2025 CVE Vulnerabilities
45,150 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-15026 | CRITICAL | 9.8 | 0.4% | Jan 5, 2026 | Missing Authentication for Critical Function vulnerability in Centreon Infra Monitoring centreon-awie (Awie import modul... |
| CVE-2025-68280 | MEDIUM | 6.5 | 0.6% | Jan 5, 2026 | Improper Restriction of XML External Entity Reference vulnerability in Apache SIS. It is possible to write XML files ... |
| CVE-2025-12513 | MEDIUM | 4.8 | 0.2% | Jan 5, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Centreon In... |
| CVE-2025-12511 | MEDIUM | 4.8 | 0.2% | Jan 5, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Centreon In... |
| CVE-2025-69087 | HIGH | 8.1 | 0.3% | Jan 5, 2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-68865 | CRITICAL | 9.3 | 0.2% | Jan 5, 2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Infility Infility ... |
| CVE-2025-68850 | HIGH | 7.5 | 0.2% | Jan 5, 2026 | Missing Authorization vulnerability in codepeople Sell Downloads sell-downloads allows Exploiting Incorrectly Configured... |
| CVE-2025-68547 | HIGH | 7.5 | 0.2% | Jan 5, 2026 | Missing Authorization vulnerability in wpweb Follow My Blog Post follow-my-blog-post allows Exploiting Incorrectly Confi... |
| CVE-2025-68044 | HIGH | 8.6 | 0.2% | Jan 5, 2026 | Authorization Bypass Through User-Controlled Key vulnerability in Rustaurius Five Star Restaurant Reservations restauran... |
| CVE-2025-68033 | HIGH | 7.5 | 0.3% | Jan 5, 2026 | Insertion of Sensitive Information Into Sent Data vulnerability in Brecht Custom Related Posts custom-related-posts allo... |
| CVE-2025-68029 | MEDIUM | 6.3 | 0.2% | Jan 5, 2026 | Insertion of Sensitive Information Into Sent Data vulnerability in WP Swings Wallet System for WooCommerce wallet-system... |
| CVE-2025-68014 | MEDIUM | 6.5 | 0.2% | Jan 5, 2026 | Insertion of Sensitive Information Into Sent Data vulnerability in awethemes AweBooking awebooking allows Retrieve Embed... |
| CVE-2025-31048 | CRITICAL | 9.9 | 0.3% | Jan 5, 2026 | Unrestricted Upload of File with Dangerous Type vulnerability in Themify Shopo allows Upload a Web Shell to a Web Server... |
| CVE-2025-31047 | HIGH | 8.8 | 0.3% | Jan 5, 2026 | Deserialization of Untrusted Data vulnerability in Themify Themify Edmin allows Object Injection.This issue affects Them... |
| CVE-2025-31046 | MEDIUM | 4.3 | 0.2% | Jan 5, 2026 | Missing Authorization vulnerability in WPvibes AnyWhere Elementor Pro allows Exploiting Incorrectly Configured Access Co... |
| CVE-2025-31044 | HIGH | 8.5 | 0.2% | Jan 5, 2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AA-Team Premium SE... |
| CVE-2025-30633 | CRITICAL | 9.3 | 0.2% | Jan 5, 2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AA-Team Amazon Nat... |
| CVE-2025-13056 | MEDIUM | 4.8 | 0.2% | Jan 5, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Centreon In... |
| CVE-2025-12519 | MEDIUM | 5.3 | 0.2% | Jan 5, 2026 | Missing Authorization vulnerability in Centreon Infra Monitoring (Administration parameters API endpoint modules) allows... |
| CVE-2025-68766 | — | — | 0.2% | Jan 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: irqchip/mchp-eic: Fix error code in mchp_eic_domain... |
| CVE-2025-68765 | — | — | 0.2% | Jan 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: mt76: mt7615: Fix memory leak in mt7615_mcu_wtbl_st... |
| CVE-2025-68764 | HIGH | 7.8 | 0.2% | Jan 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: NFS: Automounted filesystems should inherit ro,noex... |
| CVE-2025-68763 | — | — | 0.2% | Jan 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: crypto: starfive - Correctly handle return of sg_ne... |
| CVE-2025-68762 | — | — | 0.2% | Jan 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: netpoll: initialize work queue before error ch... |
| CVE-2025-68761 | HIGH | 7.8 | 0.1% | Jan 5, 2026 | In the Linux kernel, the following vulnerability has been resolved: hfs: fix potential use after free in hfs_correct_ne... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now