2025 CVE Vulnerabilities
45,326 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-11647 | MEDIUM | 6.8 | 0.5% | Oct 12, 2025 | A flaw has been found in Tomofun Furbo 360 and Furbo Mini. This issue affects some unknown processing of the component G... |
| CVE-2025-11644 | MEDIUM | 4.2 | 0.3% | Oct 12, 2025 | A weakness has been identified in Tomofun Furbo 360 and Furbo Mini. Affected by this issue is some unknown functionality... |
| CVE-2025-11642 | MEDIUM | 4.1 | 0.1% | Oct 12, 2025 | A vulnerability was identified in Tomofun Furbo 360 and Furbo Mini. Affected is an unknown function of the component Reg... |
| CVE-2025-11641 | MEDIUM | 6.4 | 0.2% | Oct 12, 2025 | A vulnerability was determined in Tomofun Furbo 360 and Furbo Mini. This impacts an unknown function of the component Tr... |
| CVE-2025-11640 | MEDIUM | 5.3 | 0.2% | Oct 12, 2025 | A vulnerability was found in Tomofun Furbo 360 and Furbo Mini. This affects an unknown function of the component Bluetoo... |
| CVE-2025-11639 | MEDIUM | 5.5 | 0.2% | Oct 12, 2025 | A vulnerability has been found in Tomofun Furbo 360 and Furbo Mini. The impacted element is an unknown function of the f... |
| CVE-2025-11638 | MEDIUM | 6.5 | 0.3% | Oct 12, 2025 | A flaw has been found in Tomofun Furbo 360 and Furbo Mini. The affected element is an unknown function of the component ... |
| CVE-2025-33096 | MEDIUM | 6.5 | 0.3% | Oct 12, 2025 | IBM Engineering Requirements Management Doors Next 7.0.2, 7.0.3, and 7.1 could allow an authenticated user to cause a de... |
| CVE-2025-2140 | MEDIUM | 5.7 | 0.1% | Oct 12, 2025 | IBM Engineering Requirements Management Doors Next 7.0.2, 7.0.3, and 7.1 could allow an authenticated user on the networ... |
| CVE-2025-11635 | MEDIUM | 6.5 | 0.4% | Oct 12, 2025 | A weakness has been identified in Tomofun Furbo 360 up to FB0035_FW_036. This vulnerability affects unknown code of the ... |
| CVE-2025-11634 | MEDIUM | 4.6 | 0.2% | Oct 12, 2025 | A security flaw has been discovered in Tomofun Furbo 360 and Furbo Mini. This affects an unknown part of the component U... |
| CVE-2025-11633 | MEDIUM | 5.9 | 0.2% | Oct 12, 2025 | A vulnerability was identified in Tomofun Furbo 360 and Furbo Mini. Affected by this issue is the function upload_file_t... |
| CVE-2025-52615 | MEDIUM | 5.3 | 0.2% | Oct 12, 2025 | HCL Unica Platform is impacted by misconfigured security related HTTP headers. This can lead to less secure browser def... |
| CVE-2025-52614 | MEDIUM | 4.3 | 0.1% | Oct 12, 2025 | HCL Unica Platform is affected by a Cookie without HTTPOnly Flag Set vulnerability. A malicious agent may be able to in... |
| CVE-2025-31969 | MEDIUM | 6.1 | 0.1% | Oct 12, 2025 | HCL Unica Platform is impacted by misconfigured Content Security Policy (CSP). These can result in malicious resources ... |
| CVE-2025-31992 | MEDIUM | 4.6 | 0.2% | Oct 12, 2025 | HCL Unica MaxAI Assistant is susceptible to a HTML injection vulnerability. An attacker could insert special characters... |
| CVE-2025-11628 | MEDIUM | 4.7 | 0.2% | Oct 12, 2025 | A flaw has been found in jimit105 Project-Online-Shopping-Website up to 7d892f442bd8a96dd242dbe2b9bd5ed641e13e64. This a... |
| CVE-2025-11606 | MEDIUM | 6.3 | 0.2% | Oct 11, 2025 | A security flaw has been discovered in iPynch Social Network Website up to b6933b6d7f82c84819abe458ccf0e59d61119541. The... |
| CVE-2025-9975 | MEDIUM | 6.8 | 0.3% | Oct 11, 2025 | The WP Scraper plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 5... |
| CVE-2025-9950 | MEDIUM | 4.9 | 0.7% | Oct 11, 2025 | The Error Log Viewer by BestWebSoft plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and... |
| CVE-2025-9947 | MEDIUM | 4.9 | 0.3% | Oct 11, 2025 | The Custom 404 Pro plugin for WordPress is vulnerable to time-based SQL Injection via the ‘path’ parameter in all versio... |
| CVE-2025-9626 | MEDIUM | 4.3 | 0.2% | Oct 11, 2025 | The Page Blocks plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1... |
| CVE-2025-9621 | MEDIUM | 4.3 | 0.1% | Oct 11, 2025 | The WidgetPack Comment System plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, an... |
| CVE-2025-8682 | MEDIUM | 4.3 | 0.2% | Oct 11, 2025 | The Newsup theme for WordPress is vulnerable to unauthorized plugin installation due to a missing capability check on th... |
| CVE-2025-8484 | MEDIUM | 5.3 | 0.3% | Oct 11, 2025 | The Code Quality Control Tool plugin for WordPress is vulnerable to Sensitive Information Exposure in version 2.1 throug... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now