2025 CVE Vulnerabilities
45,150 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-15458 | CRITICAL | 9.8 | 0.5% | Jan 5, 2026 | A vulnerability was determined in bg5sbk MiniCMS up to 1.8. This affects an unknown function of the file /mc-admin/post-... |
| CVE-2025-15457 | CRITICAL | 9.8 | 0.5% | Jan 5, 2026 | A vulnerability was found in bg5sbk MiniCMS up to 1.8. The impacted element is an unknown function of the file /minicms/... |
| CVE-2025-15456 | HIGH | 7.5 | 0.4% | Jan 5, 2026 | A vulnerability has been found in bg5sbk MiniCMS up to 1.8. The affected element is an unknown function of the file /mc-... |
| CVE-2025-15455 | MEDIUM | 6.5 | 0.6% | Jan 5, 2026 | A flaw has been found in bg5sbk MiniCMS up to 1.8. Impacted is the function delete_page of the file /minicms/mc-admin/pa... |
| CVE-2025-15454 | LOW | 3.1 | 0.3% | Jan 5, 2026 | A vulnerability was detected in zhanglun lettura up to 0.1.22. This issue affects some unknown processing of the file sr... |
| CVE-2025-15453 | MEDIUM | 6.3 | 0.3% | Jan 5, 2026 | A security vulnerability has been detected in milvus up to 2.6.7. This vulnerability affects the function expr.Exec of t... |
| CVE-2025-15452 | MEDIUM | 4.8 | 0.2% | Jan 5, 2026 | A weakness has been identified in xnx3 wangmarket up to 4.9. This affects the function variableList of the file /admin/s... |
| CVE-2025-15451 | MEDIUM | 4.8 | 0.2% | Jan 5, 2026 | A security flaw has been discovered in xnx3 wangmarket up to 4.9. Affected by this issue is some unknown functionality o... |
| CVE-2025-15450 | MEDIUM | 6.3 | 0.3% | Jan 5, 2026 | A vulnerability was identified in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. Affected by this v... |
| CVE-2025-5591 | MEDIUM | 5.4 | 0.1% | Jan 5, 2026 | Kentico Xperience 13 is vulnerable to a stored cross-site scripting attack via a form component, allowing an attacker to... |
| CVE-2025-15449 | CRITICAL | 9.1 | 0.6% | Jan 5, 2026 | A vulnerability was determined in cld378632668 JavaMall up to 994f1e2b019378ec9444cdf3fce2d5b5f72d28f0. Affected is the ... |
| CVE-2025-15448 | CRITICAL | 9.8 | 0.3% | Jan 5, 2026 | A vulnerability was found in cld378632668 JavaMall up to 994f1e2b019378ec9444cdf3fce2d5b5f72d28f0. This impacts the func... |
| CVE-2025-15447 | — | — | — | Jan 5, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn b... |
| CVE-2025-15446 | — | — | — | Jan 4, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn b... |
| CVE-2025-15443 | HIGH | 7.2 | 0.3% | Jan 4, 2026 | A vulnerability was identified in CRMEB up to 5.6.1. This issue affects some unknown processing of the file /adminapi/pr... |
| CVE-2025-15442 | HIGH | 7.2 | 0.3% | Jan 4, 2026 | A vulnerability was determined in CRMEB up to 5.6.1. This vulnerability affects unknown code of the file /adminapi/expor... |
| CVE-2025-14830 | MEDIUM | 4.9 | 0.2% | Jan 4, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in JFrog Artif... |
| CVE-2025-3660 | HIGH | 8.2 | 0.2% | Jan 4, 2026 | Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains a broken access control vulnerability that allows auth... |
| CVE-2025-3654 | CRITICAL | 9.8 | 0.2% | Jan 4, 2026 | Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an information disclosure vulnerability that allows un... |
| CVE-2025-3653 | CRITICAL | 9.8 | 0.2% | Jan 4, 2026 | Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an improper access control vulnerability that allows u... |
| CVE-2025-3652 | MEDIUM | 6.9 | 0.2% | Jan 4, 2026 | Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an information disclosure vulnerability that allows un... |
| CVE-2025-3646 | HIGH | 8.2 | 0.2% | Jan 4, 2026 | Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an authorization bypass vulnerability that allows unau... |
| CVE-2025-15115 | CRITICAL | 9.8 | 0.3% | Jan 4, 2026 | Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an authentication bypass vulnerability that allows una... |
| CVE-2025-64125 | CRITICAL | 9.4 | 0.2% | Jan 3, 2026 | A vulnerability in Nuvation Energy nCloud VPN Service allowed Network Boundary Bridging.This issue affected the nCloud V... |
| CVE-2025-64124 | HIGH | 8.8 | 0.9% | Jan 3, 2026 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Nuvation Ene... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now