2025 CVE Vulnerabilities

45,342 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-59336MEDIUM6.9Luanox is a module host for Lua packages. Prior to 0.1.1, a file traversal vulnerability can cause potential denial of s...
CVE-2025-58174MEDIUM4.6LDAP Account Manager (LAM) is a webfrontend for managing entries stored in an LDAP directory. LAM before 9.3 allows stor...
CVE-2025-58749MEDIUM5.3WebAssembly Micro Runtime (WAMR) is a lightweight standalone WebAssembly (Wasm) runtime. In WAMR versions prior to 2.4.2...
CVE-2025-57145MEDIUM5.4A cross-site scripting (XSS) vulnerability exists in the search-autootaxi.php endpoint of the ATSMS web application. The...
CVE-2025-56293MEDIUM5.4code-projects Human Resource Integrated System 1.0 is vulnerable to Cross Site Scripting (XSS) in the Add Child Informat...
CVE-2025-56289MEDIUM5.4code-projects Document Management System 1.0 has a Cross Site Scripting (XSS) vulnerability, where attackers can leak ad...
CVE-2025-56280MEDIUM5.4code-projects Food Ordering Review System 1.0 is vulnerable to Cross Site Scripting (XSS) in the area where users submit...
CVE-2025-36244MEDIUM5.5IBM AIX 7.2, 7.3, IBM VIOS 3.1, and 4.1, when configured to use Kerberos network authentication, could allow a local use...
CVE-2025-8276MEDIUM4.3Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting'), Improper Encoding or Escapi...
CVE-2025-8057MEDIUM6.5Authorization Bypass Through User-Controlled Key, Externally Controlled Reference to a Resource in Another Sphere, Impro...
CVE-2025-56276MEDIUM5.4code-projects Food Ordering Review System 1.0 is vulnerable to Cross Site Scripting (XSS) in the registration function. ...
CVE-2025-39834MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net/mlx5: HWS, Fix memory leak in hws_action_get_sh...
CVE-2025-39833MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mISDN: hfcpci: Fix warning when deleting uninitiali...
CVE-2025-39832MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Fix lockdep assertion on sync reset unloa...
CVE-2025-39831MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: fbnic: Move phylink resume out of service_task and ...
CVE-2025-39830MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net/mlx5: HWS, Fix memory leak in hws_pool_buddy_in...
CVE-2025-7355MEDIUM6.5Authorization Bypass Through User-Controlled Key vulnerability in Beefull Energy Technologies Beefull App allows Exploit...
CVE-2025-55834MEDIUM6.1A Cross Site Scripting vulnerability in JeeWMS v.3.7 and before allows a remote attacker to obtain sensitive information...
CVE-2025-55117MEDIUM6.3A stack-based buffer overflow can be remotely triggered when formatting an error message in the Control-M/Agent when SSL...
CVE-2025-55114MEDIUM6.9The improper order of AUTHORIZED_CTM_IP validation in the Control-M/Agent, where the Control-M/Server IP address is vali...
CVE-2025-55111MEDIUM5.7Certain files with overly permissive permissions were identified in the out-of-support Control-M/Agent versions 9.0.18 t...
CVE-2025-55110MEDIUM5.7Control-M/Agents use a kdb or PKCS#12 keystore by default, and the default keystore password is well known and documente...
CVE-2025-39829MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: trace/fgraph: Fix the warning caused by missing unr...
CVE-2025-39827MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: rose: include node references in rose_neigh re...
CVE-2025-39825MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: smb: client: fix race with concurrent opens in rena...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now