2025 CVE Vulnerabilities

45,320 CVEs published in 2025.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2025-7554LOW2.4A vulnerability classified as problematic was found in Sapido RB-1802 1.0.32. This vulnerability affects unknown code of...
CVE-2025-7453LOW3.7A vulnerability was found in saltbo zpan up to 1.6.5/1.7.0-beta2. It has been rated as problematic. This issue affects t...
CVE-2025-51591LOW3.7A Server-Side Request Forgery (SSRF) in JGM Pandoc v3.6.4 allows attackers to gain access to and compromise the whole in...
CVE-2025-53862LOW3.5A flaw was found in Ansible. Three API endpoints are accessible and return verbose, unauthenticated responses. This flaw...
CVE-2025-53861LOW3.1A flaw was found in Ansible. Sensitive cookies without security flags over non-encrypted channels can lead to Man-in-the...
CVE-2025-5992LOW2.3When passing values outside of the expected range to QColorTransferGenericFunction it can cause a denial of service, for...
CVE-2025-7435LOW3.5A vulnerability was found in LiveHelperChat lhc-php-resque Extension up to ee1270b35625f552425e32a6a3061cd54b5085c4. It ...
CVE-2025-49462LOW3.5Cross-site scripting in certain Zoom Clients before version 6.4.5 may allow an authenticated user to conduct a disclosu...
CVE-2025-27613LOW3.6Gitk is a Tcl/Tk based Git history browser. Starting with 1.7.0, when a user clones an untrusted repository and runs git...
CVE-2025-6168LOW2.7An issue has been discovered in GitLab EE affecting all versions from 18.0 before 18.0.4 and 18.1 before 18.1.2 that cou...
CVE-2025-4972LOW2.7An issue has been discovered in GitLab EE affecting all versions from 18.0 before 18.0.4 and 18.1 before 18.1.2 that cou...
CVE-2025-7215LOW1.6A vulnerability, which was classified as problematic, has been found in FNKvision FNK-GU2 up to 40.1.7. Affected by this...
CVE-2025-7214LOW1.6A vulnerability classified as problematic was found in FNKvision FNK-GU2 up to 40.1.7. Affected by this vulnerability is...
CVE-2025-49546LOW2.4ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by an Improper Access Control vulnerability that c...
CVE-2025-49760LOW3.5External control of file name or path in Windows Storage allows an authorized attacker to perform spoofing over a networ...
CVE-2025-49756LOW3.3Use of a broken or risky cryptographic algorithm in Office Developer Platform allows an authorized attacker to bypass a ...
CVE-2025-49731LOW3.1Improper handling of insufficient permissions or privileges in Microsoft Teams allows an authorized attacker to elevate ...
CVE-2025-0293LOW2.7CLRF injection in Ivanti Connect Secure before version 22.7R2.8 and Ivanti Policy Secure before version 22.7R1.5 allows ...
CVE-2025-5450LOW2.7Improper access control in the certificate management component of Ivanti Connect Secure before version 22.7R2.8 and Iva...
CVE-2025-24474LOW2.7An Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability [CWE-89] in FortiM...
CVE-2025-21000LOW3.3Improper privilege management in Bluetooth prior to SMR Jul-2025 Release 1 allows local attackers to enable Bluetooth.
CVE-2025-20999LOW2.1Improper authorization in accessing saved Wi-Fi password for Galaxy Tablet prior to SMR Jul-2025 Release 1 allows second...
CVE-2025-20998LOW3.3Improper access control in SamsungAccount for Galaxy Watch prior to SMR Jul-2025 Release 1 allows local attackers to acc...
CVE-2025-42978LOW3.5The widely used component that establishes outbound TLS connections in SAP NetWeaver Application Server Java does not re...
CVE-2025-42954LOW2.7SAP NetWeaver Business Warehouse CCAW application allows a privileged attacker to cause a high CPU load by executing a R...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now