2025 CVE Vulnerabilities
45,328 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-11442 | MEDIUM | 4.3 | 0.3% | Oct 8, 2025 | A security flaw has been discovered in JhumanJ OpnForm up to 1.9.3. The impacted element is an unknown function of the c... |
| CVE-2025-48464 | MEDIUM | 4.7 | 0.1% | Oct 8, 2025 | Successful exploitation of the vulnerability could allow an unauthenticated attacker to gain access to a victim’s Sync a... |
| CVE-2025-11440 | MEDIUM | 4.3 | 0.3% | Oct 8, 2025 | A vulnerability was determined in JhumanJ OpnForm up to 1.9.3. Impacted is an unknown function of the file /edit. Execut... |
| CVE-2025-11439 | MEDIUM | 4.3 | 0.3% | Oct 8, 2025 | A vulnerability was found in JhumanJ OpnForm up to 1.9.3. This issue affects some unknown processing of the file /show/i... |
| CVE-2025-11438 | MEDIUM | 6.3 | 0.3% | Oct 8, 2025 | A vulnerability has been found in JhumanJ OpnForm up to 1.9.3. This vulnerability affects unknown code of the file /cust... |
| CVE-2025-11437 | MEDIUM | 4.8 | 0.3% | Oct 8, 2025 | A flaw has been found in JhumanJ OpnForm up to 1.9.3. This affects an unknown part of the file /api/open/forms/ of the c... |
| CVE-2025-11435 | MEDIUM | 6.1 | 0.4% | Oct 8, 2025 | A security vulnerability has been detected in JhumanJ OpnForm up to 1.9.3. Affected by this vulnerability is an unknown ... |
| CVE-2025-11171 | MEDIUM | 5.3 | 0.3% | Oct 8, 2025 | The Chartify – WordPress Chart Plugin for WordPress is vulnerable to Missing Authentication for Critical Function in all... |
| CVE-2025-11433 | MEDIUM | 6.1 | 0.3% | Oct 8, 2025 | A security flaw has been discovered in itsourcecode Leave Management System 1.0. This impacts the function redirect of t... |
| CVE-2025-11425 | MEDIUM | 4.8 | 0.2% | Oct 8, 2025 | A vulnerability was identified in projectworlds Advanced Library Management System 1.0. Affected is an unknown function ... |
| CVE-2025-11421 | MEDIUM | 5.4 | 0.3% | Oct 8, 2025 | A flaw has been found in code-projects Voting System 1.0. The affected element is an unknown function of the file /admin... |
| CVE-2025-61999 | MEDIUM | 4.8 | 0.2% | Oct 8, 2025 | OPEXUS FOIAXpress before 11.13.3.0 allows an administrative user to upload JavaScript or other content embedded in an SV... |
| CVE-2025-61998 | MEDIUM | 4.8 | 0.2% | Oct 8, 2025 | OPEXUS FOIAXpress before 11.13.3.0 allows an administrative user to inject JavaScript or other content as a URL within t... |
| CVE-2025-61997 | MEDIUM | 4.8 | 0.2% | Oct 8, 2025 | OPEXUS FOIAXpress before 11.13.3.0 allows an administrative user to inject JavaScript or other content within the Annual... |
| CVE-2025-61996 | MEDIUM | 4.8 | 0.2% | Oct 8, 2025 | OPEXUS FOIAXpress before 11.13.3.0 allows an administrative user to inject JavaScript or other content within the Annual... |
| CVE-2025-43822 | MEDIUM | 5.4 | 0.2% | Oct 7, 2025 | Multiple stored cross-site scripting (XSS) vulnerabilities in Liferay Portal 7.4.3.15 through 7.4.3.111, and Liferay DXP... |
| CVE-2025-11414 | MEDIUM | 5.5 | 0.2% | Oct 7, 2025 | A vulnerability was determined in GNU Binutils 2.45. Affected by this vulnerability is the function get_link_hash_entry ... |
| CVE-2025-43823 | MEDIUM | 5.4 | 0.2% | Oct 7, 2025 | Cross-site scripting (XSS) vulnerability in the Commerce Search Result widget in Liferay Portal 7.4.0 through 7.4.3.111,... |
| CVE-2025-11413 | MEDIUM | 5.5 | 0.2% | Oct 7, 2025 | A vulnerability was found in GNU Binutils 2.45. Affected is the function elf_link_add_object_symbols of the file bfd/elf... |
| CVE-2025-11412 | MEDIUM | 5.5 | 0.2% | Oct 7, 2025 | A vulnerability has been found in GNU Binutils 2.45. This impacts the function bfd_elf_gc_record_vtentry of the file bfd... |
| CVE-2025-44824 | MEDIUM | 6.5 | 2.7% | Oct 7, 2025 | Nagios Log Server before 2024R1.3.2 allows authenticated users (with read-only API access) to stop the Elasticsearch ser... |
| CVE-2025-43910 | MEDIUM | 4.4 | 0.1% | Oct 7, 2025 | Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.3.... |
| CVE-2025-36569 | MEDIUM | 6.7 | 0.5% | Oct 7, 2025 | Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.1.... |
| CVE-2025-36567 | MEDIUM | 6.7 | 0.6% | Oct 7, 2025 | Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.1.... |
| CVE-2025-36566 | MEDIUM | 6.7 | 0.6% | Oct 7, 2025 | Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.1.... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now