2025 CVE Vulnerabilities
45,327 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-56426 | MEDIUM | 6.5 | 0.4% | Oct 9, 2025 | An issue WebKul Bagisto v.2.3.6 allows a remote attacker to execute arbitrary code via the Cart/Checkout API endpoint, s... |
| CVE-2025-10282 | MEDIUM | 4.7 | 0.2% | Oct 9, 2025 | BBOT's gitlab module could be abused to disclose a GitLab API key to an attacker controlled server with a malicious form... |
| CVE-2025-10281 | MEDIUM | 4.7 | 0.2% | Oct 9, 2025 | BBOT's git_clone module could be abused to disclose a GitHub API key to an attacker controlled server with a malicious f... |
| CVE-2025-39664 | MEDIUM | 6.5 | 0.6% | Oct 9, 2025 | Insufficient escaping in the report scheduler within Checkmk <2.4.0p13, <2.3.0p38, <2.2.0p46 and 2.1.0 (EOL) allows auth... |
| CVE-2025-32916 | MEDIUM | 4.3 | 0.2% | Oct 9, 2025 | Potential use of sensitive information in GET requests in Checkmk GmbH's Checkmk versions <2.4.0p13, <2.3.0p38, <2.2.0p4... |
| CVE-2025-36225 | MEDIUM | 4.3 | 0.2% | Oct 9, 2025 | IBM Aspera 5.0.0 through 5.0.13.1 could disclose sensitive user information from the system to an authenticated user d... |
| CVE-2025-36171 | MEDIUM | 4.9 | 0.3% | Oct 9, 2025 | IBM Aspera Faspex 5.0.0 through 5.0.13.1 could allow a privileged user to cause a denial of service from improperly vali... |
| CVE-2025-39961 | MEDIUM | 4.7 | 0.1% | Oct 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: iommu/amd/pgtbl: Fix possible race while increase p... |
| CVE-2025-9371 | MEDIUM | 6.4 | 0.2% | Oct 9, 2025 | The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘page_title’ parameter in all versi... |
| CVE-2025-2934 | MEDIUM | 6.5 | 0.5% | Oct 9, 2025 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 5.2 prior to 18.2.8, 18.3 prior to 18.3.4, an... |
| CVE-2025-10249 | MEDIUM | 6.5 | 0.3% | Oct 9, 2025 | The Slider Revolution plugin for WordPress is vulnerable to unauthorized access and modification of data due to a missin... |
| CVE-2025-39959 | MEDIUM | 5.5 | 0.1% | Oct 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: ASoC: amd: acp: Fix incorrect retrival of acp_chip_... |
| CVE-2025-39956 | MEDIUM | 5.5 | 0.2% | Oct 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: igc: don't fail igc_probe() on LED setup error Whe... |
| CVE-2025-39954 | MEDIUM | 5.5 | 0.1% | Oct 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: clk: sunxi-ng: mp: Fix dual-divider clock rate read... |
| CVE-2025-27049 | MEDIUM | 5.5 | 0.1% | Oct 9, 2025 | Transient DOS while processing IOCTL call for image encoding. |
| CVE-2025-27045 | MEDIUM | 6.1 | 0.1% | Oct 9, 2025 | Information disclosure while processing batch command execution in Video driver. |
| CVE-2025-27041 | MEDIUM | 5.5 | 0.1% | Oct 9, 2025 | Transient DOS while processing video packets received from video firmware. |
| CVE-2025-27040 | MEDIUM | 6.5 | 0.1% | Oct 9, 2025 | Information disclosure may occur while processing the hypervisor log. |
| CVE-2025-27039 | MEDIUM | 6.6 | 0.1% | Oct 9, 2025 | Memory corruption may occur while processing IOCTL call for DMM/WARPNCC CONFIG request. |
| CVE-2025-11166 | MEDIUM | 5.4 | 0.2% | Oct 9, 2025 | The WP Go Maps (formerly WP Google Maps) plugin for WordPress is vulnerable to Cross-Site Request Forgery (CSRF) in all ... |
| CVE-2025-11512 | MEDIUM | 6.1 | 0.4% | Oct 9, 2025 | A vulnerability was found in code-projects Voting System 1.0. Affected by this issue is some unknown functionality of th... |
| CVE-2025-11495 | MEDIUM | 5.5 | 0.2% | Oct 8, 2025 | A vulnerability was determined in GNU Binutils 2.45. The affected element is the function elf_x86_64_relocate_section of... |
| CVE-2025-11494 | MEDIUM | 5.5 | 0.2% | Oct 8, 2025 | A vulnerability was found in GNU Binutils 2.45. Impacted is the function _bfd_x86_elf_late_size_sections of the file bfd... |
| CVE-2025-61906 | MEDIUM | 4.3 | 0.3% | Oct 8, 2025 | Opencast is a free, open-source platform to support the management of educational audio and video content. Prior to Open... |
| CVE-2025-61788 | MEDIUM | 5.4 | 0.2% | Oct 8, 2025 | Opencast is a free, open-source platform to support the management of educational audio and video content. Prior to Open... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now