2025 CVE Vulnerabilities

45,327 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-56426MEDIUM6.5An issue WebKul Bagisto v.2.3.6 allows a remote attacker to execute arbitrary code via the Cart/Checkout API endpoint, s...
CVE-2025-10282MEDIUM4.7BBOT's gitlab module could be abused to disclose a GitLab API key to an attacker controlled server with a malicious form...
CVE-2025-10281MEDIUM4.7BBOT's git_clone module could be abused to disclose a GitHub API key to an attacker controlled server with a malicious f...
CVE-2025-39664MEDIUM6.5Insufficient escaping in the report scheduler within Checkmk <2.4.0p13, <2.3.0p38, <2.2.0p46 and 2.1.0 (EOL) allows auth...
CVE-2025-32916MEDIUM4.3Potential use of sensitive information in GET requests in Checkmk GmbH's Checkmk versions <2.4.0p13, <2.3.0p38, <2.2.0p4...
CVE-2025-36225MEDIUM4.3IBM Aspera 5.0.0 through 5.0.13.1 could disclose sensitive user information from the system to an authenticated user d...
CVE-2025-36171MEDIUM4.9IBM Aspera Faspex 5.0.0 through 5.0.13.1 could allow a privileged user to cause a denial of service from improperly vali...
CVE-2025-39961MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: iommu/amd/pgtbl: Fix possible race while increase p...
CVE-2025-9371MEDIUM6.4The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘page_title’ parameter in all versi...
CVE-2025-2934MEDIUM6.5GitLab has remediated an issue in GitLab CE/EE affecting all versions from 5.2 prior to 18.2.8, 18.3 prior to 18.3.4, an...
CVE-2025-10249MEDIUM6.5The Slider Revolution plugin for WordPress is vulnerable to unauthorized access and modification of data due to a missin...
CVE-2025-39959MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ASoC: amd: acp: Fix incorrect retrival of acp_chip_...
CVE-2025-39956MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: igc: don't fail igc_probe() on LED setup error Whe...
CVE-2025-39954MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: clk: sunxi-ng: mp: Fix dual-divider clock rate read...
CVE-2025-27049MEDIUM5.5Transient DOS while processing IOCTL call for image encoding.
CVE-2025-27045MEDIUM6.1Information disclosure while processing batch command execution in Video driver.
CVE-2025-27041MEDIUM5.5Transient DOS while processing video packets received from video firmware.
CVE-2025-27040MEDIUM6.5Information disclosure may occur while processing the hypervisor log.
CVE-2025-27039MEDIUM6.6Memory corruption may occur while processing IOCTL call for DMM/WARPNCC CONFIG request.
CVE-2025-11166MEDIUM5.4The WP Go Maps (formerly WP Google Maps) plugin for WordPress is vulnerable to Cross-Site Request Forgery (CSRF) in all ...
CVE-2025-11512MEDIUM6.1A vulnerability was found in code-projects Voting System 1.0. Affected by this issue is some unknown functionality of th...
CVE-2025-11495MEDIUM5.5A vulnerability was determined in GNU Binutils 2.45. The affected element is the function elf_x86_64_relocate_section of...
CVE-2025-11494MEDIUM5.5A vulnerability was found in GNU Binutils 2.45. Impacted is the function _bfd_x86_elf_late_size_sections of the file bfd...
CVE-2025-61906MEDIUM4.3Opencast is a free, open-source platform to support the management of educational audio and video content. Prior to Open...
CVE-2025-61788MEDIUM5.4Opencast is a free, open-source platform to support the management of educational audio and video content. Prior to Open...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now