2025 CVE Vulnerabilities
45,334 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-67739 | LOW | 3.1 | 0.1% | Dec 11, 2025 | In JetBrains TeamCity before 2025.11.2 improper repository URL validation could lead to local paths disclosure |
| CVE-2025-59803 | MEDIUM | 5.3 | 0.2% | Dec 11, 2025 | Foxit PDF Editor and Reader before 2025.2.1 allow signature spoofing via triggers. An attacker can embed triggers (e.g.,... |
| CVE-2025-59802 | HIGH | 7.5 | 0.3% | Dec 11, 2025 | Foxit PDF Editor and Reader before 2025.2.1 allow signature spoofing via OCG. When Optional Content Groups (OCG) are sup... |
| CVE-2025-55314 | HIGH | 7.8 | 0.2% | Dec 11, 2025 | An issue was discovered in Foxit PDF and Editor for Windows and macOS before 13.2 and 2025 before 2025.2. When pages in ... |
| CVE-2025-55313 | HIGH | 7.8 | 0.1% | Dec 11, 2025 | An issue was discovered in Foxit PDF and Editor for Windows and macOS before 13.2 and 2025 before 2025.2. They allow pot... |
| CVE-2025-55312 | HIGH | 7.8 | 0.1% | Dec 11, 2025 | An issue was discovered in Foxit PDF and Editor for Windows before 13.2 and 2025 before 2025.2. When pages in a PDF are ... |
| CVE-2025-55311 | MEDIUM | 6.5 | 0.2% | Dec 11, 2025 | An issue was discovered in Foxit PDF and Editor for Windows and macOS before 13.2 and 2025 before 2025.2. A crafted PDF ... |
| CVE-2025-55310 | HIGH | 7.3 | 0.1% | Dec 11, 2025 | An issue was discovered in Foxit PDF and Editor for Windows and macOS before 13.2 and 2025 before 2025.2. An attacker ab... |
| CVE-2025-55309 | MEDIUM | 6.7 | 0.1% | Dec 11, 2025 | An issue was discovered in Foxit PDF and Editor for Windows and macOS before 13.2 and 2025 before 2025.2. A crafted PDF ... |
| CVE-2025-55308 | MEDIUM | 6.7 | 0.1% | Dec 11, 2025 | An issue was discovered in Foxit PDF and Editor for Windows before 13.2 and 2025 before 2025.2. A crafted PDF containing... |
| CVE-2025-55307 | LOW | 3.3 | 0.1% | Dec 11, 2025 | An issue was discovered in Foxit PDF and Editor for Windows before 13.2 and 2025 before 2025.2. Opening a malicious PDF ... |
| CVE-2025-14522 | CRITICAL | 9.8 | 0.3% | Dec 11, 2025 | A vulnerability was detected in baowzh hfly up to 638ff9abe9078bc977c132b37acbe1900b63491c. The impacted element is an u... |
| CVE-2025-14521 | HIGH | 7.5 | 0.5% | Dec 11, 2025 | A security vulnerability has been detected in baowzh hfly up to 638ff9abe9078bc977c132b37acbe1900b63491c. The affected e... |
| CVE-2025-14520 | CRITICAL | 9.1 | 0.5% | Dec 11, 2025 | A weakness has been identified in baowzh hfly up to 638ff9abe9078bc977c132b37acbe1900b63491c. Impacted is an unknown fun... |
| CVE-2025-14519 | MEDIUM | 5.4 | 0.3% | Dec 11, 2025 | A security flaw has been discovered in baowzh hfly up to 638ff9abe9078bc977c132b37acbe1900b63491c. This issue affects so... |
| CVE-2025-14518 | CRITICAL | 9.8 | 0.3% | Dec 11, 2025 | A vulnerability was identified in PowerJob up to 5.1.2. This vulnerability affects the function checkConnectivity of the... |
| CVE-2025-14265 | CRITICAL | 9.1 | 0.3% | Dec 11, 2025 | In versions of ScreenConnect™ prior to 25.8, server-side validation and integrity checks within the extension subsystem ... |
| CVE-2025-13124 | HIGH | 7.6 | 0.2% | Dec 11, 2025 | Authorization Bypass Through User-Controlled Key vulnerability in Netiket Information Technologies Ltd. Co. ApplyLogic a... |
| CVE-2025-14517 | MEDIUM | 5.3 | 0.2% | Dec 11, 2025 | A vulnerability was determined in Yalantis uCrop 2.2.11. This affects the function UCropActivity of the file AndroidMan... |
| CVE-2025-14516 | HIGH | 8.8 | 0.4% | Dec 11, 2025 | A vulnerability was found in Yalantis uCrop 2.2.11. Affected by this issue is the function downloadFile of the file com.... |
| CVE-2025-14523 | HIGH | 8.2 | 0.5% | Dec 11, 2025 | A flaw in libsoup’s HTTP header handling allows multiple Host: headers in a request and returns the last occurrence for ... |
| CVE-2025-14515 | CRITICAL | 9.8 | 0.3% | Dec 11, 2025 | A vulnerability has been found in Campcodes Supplier Management System 1.0. Affected by this vulnerability is an unknown... |
| CVE-2025-13003 | HIGH | 7.6 | 0.2% | Dec 11, 2025 | Authorization Bypass Through User-Controlled Key vulnerability in Aksis Computer Services and Consulting Inc. AxOnboard ... |
| CVE-2025-64995 | MEDIUM | 6.7 | 0.1% | Dec 11, 2025 | A privilege escalation vulnerability was discovered in TeamViewer DEX (former 1E DEX), specifically within the 1E-Exchan... |
| CVE-2025-64994 | MEDIUM | 6.7 | 0.2% | Dec 11, 2025 | A privilege escalation vulnerability was discovered in TeamViewer DEX (former 1E DEX), specifically within the 1E-Nomad-... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now