2025 CVE Vulnerabilities

45,150 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-15458CRITICAL9.8A vulnerability was determined in bg5sbk MiniCMS up to 1.8. This affects an unknown function of the file /mc-admin/post-...
CVE-2025-15457CRITICAL9.8A vulnerability was found in bg5sbk MiniCMS up to 1.8. The impacted element is an unknown function of the file /minicms/...
CVE-2025-15456HIGH7.5A vulnerability has been found in bg5sbk MiniCMS up to 1.8. The affected element is an unknown function of the file /mc-...
CVE-2025-15455MEDIUM6.5A flaw has been found in bg5sbk MiniCMS up to 1.8. Impacted is the function delete_page of the file /minicms/mc-admin/pa...
CVE-2025-15454LOW3.1A vulnerability was detected in zhanglun lettura up to 0.1.22. This issue affects some unknown processing of the file sr...
CVE-2025-15453MEDIUM6.3A security vulnerability has been detected in milvus up to 2.6.7. This vulnerability affects the function expr.Exec of t...
CVE-2025-15452MEDIUM4.8A weakness has been identified in xnx3 wangmarket up to 4.9. This affects the function variableList of the file /admin/s...
CVE-2025-15451MEDIUM4.8A security flaw has been discovered in xnx3 wangmarket up to 4.9. Affected by this issue is some unknown functionality o...
CVE-2025-15450MEDIUM6.3A vulnerability was identified in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. Affected by this v...
CVE-2025-5591MEDIUM5.4Kentico Xperience 13 is vulnerable to a stored cross-site scripting attack via a form component, allowing an attacker to...
CVE-2025-15449CRITICAL9.1A vulnerability was determined in cld378632668 JavaMall up to 994f1e2b019378ec9444cdf3fce2d5b5f72d28f0. Affected is the ...
CVE-2025-15448CRITICAL9.8A vulnerability was found in cld378632668 JavaMall up to 994f1e2b019378ec9444cdf3fce2d5b5f72d28f0. This impacts the func...
CVE-2025-15447Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn b...
CVE-2025-15446Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn b...
CVE-2025-15443HIGH7.2A vulnerability was identified in CRMEB up to 5.6.1. This issue affects some unknown processing of the file /adminapi/pr...
CVE-2025-15442HIGH7.2A vulnerability was determined in CRMEB up to 5.6.1. This vulnerability affects unknown code of the file /adminapi/expor...
CVE-2025-14830MEDIUM4.9Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in JFrog Artif...
CVE-2025-3660HIGH8.2Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains a broken access control vulnerability that allows auth...
CVE-2025-3654CRITICAL9.8Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an information disclosure vulnerability that allows un...
CVE-2025-3653CRITICAL9.8Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an improper access control vulnerability that allows u...
CVE-2025-3652MEDIUM6.9Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an information disclosure vulnerability that allows un...
CVE-2025-3646HIGH8.2Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an authorization bypass vulnerability that allows unau...
CVE-2025-15115CRITICAL9.8Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an authentication bypass vulnerability that allows una...
CVE-2025-64125CRITICAL9.4A vulnerability in Nuvation Energy nCloud VPN Service allowed Network Boundary Bridging.This issue affected the nCloud V...
CVE-2025-64124HIGH8.8Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Nuvation Ene...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now