2025 CVE Vulnerabilities

45,168 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-14812HIGH7.5ArcSearch for iOS versions prior to 1.45.2 could display a different domain in the address bar than the content being sh...
CVE-2025-14809HIGH7.4ArcSearch for Android versions prior to 1.12.6 could display a different domain in the address bar than the content bein...
CVE-2025-67442HIGH7.6EVE-NG 6.4.0-13-PRO is vulnerable to Directory Traversal. The /api/export interface allows authenticated users to export...
CVE-2025-67048Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67039. Reason: This record is a reservation duplicate ...
CVE-2025-67047Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67036. Reason: This record is a reservation duplicate ...
CVE-2025-67046Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67037. Reason: This record is a reservation duplicate ...
CVE-2025-67045Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67041. Reason: This record is a reservation duplicate ...
CVE-2025-67044Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67035. Reason: This record is a reservation duplicate ...
CVE-2025-67043Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67038. Reason: This record is a reservation duplicate ...
CVE-2025-66906MEDIUM6.1Cross Site Request Forgery (CSRF) vulnerability in Turms Admin API thru v0.10.0-SNAPSHOT allows attackers to gain escala...
CVE-2025-66905HIGH7.5The Takes web framework's TkFiles take thru 2.0-SNAPSHOT fails to canonicalize HTTP request paths before resolving them ...
CVE-2025-53922MEDIUM4.9Galette is a membership management web application for non profit organizations. Starting in version 1.1.4 and prior to ...
CVE-2025-34433CRITICAL9.3AVideo versions 14.3.1 prior to 20.1 contain an unauthenticated remote code execution vulnerability caused by predictabl...
CVE-2025-14954MEDIUM5.9A vulnerability has been found in Open5GS up to 2.7.6. Affected is the function ogs_pfcp_pdr_find_or_add/ogs_pfcp_far_fi...
CVE-2025-14953MEDIUM5.3A flaw has been found in Open5GS up to 2.7.5. This impacts the function ogs_pfcp_handle_create_pdr in the library lib/pf...
CVE-2025-66911MEDIUM6.5Turms IM Server v0.10.0-SNAPSHOT and earlier contains a broken access control vulnerability in the user online status qu...
CVE-2025-66910MEDIUM6Turms Server v0.10.0-SNAPSHOT and earlier contains a plaintext password storage vulnerability in the administrator authe...
CVE-2025-66909HIGH7.5Turms AI-Serving module v0.10.0-SNAPSHOT and earlier contains an image decompression bomb denial of service vulnerabilit...
CVE-2025-66908MEDIUM5.3Turms AI-Serving module v0.10.0-SNAPSHOT and earlier contains an improper file type validation vulnerability in the OCR ...
CVE-2025-50681HIGH7.5igmpproxy 0.4 before commit 2b30c36 allows remote attackers to cause a denial of service (application crash) via a craft...
CVE-2025-14952CRITICAL9.8A vulnerability was detected in Campcodes Supplier Management System 1.0. This affects an unknown function of the file /...
CVE-2025-14951CRITICAL9.8A security vulnerability has been detected in code-projects Scholars Tracking System 1.0. The impacted element is an unk...
CVE-2025-14950CRITICAL9.8A weakness has been identified in code-projects Scholars Tracking System 1.0. The affected element is an unknown functio...
CVE-2025-1928CRITICAL9.1Improper Restriction of Excessive Authentication Attempts vulnerability in Restajet Information Technologies Inc. Online...
CVE-2025-14946MEDIUM4.8A flaw was found in libnbd. A malicious actor could exploit this by convincing libnbd to open a specially crafted Unifor...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now