2025 CVE Vulnerabilities
45,325 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-62248 | MEDIUM | 4.8 | 0.2% | Oct 22, 2025 | A reflected cross-site scripting (XSS) vulnerability, resulting from a regression, has been identified in Liferay Porta... |
| CVE-2025-58712 | MEDIUM | 6.4 | 0.2% | Oct 22, 2025 | A container privilege escalation flaw was found in certain AMQ Broker images. This issue stems from the /etc/passwd file... |
| CVE-2025-24934 | MEDIUM | 5.4 | 0.2% | Oct 22, 2025 | Software which sets SO_REUSEPORT_LB on a socket and then connects it to a host will not directly observe any problems. ... |
| CVE-2025-22178 | MEDIUM | 4.3 | 0.2% | Oct 22, 2025 | Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected endpoints that disclose a... |
| CVE-2025-22177 | MEDIUM | 4.3 | 0.2% | Oct 22, 2025 | Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected endpoints that disclose a... |
| CVE-2025-22176 | MEDIUM | 4.3 | 0.2% | Oct 22, 2025 | Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected endpoints that disclose a... |
| CVE-2025-22175 | MEDIUM | 5.4 | 0.2% | Oct 22, 2025 | Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected endpoints that disclose a... |
| CVE-2025-22174 | MEDIUM | 4.3 | 0.2% | Oct 22, 2025 | Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected endpoints that disclose a... |
| CVE-2025-22173 | MEDIUM | 4.3 | 0.2% | Oct 22, 2025 | Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected endpoints that disclose a... |
| CVE-2025-22172 | MEDIUM | 4.3 | 0.2% | Oct 22, 2025 | Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected endpoints that disclose a... |
| CVE-2025-22171 | MEDIUM | 4.3 | 0.2% | Oct 22, 2025 | Jira Align is vulnerable to an authorization issue. A low-privilege user is able to alter the private checklists of othe... |
| CVE-2025-22170 | MEDIUM | 4.3 | 0.2% | Oct 22, 2025 | Jira Align is vulnerable to an authorization issue. A low-privilege user without sufficient privileges to perform an act... |
| CVE-2025-22169 | MEDIUM | 5.4 | 0.2% | Oct 22, 2025 | Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected endpoints that disclose a... |
| CVE-2025-22168 | MEDIUM | 4.3 | 0.2% | Oct 22, 2025 | Jira Align is vulnerable to an authorization issue. A low-privilege user can access unexpected endpoints that disclose a... |
| CVE-2025-11958 | MEDIUM | 5.1 | 0.4% | Oct 22, 2025 | An improper input validation in the Security Dashboard ignored-tasks API of Devolutions Server 2025.2.15.0 and earlier a... |
| CVE-2025-62607 | MEDIUM | 5.3 | 0.3% | Oct 22, 2025 | Nautobot Single Source of Truth (SSoT) is an app for Nautobot. Prior to version 3.10.0, an unauthenticated attacker coul... |
| CVE-2025-23299 | MEDIUM | 6.7 | 0.2% | Oct 22, 2025 | NVIDIA Bluefield and ConnectX contain a vulnerability in the management interface that could allow a malicious actor wit... |
| CVE-2025-62073 | MEDIUM | 4.3 | 0.2% | Oct 22, 2025 | Missing Authorization vulnerability in Sovlix MeetingHub meetinghub.This issue affects MeetingHub: from n/a through <= 1... |
| CVE-2025-62072 | MEDIUM | 4.3 | 0.2% | Oct 22, 2025 | Missing Authorization vulnerability in Rustaurius Front End Users front-end-only-users.This issue affects Front End User... |
| CVE-2025-62071 | MEDIUM | 4.3 | 0.2% | Oct 22, 2025 | Missing Authorization vulnerability in Repuso Social proof testimonials and reviews by Repuso social-testimonials-and-re... |
| CVE-2025-62070 | MEDIUM | 4.3 | 0.2% | Oct 22, 2025 | Missing Authorization vulnerability in WPXPO WowRevenue revenue.This issue affects WowRevenue: from n/a through <= 1.2.1... |
| CVE-2025-62069 | MEDIUM | 6.5 | 0.2% | Oct 22, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RealMag777 MDTF wp... |
| CVE-2025-62068 | MEDIUM | 6.5 | 0.2% | Oct 22, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in E2Pdf e2pdf e2pdf.... |
| CVE-2025-62063 | MEDIUM | 6.5 | 0.2% | Oct 22, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Travel WP Trave... |
| CVE-2025-62062 | MEDIUM | 5.5 | 0.2% | Oct 22, 2025 | Insertion of Sensitive Information Into Sent Data vulnerability in ThemeRuby Easy Post Submission easy-post-submission a... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now