2025 CVE Vulnerabilities

45,153 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-10278HIGH8.8A flaw has been found in YunaiV ruoyi-vue-pro up to 2025.09. Impacted is an unknown function of the file /crm/contact/tr...
CVE-2025-10277HIGH8.8A vulnerability was detected in YunaiV yudao-cloud up to 2025.09. This issue affects some unknown processing of the file...
CVE-2025-10276HIGH8.8A security vulnerability has been detected in YunaiV ruoyi-vue-pro up to 2025.09. This vulnerability affects unknown cod...
CVE-2025-10269HIGH7.5The Spirit Framework plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1....
CVE-2025-9807HIGH7.5The The Events Calendar plugin for WordPress is vulnerable to time-based SQL Injection via the ‘s’ parameter in all vers...
CVE-2025-58754HIGH7.5Axios is a promise based HTTP client for the browser and Node.js. When Axios starting in version 0.28.0 and prior to ver...
CVE-2025-10275HIGH8.8A weakness has been identified in YunaiV yudao-cloud up to 2025.09. This affects an unknown part of the file /crm/busine...
CVE-2025-9319HIGH7.5A potential vulnerability was reported in the Lenovo Wallpaper Client that could allow arbitrary code execution under ce...
CVE-2025-9201HIGH8.5A potential DLL hijacking vulnerability was discovered in Lenovo Browser during an internal security assessment that cou...
CVE-2025-8557HIGH8.8An internal product security audit of Lenovo XClarity Orchestrator (LXCO) discovered the below vulnerability: An attack...
CVE-2025-8061HIGH7.3A potential insufficient access control vulnerability was reported in the Lenovo Dispatcher 3.0 and Dispatcher 3.1 drive...
CVE-2025-59055HIGH7.2InstantCMS is a free and open source content management system. A blind Server-Side Request Forgery (SSRF) vulnerability...
CVE-2025-58060HIGH8OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.12 ...
CVE-2025-43790HIGH8.1Insecure Direct Object Reference (IDOR) vulnerability in Liferay Portal 7.4.0 through 7.4.3.124, and Liferay DXP 2024.Q2...
CVE-2025-39790HIGH7.8In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: Detect events pointing to unexpecte...
CVE-2025-39788HIGH7.8In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: exynos: Fix programming of HCI_UTRL_NEXU...
CVE-2025-39786HIGH7.1In the Linux kernel, the following vulnerability has been resolved: iio: adc: ad7173: fix channels index for syscalib_m...
CVE-2025-39783HIGH7.8In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Fix configfs group list head handlin...
CVE-2025-39776HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm/debug_vm_pgtable: clear page table entries at de...
CVE-2025-39766HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net/sched: Make cake_enqueue return NET_XMIT_CN whe...
CVE-2025-39761HIGH7.1In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Decrement TID on RX peer frag setup e...
CVE-2025-39760HIGH7.1In the Linux kernel, the following vulnerability has been resolved: usb: core: config: Prevent OOB read in SS endpoint ...
CVE-2025-39759HIGH7In the Linux kernel, the following vulnerability has been resolved: btrfs: qgroup: fix race between quota disable and q...
CVE-2025-39757HIGH7.1In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Validate UAC3 cluster segment desc...
CVE-2025-39750HIGH7.1In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Correct tid cleanup when tid setup fa...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now