2025 CVE Vulnerabilities

45,331 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-59838MEDIUM5.4Monkeytype is a minimalistic and customizable typing test. In versions 25.36.0 and prior, improper handling of user inpu...
CVE-2025-46153MEDIUM5.3PyTorch before 3.7.0 has a bernoulli_p decompose function in decompositions.py even though it lacks full consistency wit...
CVE-2025-46152MEDIUM5.3In PyTorch before 2.7.0, bitwise_right_shift produces incorrect output for certain out-of-bounds values of the "other" a...
CVE-2025-46150MEDIUM5.3In PyTorch before 2.7.0, when torch.compile is used, FractionalMaxPool2d has inconsistent results.
CVE-2025-46149MEDIUM5.3In PyTorch before 2.7.0, when inductor is used, nn.Fold has an assertion error.
CVE-2025-46148MEDIUM5.3In PyTorch through 2.6.0, when eager is used, nn.PairwiseDistance(p=2) produces incorrect results.
CVE-2025-10950MEDIUM6.3A vulnerability was determined in geyang ml-logger up to acf255bade5be6ad88d90735c8367b28cbe3a743. Affected is the funct...
CVE-2025-59839MEDIUM5.4The EmbedVideo Extension is a MediaWiki extension which adds a parser function called #ev and various parser tags for em...
CVE-2025-59426MEDIUM4.3Lobe Chat is an open-source artificial intelligence chat framework. Prior to version 1.130.1, the project's OIDC redirec...
CVE-2025-10540MEDIUM6.5iMonitor EAM 9.6394 transmits communication between the EAM client agent and the EAM server, as well as between the EAM ...
CVE-2025-10947MEDIUM5.5A flaw has been found in Sistemas Pleno Gestão de Locação up to 2025.7.x. The impacted element is an unknown function of...
CVE-2025-10946MEDIUM5.1A vulnerability was detected in nuz007 smsboom up to 01b2f35bbbc23f3e0f60f38ca0e3d1b286f8d674. The affected element is a...
CVE-2025-10945MEDIUM5.1A security vulnerability has been detected in nuz007 smsboom up to 01b2f35bbbc23f3e0f60f38ca0e3d1b286f8d674. Impacted is...
CVE-2025-10944MEDIUM5.1A weakness has been identified in yi-ge get-header-ip up to 589b23d0eb0043c310a6a13ce4bbe2505d0d0b15. This issue affects...
CVE-2025-10943MEDIUM5.1A security flaw has been discovered in MikeCen WeChat-Face-Recognition up to 6e3f72bf8547d80b59e330f1137e4aa505f492c1. T...
CVE-2025-10940MEDIUM4.8A vulnerability was found in Total.js CMS 1.0.0. Affected by this vulnerability is the function layouts_save of the file...
CVE-2025-21056MEDIUM6.6Improper input validation in Retail Mode prior to version 5.59.4 allows self attackers to execute privileged commands on...
CVE-2025-57324MEDIUM6.5parse is a package designed to parse JavaScript SDK. A Prototype Pollution vulnerability in the SingleInstanceStateContr...
CVE-2025-57320MEDIUM6.5json-schema-editor-visual is a package that provides jsonschema editor. A Prototype Pollution vulnerability in the setDa...
CVE-2025-59824MEDIUM5.4Omni manages Kubernetes on bare metal, virtual machines, or in a cloud. Prior to version 0.48.0, Omni Wireguard SideroLi...
CVE-2025-59525MEDIUM6.1Horilla is a free and open source Human Resource Management System (HRMS). Prior to version 1.4.0, improper sanitization...
CVE-2025-57351MEDIUM6.5A prototype pollution vulnerability exists in the ts-fns package versions prior to 13.0.7, where insufficient validation...
CVE-2025-57348MEDIUM6.5The node-cube package (prior to version 5.0.0) contains a vulnerability in its handling of prototype chain initializatio...
CVE-2025-55178MEDIUM5.3Llama Stack prior to version v0.2.20 accepted unverified parameters in the resolve_ast_by_type function which could pote...
CVE-2025-59524MEDIUM6.1Horilla is a free and open source Human Resource Management System (HRMS). Prior to version 1.4.0, the file upload flow ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now