2025 CVE Vulnerabilities

45,326 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-66580CRITICAL9.6Dive is an open-source MCP Host Desktop Application that enables integration with function-calling LLMs. A critical Stor...
CVE-2025-65035MEDIUM6.4pluginsGLPI's Database Inventory Plugin "manages" the Teclib' inventory agents in order to perform an inventory of the d...
CVE-2025-63665CRITICAL9.8An issue in GT Edge AI Community Edition Versions before v2.0.12 allows attackers to execute arbitrary code via injectin...
CVE-2025-58053CRITICAL9.8Galette is a membership management web application for non profit organizations. Prior to version 1.2.0, while updating ...
CVE-2025-58052HIGH8.1Galette is a membership management web application for non profit organizations. Starting in version 0.9.6 and prior to ...
CVE-2025-14957MEDIUM5.5A vulnerability was identified in WebAssembly Binaryen up to 125. This affects the function IRBuilder::makeLocalGet/IRBu...
CVE-2025-14956HIGH7.1A vulnerability was determined in WebAssembly Binaryen up to 125. Affected by this issue is the function WasmBinaryReade...
CVE-2025-14955LOW3.7A vulnerability was found in Open5GS up to 2.7.5. Affected by this vulnerability is the function ogs_pfcp_handle_create_...
CVE-2025-14812HIGH7.5ArcSearch for iOS versions prior to 1.45.2 could display a different domain in the address bar than the content being sh...
CVE-2025-14809HIGH7.4ArcSearch for Android versions prior to 1.12.6 could display a different domain in the address bar than the content bein...
CVE-2025-67442HIGH7.6EVE-NG 6.4.0-13-PRO is vulnerable to Directory Traversal. The /api/export interface allows authenticated users to export...
CVE-2025-67048——Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67039. Reason: This record is a reservation duplicate ...
CVE-2025-67047——Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67036. Reason: This record is a reservation duplicate ...
CVE-2025-67046——Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67037. Reason: This record is a reservation duplicate ...
CVE-2025-67045——Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67041. Reason: This record is a reservation duplicate ...
CVE-2025-67044——Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67035. Reason: This record is a reservation duplicate ...
CVE-2025-67043——Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2025-67038. Reason: This record is a reservation duplicate ...
CVE-2025-66906MEDIUM6.1Cross Site Request Forgery (CSRF) vulnerability in Turms Admin API thru v0.10.0-SNAPSHOT allows attackers to gain escala...
CVE-2025-66905HIGH7.5The Takes web framework's TkFiles take thru 2.0-SNAPSHOT fails to canonicalize HTTP request paths before resolving them ...
CVE-2025-53922MEDIUM4.9Galette is a membership management web application for non profit organizations. Starting in version 1.1.4 and prior to ...
CVE-2025-34433CRITICAL9.3AVideo versions 14.3.1 prior to 20.1 contain an unauthenticated remote code execution vulnerability caused by predictabl...
CVE-2025-14954MEDIUM5.9A vulnerability has been found in Open5GS up to 2.7.6. Affected is the function ogs_pfcp_pdr_find_or_add/ogs_pfcp_far_fi...
CVE-2025-14953MEDIUM5.3A flaw has been found in Open5GS up to 2.7.5. This impacts the function ogs_pfcp_handle_create_pdr in the library lib/pf...
CVE-2025-66911MEDIUM6.5Turms IM Server v0.10.0-SNAPSHOT and earlier contains a broken access control vulnerability in the user online status qu...
CVE-2025-66910MEDIUM6Turms Server v0.10.0-SNAPSHOT and earlier contains a plaintext password storage vulnerability in the administrator authe...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now