2025 CVE Vulnerabilities

45,325 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-46494HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themesgrove Widget...
CVE-2025-46434MEDIUM6.5Missing Authorization vulnerability in POSIMYTH Innovation The Plus Addons for Elementor Pro theplus_elementor_addon all...
CVE-2025-46256MEDIUM6.4Path Traversal: '.../...//' vulnerability in SigmaPlugin Advanced Database Cleaner PRO allows Path Traversal.This issue ...
CVE-2025-32303CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mojoomla WPCHURCH ...
CVE-2025-9611HIGH7.2Microsoft Playwright MCP Server versions prior to 0.0.40 fails to validate the Origin header on incoming connections. Th...
CVE-2025-69344MEDIUM4.3Missing Authorization vulnerability in themehunk Oneline Lite oneline-lite allows Exploiting Incorrectly Configured Acce...
CVE-2025-69333MEDIUM4.3Missing Authorization vulnerability in Crocoblock JetEngine jet-engine allows Exploiting Incorrectly Configured Access C...
CVE-2025-69082HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Frenify Arlo arlo ...
CVE-2025-69081HIGH8.1Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2025-69080HIGH8.1Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2025-68637CRITICAL9.1The Uniffle HTTP client is configured to trust all SSL certificates and disables hostname verification by default. This...
CVE-2025-47396HIGH7.8Memory corruption occurs when a secure application is launched on a device with insufficient memory.
CVE-2025-47395MEDIUM6.5Transient DOS while parsing a WLAN management frame with a Vendor Specific Information Element.
CVE-2025-47394HIGH7.8Memory corruption when copying overlapping buffers during memory operations due to incorrect offset calculations.
CVE-2025-47393HIGH7.8Memory corruption when accessing resources in kernel driver.
CVE-2025-47388HIGH7.8Memory corruption while passing pages to DSP with an unaligned starting address.
CVE-2025-47380HIGH7.8Memory corruption while preprocessing IOCTLs in sensors.
CVE-2025-47369MEDIUM5.5Information disclosure when a weak hashed value is returned to userland code in response to a IOCTL call to obtain a ses...
CVE-2025-47356HIGH7.8Memory Corruption when multiple threads concurrently access and modify shared resources.
CVE-2025-47348HIGH7.8Memory corruption while processing identity credential operations in the trusted application.
CVE-2025-47346HIGH7.8Memory corruption while processing a secure logging command in the trusted application.
CVE-2025-47345HIGH8.4Cryptographic issue may occur while encrypting license data.
CVE-2025-47344MEDIUM6.4Memory corruption while handling sensor utility operations.
CVE-2025-47343HIGH7.8Memory corruption while processing a video session to set video parameters.
CVE-2025-47339HIGH7.8Memory corruption while deinitializing a HDCP session.

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now