2025 CVE Vulnerabilities

45,146 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-62781MEDIUM5PILOS (Platform for Interactive Live-Online Seminars) is a frontend for BigBlueButton. Prior to 4.8.0, users with a loca...
CVE-2025-62779MEDIUM5.4Frappe Learning is a learning system that helps users structure their content. In Frappe Learning 2.39.1 and earlier, us...
CVE-2025-62778MEDIUM5.3Frappe Learning is a learning management system. A security issue was identified in Frappe Learning 2.39.1 and earlier, ...
CVE-2025-62261MEDIUM6.5Liferay Portal 7.4.0 through 7.4.3.99, and older unsupported versions, and Liferay DXP 2023.Q3.1 through 2023.Q3.4, 7.4 ...
CVE-2025-12330MEDIUM4.8A security flaw has been discovered in Willow CMS up to 1.4.0. This issue affects some unknown processing of the file /a...
CVE-2025-12329MEDIUM6.5A security flaw has been discovered in shawon100 RUET OJ up to 18fa45b0a669fa1098a0b8fc629cf6856369d9a5. The affected el...
CVE-2025-12328MEDIUM6.5A vulnerability was identified in shawon100 RUET OJ up to 18fa45b0a669fa1098a0b8fc629cf6856369d9a5. Impacted is an unkno...
CVE-2025-62784MEDIUM5.3InventoryGui is a library for creating chest GUIs for Bukkit/Spigot plugins. Versions before 1.6.5 contain a vulnerabili...
CVE-2025-62783MEDIUM4.3InventoryGui is a library for creating chest GUIs for Bukkit/Spigot plugins. Versions 1.6.1-SNAPSHOT and earlier contain...
CVE-2025-62782MEDIUM5.3InventoryGui is a library for creating chest GUIs for Bukkit/Spigot plugins. Versions 1.6.3-SNAPSHOT and earlier contain...
CVE-2025-62524MEDIUM5.3PILOS (Platform for Interactive Live-Online Seminars) is a frontend for BigBlueButton. PILOS before 4.8.0 exposes the PH...
CVE-2025-62523MEDIUM6.3PILOS (Platform for Interactive Live-Online Seminars) is a frontend for BigBlueButton. PILOS before 4.8.0 includes a Cro...
CVE-2025-62262MEDIUM4.4Information exposure through log file vulnerability in LDAP import feature in Liferay Portal 7.4.0 through 7.4.3.97, and...
CVE-2025-12327MEDIUM6.5A vulnerability was determined in shawon100 RUET OJ up to 18fa45b0a669fa1098a0b8fc629cf6856369d9a5. This issue affects s...
CVE-2025-62594MEDIUM5.5ImageMagick is a software suite to create, edit, compose, or convert bitmap images. ImageMagick versions prior to 7.1.2-...
CVE-2025-62263MEDIUM5.4Multiple cross-site scripting (XSS) vulnerabilities in Liferay Portal 7.3.7 through 7.4.3.103, and Liferay DXP 2023.Q3.1...
CVE-2025-12312MEDIUM4.8A flaw has been found in PHPGurukul Curfew e-Pass Management System 1.0. Impacted is an unknown function of the file vie...
CVE-2025-12311MEDIUM4.8A vulnerability was detected in PHPGurukul Curfew e-Pass Management System 1.0. This issue affects some unknown processi...
CVE-2025-12310MEDIUM5.5A security vulnerability has been detected in VirtFusion up to 6.0.2. This vulnerability affects unknown code of the fil...
CVE-2025-62253MEDIUM6.1Open redirect vulnerability in page administration in Liferay Portal 7.4.0 through 7.4.3.97, and older unsupported versi...
CVE-2025-53533MEDIUM6.1Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level advertisement and internet tracker bloc...
CVE-2025-46602MEDIUM5.5Dell SupportAssist OS Recovery, versions prior to 5.5.15.0, contain an Insertion of Sensitive Information into Externall...
CVE-2025-36170MEDIUM5.4IBM QRadar SIEM 7.5 through 7.5.0 Update Pack 13 Independent Fix 02 is vulnerable to stored cross-site scripting. This v...
CVE-2025-36138MEDIUM5.4IBM QRadar SIEM 7.5 through 7.5.0 Update Pack 13 Independent Fix 02 is vulnerable to stored cross-site scripting. This v...
CVE-2025-32785MEDIUM5.4Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level advertisement and internet tracker bloc...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now