2025 CVE Vulnerabilities

45,334 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-55409HIGH8.8FoxCMS 1.2.6, there is a Cross Site Scripting vulnerability in /index.php/article. This allows attackers to execute arbi...
CVE-2025-53119HIGH7.5An unauthenticated unrestricted file upload vulnerability allows an attacker to upload malicious binaries and scripts to...
CVE-2025-3478HIGH8.5A Stored Cross-Site Scripting (XSS) vulnerability has been identified in OpenText Enterprise Security Manager. The vulne...
CVE-2025-29523HIGH7.2D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 was discovered to contain a command injection vulnerability vi...
CVE-2025-5302HIGH8.6A denial of service vulnerability exists in the JSONReader component of the run-llama/llama_index repository, specifical...
CVE-2025-56216HIGH8.5phpgurukul Hospital Management System 4.0 is vulnerable to SQL Injection in about-us.php via the pagetitle parameter.
CVE-2025-53510HIGH8.8A memory corruption vulnerability exists in the PSD Image Decoding functionality of the SAIL Image Decoding Library v0.9...
CVE-2025-53085HIGH8.8A memory corruption vulnerability exists in the PSD RLE Decoding functionality of the SAIL Image Decoding Library v0.9.8...
CVE-2025-52930HIGH8.8A memory corruption vulnerability exists in the BMPv3 RLE Decoding functionality of the SAIL Image Decoding Library v0.9...
CVE-2025-52456HIGH8.8A memory corruption vulnerability exists in the WebP Image Decoding functionality of the SAIL Image Decoding Library v0....
CVE-2025-51281HIGH7D-Link DI-8100 16.07.26A1 is vulnerable to Buffer Overflow via the en`, `val and id parameters in the qj_asp function. T...
CVE-2025-50129HIGH8.8A memory corruption vulnerability exists in the PCX Image Decoding functionality of the SAIL Image Decoding Library v0.9...
CVE-2025-46407HIGH8.8A memory corruption vulnerability exists in the BMPv3 Palette Decoding functionality of the SAIL Image Decoding Library ...
CVE-2025-35984HIGH8.8A memory corruption vulnerability exists in the PCX Image Decoding functionality of the SAIL Image Decoding Library v0.9...
CVE-2025-32468HIGH8.8A memory corruption vulnerability exists in the BMPv3 Image Decoding functionality of the SAIL Image Decoding Library v0...
CVE-2025-54370HIGH8.7PhpOffice/PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet files. Prior to versions 1.30.0, 2.1....
CVE-2025-43960HIGH8.6Adminer 4.8.1, when using Monolog for logging, allows a Denial of Service (memory consumption) via a crafted serialized ...
CVE-2025-29516HIGH7.2D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 was discovered to contain a command injection vulnerability vi...
CVE-2025-26467HIGH8.8Privilege Defined With Unsafe Actions vulnerability in Apache Cassandra. An user with MODIFY permission ON ALL KEYSPACES...
CVE-2025-5191HIGH7.3An Unquoted Search Path vulnerability has been identified in the utility for Moxa’s industrial computers (Windows). Due ...
CVE-2025-54301HIGH8.5A stored XSS vulnerability in Quantum Manager component 1.0.0-3.2.0 for Joomla was discovered. File names are not proper...
CVE-2025-54300HIGH8.5A stored XSS vulnerability in Quantum Manager component 1.0.0-3.2.0 for Joomla was discovered. The SVG upload feature do...
CVE-2025-9402HIGH7.2A vulnerability was found in HuangDou UTCMS 9. This issue affects some unknown processing of the file app/modules/ut-fra...
CVE-2025-9400HIGH8.8A flaw has been found in YiFang CMS up to 2.0.5. This affects the function mergeMultipartUpload of the file app/utils/ba...
CVE-2025-9399HIGH8.8A vulnerability was detected in YiFang CMS up to 2.0.5. Affected by this issue is some unknown functionality of the file...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now