2025 CVE Vulnerabilities

45,320 CVEs published in 2025.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2025-9301LOW3.3A vulnerability was determined in cmake 4.1.20250725-gb5cce23. This affects the function cmForEachFunctionBlocker::Repla...
CVE-2025-53971LOW3.8Mattermost versions 10.5.x <= 10.5.8, 9.11.x <= 9.11.17 fail to properly validate authorization for team scheme role mod...
CVE-2025-47700LOW3.5Mattermost Server versions 10.5.x <= 10.5.9 utilizing the Agents plugin fail to reject empty request bodies which allows...
CVE-2025-8448LOW1CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists that could cause unauthorized a...
CVE-2025-57733LOW3.8In JetBrains TeamCity before 2025.07.1 sMTP injection was possible allowing modification of email content
CVE-2025-9193LOW3.5A flaw has been found in TOTVS Portal Meu RH up to 12.1.17. Impacted is an unknown function of the component Password Re...
CVE-2025-9165LOW2.5A flaw has been found in LibTIFF 4.7.0. This affects the function _TIFFmallocExt/_TIFFCheckRealloc/TIFFHashSetNew/InitCC...
CVE-2025-9119LOW2.4A vulnerability was determined in Netis WF2419 1.2.29433. This vulnerability affects unknown code of the file /index.htm...
CVE-2025-54234LOW2.7ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerabil...
CVE-2025-3639LOW2Liferay Portal 7.3.0 through 7.4.3.132, and Liferay DXP 2025.Q1 through 2025.Q1.6, 2024.Q4.0 through 2024.Q4.7, 2024.Q3....
CVE-2025-43732LOW2.7Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025.Q1.0 through 2025.Q1.10, 2024.Q4.0 through 2024.Q4.7, 2024....
CVE-2025-9109LOW3.7A security flaw has been discovered in Portabilis i-Diario up to 1.5.0. Affected by this vulnerability is an unknown fun...
CVE-2025-9103LOW2.4A vulnerability was detected in ZenCart 2.1.0. Affected by this vulnerability is an unknown functionality of the compone...
CVE-2025-9100LOW3.7A security flaw has been discovered in zhenfeng13 My-Blog 1.0.0. This vulnerability affects unknown code of the file /bl...
CVE-2025-9096LOW3.5A vulnerability has been found in ExpressGateway express-gateway up to 1.16.10. Affected is an unknown function in the l...
CVE-2025-9095LOW3.5A flaw has been found in ExpressGateway express-gateway up to 1.16.10. This issue affects some unknown processing in the...
CVE-2025-9092LOW1Uncontrolled Resource Consumption vulnerability in Legion of the Bouncy Castle Inc. Bouncy Castle for Java - BC-FJA 2.1....
CVE-2025-55285LOW2.6@backstage/plugin-scaffolder-backend is the backend for the default Backstage software templates. Prior to version 2.1.1...
CVE-2025-8013LOW3.8The Quttera Web Malware Scanner plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to,...
CVE-2025-9005LOW3.7A vulnerability was determined in mtons mblog up to 3.5.0. Affected is an unknown function of the file /register. The ma...
CVE-2025-8961LOW3.3A weakness has been identified in LibTIFF 4.7.0. This affects the function main of the file tiffcrop.c of the component ...
CVE-2025-8713LOW3.1PostgreSQL optimizer statistics allow a user to read sampled data within a view that the user cannot access. Separately...
CVE-2025-5941LOW2Netskope is notified about a potential gap in its agent (NS Client) in which a malicious actor could trigger a memory le...
CVE-2025-55193LOW2.7Active Record connects classes to relational database tables. Prior to versions 7.1.5.2, 7.2.2.2, and 8.0.2.1, the ID pa...
CVE-2025-8927LOW3.7A vulnerability was determined in mtons mblog up to 3.5.0. Affected by this issue is some unknown functionality of the f...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now