2025 CVE Vulnerabilities
45,326 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-66580 | CRITICAL | 9.6 | 0.5% | Dec 19, 2025 | Dive is an open-source MCP Host Desktop Application that enables integration with function-calling LLMs. A critical Stor... |
| CVE-2025-65035 | MEDIUM | 6.4 | 0.3% | Dec 19, 2025 | pluginsGLPI's Database Inventory Plugin "manages" the Teclib' inventory agents in order to perform an inventory of the d... |
| CVE-2025-63665 | CRITICAL | 9.8 | 0.5% | Dec 19, 2025 | An issue in GT Edge AI Community Edition Versions before v2.0.12 allows attackers to execute arbitrary code via injectin... |
| CVE-2025-58053 | CRITICAL | 9.8 | 0.3% | Dec 19, 2025 | Galette is a membership management web application for non profit organizations. Prior to version 1.2.0, while updating ... |
| CVE-2025-58052 | HIGH | 8.1 | 0.3% | Dec 19, 2025 | Galette is a membership management web application for non profit organizations. Starting in version 0.9.6 and prior to ... |
| CVE-2025-14957 | MEDIUM | 5.5 | 0.2% | Dec 19, 2025 | A vulnerability was identified in WebAssembly Binaryen up to 125. This affects the function IRBuilder::makeLocalGet/IRBu... |
| CVE-2025-14956 | HIGH | 7.1 | 0.2% | Dec 19, 2025 | A vulnerability was determined in WebAssembly Binaryen up to 125. Affected by this issue is the function WasmBinaryReade... |
| CVE-2025-14955 | LOW | 3.7 | 0.5% | Dec 19, 2025 | A vulnerability was found in Open5GS up to 2.7.5. Affected by this vulnerability is the function ogs_pfcp_handle_create_... |
| CVE-2025-14812 | HIGH | 7.5 | 0.2% | Dec 19, 2025 | ArcSearch for iOS versions prior to 1.45.2 could display a different domain in the address bar than the content being sh... |
| CVE-2025-14809 | HIGH | 7.4 | 0.2% | Dec 19, 2025 | ArcSearch for Android versions prior to 1.12.6 could display a different domain in the address bar than the content bein... |
| CVE-2025-67442 | HIGH | 7.6 | 0.6% | Dec 19, 2025 | EVE-NG 6.4.0-13-PRO is vulnerable to Directory Traversal. The /api/export interface allows authenticated users to export... |
| CVE-2025-67048 | — | — | — | Dec 19, 2025 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67039. Reason: This record is a reservation duplicate ... |
| CVE-2025-67047 | — | — | — | Dec 19, 2025 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67036. Reason: This record is a reservation duplicate ... |
| CVE-2025-67046 | — | — | — | Dec 19, 2025 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67037. Reason: This record is a reservation duplicate ... |
| CVE-2025-67045 | — | — | — | Dec 19, 2025 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67041. Reason: This record is a reservation duplicate ... |
| CVE-2025-67044 | — | — | — | Dec 19, 2025 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67035. Reason: This record is a reservation duplicate ... |
| CVE-2025-67043 | — | — | — | Dec 19, 2025 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67038. Reason: This record is a reservation duplicate ... |
| CVE-2025-66906 | MEDIUM | 6.1 | 0.1% | Dec 19, 2025 | Cross Site Request Forgery (CSRF) vulnerability in Turms Admin API thru v0.10.0-SNAPSHOT allows attackers to gain escala... |
| CVE-2025-66905 | HIGH | 7.5 | 0.5% | Dec 19, 2025 | The Takes web framework's TkFiles take thru 2.0-SNAPSHOT fails to canonicalize HTTP request paths before resolving them ... |
| CVE-2025-53922 | MEDIUM | 4.9 | 0.2% | Dec 19, 2025 | Galette is a membership management web application for non profit organizations. Starting in version 1.1.4 and prior to ... |
| CVE-2025-34433 | CRITICAL | 9.3 | 1.5% | Dec 19, 2025 | AVideo versions 14.3.1 prior to 20.1 contain an unauthenticated remote code execution vulnerability caused by predictabl... |
| CVE-2025-14954 | MEDIUM | 5.9 | 0.5% | Dec 19, 2025 | A vulnerability has been found in Open5GS up to 2.7.6. Affected is the function ogs_pfcp_pdr_find_or_add/ogs_pfcp_far_fi... |
| CVE-2025-14953 | MEDIUM | 5.3 | 0.4% | Dec 19, 2025 | A flaw has been found in Open5GS up to 2.7.5. This impacts the function ogs_pfcp_handle_create_pdr in the library lib/pf... |
| CVE-2025-66911 | MEDIUM | 6.5 | 0.3% | Dec 19, 2025 | Turms IM Server v0.10.0-SNAPSHOT and earlier contains a broken access control vulnerability in the user online status qu... |
| CVE-2025-66910 | MEDIUM | 6 | 0.2% | Dec 19, 2025 | Turms Server v0.10.0-SNAPSHOT and earlier contains a plaintext password storage vulnerability in the administrator authe... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now