nov 14, 2025 | A weakness has been identified in Bdtask/CodeCanyon Isshue Multi Store eCommerce Shopping Cart Solution up to 4.0. This ... |
| CVE-2025-64084 | MEDIUM | 5.4 | 0.3% | Nov 14, 2025 | An authenticated SQL injection vulnerability exists in Cloudlog 2.7.5 and earlier. The vucc_details_ajax function in app... |
| CVE-2025-63745 | MEDIUM | 5.5 | 0.1% | Nov 14, 2025 | A NULL pointer dereference vulnerability was discovered in radare2 6.0.5 and earlier within the info() function of bin_n... |
| CVE-2025-63744 | MEDIUM | 4.3 | 0.2% | Nov 14, 2025 | A NULL pointer dereference vulnerability was discovered in radare2 6.0.5 and earlier within the load() function of bin_d... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now