2025 CVE Vulnerabilities
45,153 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-10278 | HIGH | 8.8 | 0.3% | Sep 12, 2025 | A flaw has been found in YunaiV ruoyi-vue-pro up to 2025.09. Impacted is an unknown function of the file /crm/contact/tr... |
| CVE-2025-10277 | HIGH | 8.8 | 0.3% | Sep 12, 2025 | A vulnerability was detected in YunaiV yudao-cloud up to 2025.09. This issue affects some unknown processing of the file... |
| CVE-2025-10276 | HIGH | 8.8 | 0.3% | Sep 12, 2025 | A security vulnerability has been detected in YunaiV ruoyi-vue-pro up to 2025.09. This vulnerability affects unknown cod... |
| CVE-2025-10269 | HIGH | 7.5 | 0.5% | Sep 12, 2025 | The Spirit Framework plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.... |
| CVE-2025-9807 | HIGH | 7.5 | 0.3% | Sep 12, 2025 | The The Events Calendar plugin for WordPress is vulnerable to time-based SQL Injection via the ‘s’ parameter in all vers... |
| CVE-2025-58754 | HIGH | 7.5 | 1.1% | Sep 12, 2025 | Axios is a promise based HTTP client for the browser and Node.js. When Axios starting in version 0.28.0 and prior to ver... |
| CVE-2025-10275 | HIGH | 8.8 | 0.3% | Sep 12, 2025 | A weakness has been identified in YunaiV yudao-cloud up to 2025.09. This affects an unknown part of the file /crm/busine... |
| CVE-2025-9319 | HIGH | 7.5 | 0.2% | Sep 11, 2025 | A potential vulnerability was reported in the Lenovo Wallpaper Client that could allow arbitrary code execution under ce... |
| CVE-2025-9201 | HIGH | 8.5 | 0.2% | Sep 11, 2025 | A potential DLL hijacking vulnerability was discovered in Lenovo Browser during an internal security assessment that cou... |
| CVE-2025-8557 | HIGH | 8.8 | 0.2% | Sep 11, 2025 | An internal product security audit of Lenovo XClarity Orchestrator (LXCO) discovered the below vulnerability: An attack... |
| CVE-2025-8061 | HIGH | 7.3 | 0.4% | Sep 11, 2025 | A potential insufficient access control vulnerability was reported in the Lenovo Dispatcher 3.0 and Dispatcher 3.1 drive... |
| CVE-2025-59055 | HIGH | 7.2 | 0.4% | Sep 11, 2025 | InstantCMS is a free and open source content management system. A blind Server-Side Request Forgery (SSRF) vulnerability... |
| CVE-2025-58060 | HIGH | 8 | 1.0% | Sep 11, 2025 | OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.12 ... |
| CVE-2025-43790 | HIGH | 8.1 | 0.3% | Sep 11, 2025 | Insecure Direct Object Reference (IDOR) vulnerability in Liferay Portal 7.4.0 through 7.4.3.124, and Liferay DXP 2024.Q2... |
| CVE-2025-39790 | HIGH | 7.8 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: Detect events pointing to unexpecte... |
| CVE-2025-39788 | HIGH | 7.8 | 0.2% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: exynos: Fix programming of HCI_UTRL_NEXU... |
| CVE-2025-39786 | HIGH | 7.1 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: iio: adc: ad7173: fix channels index for syscalib_m... |
| CVE-2025-39783 | HIGH | 7.8 | 0.2% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Fix configfs group list head handlin... |
| CVE-2025-39776 | HIGH | 7.8 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm/debug_vm_pgtable: clear page table entries at de... |
| CVE-2025-39766 | HIGH | 7.8 | 0.2% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: net/sched: Make cake_enqueue return NET_XMIT_CN whe... |
| CVE-2025-39761 | HIGH | 7.1 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Decrement TID on RX peer frag setup e... |
| CVE-2025-39760 | HIGH | 7.1 | 0.2% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: usb: core: config: Prevent OOB read in SS endpoint ... |
| CVE-2025-39759 | HIGH | 7 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: btrfs: qgroup: fix race between quota disable and q... |
| CVE-2025-39757 | HIGH | 7.1 | 0.2% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Validate UAC3 cluster segment desc... |
| CVE-2025-39750 | HIGH | 7.1 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Correct tid cleanup when tid setup fa... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now