2025 CVE Vulnerabilities
45,153 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-43812 | MEDIUM | 5.4 | 0.2% | Sep 29, 2025 | Cross-site scripting (XSS) vulnerability in web content template in Liferay Portal 7.4.3.4 through 7.4.3.111, and Lifera... |
| CVE-2025-57769 | MEDIUM | 6.1 | 0.3% | Sep 29, 2025 | FreshRSS is a free, self-hostable RSS aggregator. Versions 1.26.3 and below contain a vulnerability where a specially cr... |
| CVE-2025-43820 | MEDIUM | 5.4 | 0.2% | Sep 29, 2025 | Multiple cross-site scripting (XSS) vulnerabilities in the Calendar widget when inviting users to a event in Liferay Por... |
| CVE-2025-43818 | MEDIUM | 6.1 | 0.2% | Sep 29, 2025 | Cross-site scripting (XSS) vulnerability in the Calendar widget in Liferay Portal 7.4.3.35 through 7.4.3.110, and Lifera... |
| CVE-2025-43815 | MEDIUM | 6.1 | 0.2% | Sep 29, 2025 | Reflected cross-site scripting (XSS) vulnerability on the page configuration page in Liferay Portal 7.4.3.102 through 7.... |
| CVE-2025-43811 | MEDIUM | 5.4 | 0.2% | Sep 29, 2025 | Multiple stored cross-site scripting (XSS) vulnerability in the related asset selector in Liferay Portal 7.4.3.50 throug... |
| CVE-2025-34233 | MEDIUM | 6.8 | 0.6% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2... |
| CVE-2025-34232 | MEDIUM | 5.3 | 0.5% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2... |
| CVE-2025-34230 | MEDIUM | 5.8 | 0.5% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2... |
| CVE-2025-34229 | MEDIUM | 5.8 | 0.5% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2... |
| CVE-2025-34220 | MEDIUM | 5.3 | 0.7% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2... |
| CVE-2025-34211 | MEDIUM | 4.9 | 0.4% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 22.0.1049 and Application prior to version ... |
| CVE-2025-56764 | MEDIUM | 5.3 | 0.2% | Sep 29, 2025 | Trivision NC-227WF firmware 5.80 (build 20141010) login mechanism reveals whether a username exists or not by returning ... |
| CVE-2025-35034 | MEDIUM | 6.1 | 0.2% | Sep 29, 2025 | Medical Informatics Engineering Enterprise Health has a reflected cross site scripting vulnerability in the 'portlet_use... |
| CVE-2025-35033 | MEDIUM | 4.3 | 0.2% | Sep 29, 2025 | Medical Informatics Engineering Enterprise Health has a CSV injection vulnerability that allows a remote, authenticated ... |
| CVE-2025-35031 | MEDIUM | 5.5 | 0.1% | Sep 29, 2025 | Medical Informatics Engineering Enterprise Health includes the user's current session token in debug output. An attacker... |
| CVE-2025-57879 | MEDIUM | 6.1 | 0.2% | Sep 29, 2025 | There is an unvalidated redirect vulnerability in Esri Portal for ArcGIS 11.4 and below that may allow a remote, unauthe... |
| CVE-2025-57878 | MEDIUM | 6.1 | 0.2% | Sep 29, 2025 | There is an unvalidated redirect vulnerability in Esri Portal for ArcGIS 11.4 and below that may allow a remote, unauthe... |
| CVE-2025-57877 | MEDIUM | 4.8 | 0.2% | Sep 29, 2025 | There is a reflected cross site scripting vulnerability in Esri Portal for ArcGIS 11.4 and below that may allow a remote... |
| CVE-2025-57876 | MEDIUM | 4.8 | 0.2% | Sep 29, 2025 | There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS 11.4 and below that may allow a remote,... |
| CVE-2025-57875 | MEDIUM | 4.8 | 0.2% | Sep 29, 2025 | There is a reflected cross site scripting vulnerability in Esri Portal for ArcGIS 11.4 and below that may allow a remote... |
| CVE-2025-57874 | MEDIUM | 4.8 | 0.2% | Sep 29, 2025 | There is a reflected cross site scripting vulnerability in Esri Portal for ArcGIS 11.4 and below that may allow a remote... |
| CVE-2025-57873 | MEDIUM | 4.8 | 0.2% | Sep 29, 2025 | There is a reflected cross site scripting vulnerability in Esri Portal for ArcGIS 11.4 and below that may allow a remote... |
| CVE-2025-57872 | MEDIUM | 6.1 | 0.2% | Sep 29, 2025 | There is an unvalidated redirect vulnerability in Esri Portal for ArcGIS 11.4 and below that may allow a remote, unauthe... |
| CVE-2025-57871 | MEDIUM | 4.8 | 0.2% | Sep 29, 2025 | There is a reflected cross site scripting vulnerability in Esri Portal for ArcGIS 11.4 and below that may allow a remote... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now