2025 CVE Vulnerabilities

45,326 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-11647MEDIUM6.8A flaw has been found in Tomofun Furbo 360 and Furbo Mini. This issue affects some unknown processing of the component G...
CVE-2025-11644MEDIUM4.2A weakness has been identified in Tomofun Furbo 360 and Furbo Mini. Affected by this issue is some unknown functionality...
CVE-2025-11642MEDIUM4.1A vulnerability was identified in Tomofun Furbo 360 and Furbo Mini. Affected is an unknown function of the component Reg...
CVE-2025-11641MEDIUM6.4A vulnerability was determined in Tomofun Furbo 360 and Furbo Mini. This impacts an unknown function of the component Tr...
CVE-2025-11640MEDIUM5.3A vulnerability was found in Tomofun Furbo 360 and Furbo Mini. This affects an unknown function of the component Bluetoo...
CVE-2025-11639MEDIUM5.5A vulnerability has been found in Tomofun Furbo 360 and Furbo Mini. The impacted element is an unknown function of the f...
CVE-2025-11638MEDIUM6.5A flaw has been found in Tomofun Furbo 360 and Furbo Mini. The affected element is an unknown function of the component ...
CVE-2025-33096MEDIUM6.5IBM Engineering Requirements Management Doors Next 7.0.2, 7.0.3, and 7.1 could allow an authenticated user to cause a de...
CVE-2025-2140MEDIUM5.7IBM Engineering Requirements Management Doors Next 7.0.2, 7.0.3, and 7.1 could allow an authenticated user on the networ...
CVE-2025-11635MEDIUM6.5A weakness has been identified in Tomofun Furbo 360 up to FB0035_FW_036. This vulnerability affects unknown code of the ...
CVE-2025-11634MEDIUM4.6A security flaw has been discovered in Tomofun Furbo 360 and Furbo Mini. This affects an unknown part of the component U...
CVE-2025-11633MEDIUM5.9A vulnerability was identified in Tomofun Furbo 360 and Furbo Mini. Affected by this issue is the function upload_file_t...
CVE-2025-52615MEDIUM5.3HCL Unica Platform is impacted by misconfigured security related HTTP headers. This can lead to less secure browser def...
CVE-2025-52614MEDIUM4.3HCL Unica Platform is affected by a Cookie without HTTPOnly Flag Set vulnerability. A malicious agent may be able to in...
CVE-2025-31969MEDIUM6.1HCL Unica Platform is impacted by misconfigured Content Security Policy (CSP). These can result in malicious resources ...
CVE-2025-31992MEDIUM4.6HCL Unica MaxAI Assistant is susceptible to a HTML injection vulnerability. An attacker could insert special characters...
CVE-2025-11628MEDIUM4.7A flaw has been found in jimit105 Project-Online-Shopping-Website up to 7d892f442bd8a96dd242dbe2b9bd5ed641e13e64. This a...
CVE-2025-11606MEDIUM6.3A security flaw has been discovered in iPynch Social Network Website up to b6933b6d7f82c84819abe458ccf0e59d61119541. The...
CVE-2025-9975MEDIUM6.8The WP Scraper plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 5...
CVE-2025-9950MEDIUM4.9The Error Log Viewer by BestWebSoft plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and...
CVE-2025-9947MEDIUM4.9The Custom 404 Pro plugin for WordPress is vulnerable to time-based SQL Injection via the ‘path’ parameter in all versio...
CVE-2025-9626MEDIUM4.3The Page Blocks plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1...
CVE-2025-9621MEDIUM4.3The WidgetPack Comment System plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, an...
CVE-2025-8682MEDIUM4.3The Newsup theme for WordPress is vulnerable to unauthorized plugin installation due to a missing capability check on th...
CVE-2025-8484MEDIUM5.3The Code Quality Control Tool plugin for WordPress is vulnerable to Sensitive Information Exposure in version 2.1 throug...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now