2025 CVE Vulnerabilities

45,319 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-11395MEDIUM5.5A flaw was found in Podman. If an attacker can pass a crafted tar archive to the `podman load` command, they can create ...
CVE-2025-5802MEDIUM5.3The self-registration flow accepts user-supplied input for usernames without adequately preventing the disclosure of use...
CVE-2025-24890MEDIUM6.8gitoxide is an implementation of git written in Rust. Prior to 0.13.3, the gix-sec crate on Windows incorrectly treats r...
CVE-2025-68624MEDIUM4.3N-able Mail Assure through April 2026 contains a design-level authorization flaw that allows an authenticated SMTP user ...
CVE-2025-63842MEDIUM5.4A Cross-Site Scripting (XSS) vulnerability in the web backend for the Repetico app 1.9.7.31 for Android allows a remote ...
CVE-2025-70819MEDIUM6.3Zettlab D6 Ultra before 1.7.0 allows mounting /etc/passwd and /etc/shadow in a container via ".." manipulations such as ...
CVE-2025-69904MEDIUM4.9Linkstack v4.8.4 and earlier is vulnerable to Path Traversal, which allows an administrator to read arbitrary files on t...
CVE-2025-51619MEDIUM5.5A vulnerability in the Thesycon DPC Latency Checker driver (dpc.sys) thru 1.4.0 allows local unprivileged users to cause...
CVE-2025-71418MEDIUM5.3PocketMine-MP versions before 5.25.2 fail to limit the explode() function in packet parsing, allowing malicious clients ...
CVE-2025-71417MEDIUM6.5PocketMine-MP before 5.32.1 fails to validate uniqueness of pack UUIDs in ResourcePackClientResponsePacket STATUS_SEND_P...
CVE-2025-3271MEDIUM4.8Documentum Webtop versions prior to 16.7.1 software is vulnerable to an XSS
CVE-2025-46808MEDIUM6.8An Insertion of Sensitive Information into Log File vulnerability in SUSE neuvector manager exposes sensitive informatio...
CVE-2025-7062MEDIUM5.2A stored cross-site scripting (XSS) vulnerability has been identified in the H5P module `h5p-nodejs-library` by Lumi Edu...
CVE-2025-15690MEDIUM6.8The Content Mask WordPress plugin before 1.8.5.6 does not properly sanitise and escape content submitted with a post bef...
CVE-2025-64868MEDIUM5.4Adobe Experience Manager is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-...
CVE-2025-64866MEDIUM5.4Adobe Experience Manager is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-...
CVE-2025-64854MEDIUM5.4Adobe Experience Manager is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-...
CVE-2025-64838MEDIUM5.4Adobe Experience Manager is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-...
CVE-2025-64830MEDIUM5.4Adobe Experience Manager is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-...
CVE-2025-64618MEDIUM5.4Adobe Experience Manager is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-...
CVE-2025-64610MEDIUM5.4Adobe Experience Manager is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-...
CVE-2025-64589MEDIUM5.4Adobe Experience Manager is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-...
CVE-2025-64588MEDIUM5.4Adobe Experience Manager is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-...
CVE-2025-64584MEDIUM5.4Adobe Experience Manager is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-...
CVE-2025-64542MEDIUM5.4Adobe Experience Manager is affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now