2025 CVE Vulnerabilities
45,168 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-68481 | HIGH | 8.8 | 0.2% | Dec 19, 2025 | FastAPI Users allows users to quickly add a registration and authentication system to their FastAPI project. Prior to ve... |
| CVE-2025-67712 | MEDIUM | 4.7 | 0.3% | Dec 19, 2025 | There is an HTML injection issue in Esri ArcGIS Web AppBuilder developer edition versions prior to 2.30 that allows a re... |
| CVE-2025-14968 | CRITICAL | 9.8 | 0.3% | Dec 19, 2025 | A security flaw has been discovered in code-projects Simple Stock System 1.0. Affected by this issue is some unknown fun... |
| CVE-2025-14967 | CRITICAL | 9.8 | 0.3% | Dec 19, 2025 | A vulnerability was identified in itsourcecode Student Management System 1.0. Affected by this vulnerability is an unkno... |
| CVE-2025-14966 | HIGH | 7.2 | 0.3% | Dec 19, 2025 | A vulnerability was determined in FastAdmin up to 1.7.0.20250506. Affected is the function selectpage of the file applic... |
| CVE-2025-12874 | MEDIUM | 6.3 | 0.4% | Dec 19, 2025 | Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in Quest Coexistence Mana... |
| CVE-2025-14965 | MEDIUM | 5.5 | 0.3% | Dec 19, 2025 | A vulnerability was found in 1541492390c yougou-mall up to 0a771fa817c924efe52c8fe0a9a6658eee675f9f. This impacts the fu... |
| CVE-2025-14964 | CRITICAL | 9.8 | 0.9% | Dec 19, 2025 | A vulnerability has been found in TOTOLINK T10 4.1.8cu.5083_B20200521. This affects the function sprintf of the file /cg... |
| CVE-2025-14962 | MEDIUM | 6.1 | 0.3% | Dec 19, 2025 | A flaw has been found in code-projects Simple Stock System 1.0. The impacted element is an unknown function of the file ... |
| CVE-2025-14961 | CRITICAL | 9.8 | 0.3% | Dec 19, 2025 | A vulnerability was detected in code-projects Simple Blood Donor Management System 1.0. The affected element is an unkno... |
| CVE-2025-68478 | HIGH | 7.1 | 3.6% | Dec 19, 2025 | Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to version 1.7.0, if an arbitrary p... |
| CVE-2025-68430 | MEDIUM | 4.3 | 0.2% | Dec 19, 2025 | CVAT is an open source interactive video and image annotation tool for computer vision. In versions 2.8.1 through 2.52.0... |
| CVE-2025-14960 | CRITICAL | 9.8 | 0.3% | Dec 19, 2025 | A security vulnerability has been detected in code-projects Simple Blood Donor Management System 1.0. Impacted is an unk... |
| CVE-2025-14959 | CRITICAL | 9.8 | 0.3% | Dec 19, 2025 | A weakness has been identified in code-projects Simple Stock System 1.0. This issue affects some unknown processing of t... |
| CVE-2025-14958 | HIGH | 7.8 | 0.2% | Dec 19, 2025 | A security flaw has been discovered in floooh sokol up to 33e2271c431bf21de001e972f72da17a984da932. This vulnerability a... |
| CVE-2025-68477 | MEDIUM | 6.5 | 5.8% | Dec 19, 2025 | Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to version 1.7.0, Langflow provides... |
| CVE-2025-68457 | MEDIUM | 6.1 | 0.2% | Dec 19, 2025 | Orejime is a consent manager that focuses on accessibility. On HTML elements handled by Orejime prior to version 2.3.2, ... |
| CVE-2025-66580 | CRITICAL | 9.6 | 0.5% | Dec 19, 2025 | Dive is an open-source MCP Host Desktop Application that enables integration with function-calling LLMs. A critical Stor... |
| CVE-2025-65035 | MEDIUM | 6.4 | 0.3% | Dec 19, 2025 | pluginsGLPI's Database Inventory Plugin "manages" the Teclib' inventory agents in order to perform an inventory of the d... |
| CVE-2025-63665 | CRITICAL | 9.8 | 0.4% | Dec 19, 2025 | An issue in GT Edge AI Community Edition Versions before v2.0.12 allows attackers to execute arbitrary code via injectin... |
| CVE-2025-58053 | CRITICAL | 9.8 | 0.3% | Dec 19, 2025 | Galette is a membership management web application for non profit organizations. Prior to version 1.2.0, while updating ... |
| CVE-2025-58052 | HIGH | 8.1 | 0.3% | Dec 19, 2025 | Galette is a membership management web application for non profit organizations. Starting in version 0.9.6 and prior to ... |
| CVE-2025-14957 | MEDIUM | 5.5 | 0.2% | Dec 19, 2025 | A vulnerability was identified in WebAssembly Binaryen up to 125. This affects the function IRBuilder::makeLocalGet/IRBu... |
| CVE-2025-14956 | HIGH | 7.1 | 0.2% | Dec 19, 2025 | A vulnerability was determined in WebAssembly Binaryen up to 125. Affected by this issue is the function WasmBinaryReade... |
| CVE-2025-14955 | LOW | 3.7 | 0.5% | Dec 19, 2025 | A vulnerability was found in Open5GS up to 2.7.5. Affected by this vulnerability is the function ogs_pfcp_handle_create_... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now