2025 CVE Vulnerabilities

45,342 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-67488HIGH8.8SiYuan is self-hosted, open source personal knowledge management software. Versions 0.0.0-20251202123337-6ef83b42c7ce an...
CVE-2025-66626HIGH7.5Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. Version...
CVE-2025-64899HIGH7.8Acrobat Reader versions 24.001.30264, 20.005.30793, 25.001.20982, 24.001.30273, 20.005.30803 and earlier are affected by...
CVE-2025-64896MEDIUM5.5Creative Cloud Desktop versions 6.4.0.361 and earlier are affected by a Creation of Temporary File in Directory with Inc...
CVE-2025-64787LOW3.3Acrobat Reader versions 24.001.30264, 20.005.30793, 25.001.20982, 24.001.30273, 20.005.30803 and earlier are affected by...
CVE-2025-64786LOW3.3Acrobat Reader versions 24.001.30264, 20.005.30793, 25.001.20982, 24.001.30273, 20.005.30803 and earlier are affected by...
CVE-2025-64785HIGH7.8Acrobat Reader versions 24.001.30264, 20.005.30793, 25.001.20982, 24.001.30273, 20.005.30803 and earlier are affected by...
CVE-2025-13743HIGH7.5Docker Desktop diagnostics bundles were found to include expired Hub PATs in log output due to error object serializatio...
CVE-2025-66625MEDIUM4.9Umbraco is an ASP.NET CMS. Due to unsafe handling and deletion of temporary files in versions 10.0.0 through 13.12.0, du...
CVE-2025-66457HIGH8.8Elysia is a Typescript framework for request validation, type inference, OpenAPI documentation and client-server communi...
CVE-2025-66456CRITICAL9.8Elysia is a Typescript framework for request validation, type inference, OpenAPI documentation and client-server communi...
CVE-2025-66214HIGH8.8Ladybug adds message-based debugging, unit, system, and regression testing to Java applications. Versions prior to 3.0-2...
CVE-2025-65741CRITICAL9.8Sublime Text 3 Build 3208 or prior for MacOS is vulnerable to Dylib Injection. An attacker could compile a .dylib file a...
CVE-2025-64113CRITICAL9.8Emby Server is a user-installable home media server. Versions below 4.9.1.81 allow an attacker to gain full administrati...
CVE-2025-14337CRITICAL9.8A vulnerability was determined in itsourcecode Student Management System 1.0. This affects an unknown part of the file /...
CVE-2025-9614MEDIUM6.5An issue was discovered in the PCI Express (PCIe) Integrity and Data Encryption (IDE) specification, where insufficient ...
CVE-2025-9613MEDIUM6.5A vulnerability was discovered in the PCI Express (PCIe) Integrity and Data Encryption (IDE) specification, where insuff...
CVE-2025-9612MEDIUM5.1An issue was discovered in the PCI Express (PCIe) Integrity and Data Encryption (IDE) specification, where insufficient ...
CVE-2025-65882CRITICAL9.8An issue was discovered in openmptcprouter thru 0.64 in file common/package/utils/sys-upgrade-helper/src/tools/sysupgrad...
CVE-2025-65573HIGH8.8Cross Site Request Forgery (CSRF) vulnerability in AllskyTeam AllSky v2024.12.06_06 allows remote attackers to cause a d...
CVE-2025-65572MEDIUM6.1Cross Site Scripting (XSS) vulnerability in AllskyTeam AllSky v2024.12.06_06 allows remote attackers to execute arbitrar...
CVE-2025-65300MEDIUM5.4A stored Cross-Site Scripting (XSS) vulnerability exists in the Coohom SaaS Platform feVersion=1760060603897 (2025-10-28...
CVE-2025-14336CRITICAL9.8A vulnerability was found in itsourcecode Student Management System 1.0. Affected by this issue is some unknown function...
CVE-2025-14335CRITICAL9.8A vulnerability has been found in itsourcecode Student Management System 1.0. Affected by this vulnerability is an unkno...
CVE-2025-14334CRITICAL9.8A flaw has been found in itsourcecode Student Management System 1.0. Affected is an unknown function of the file /new_ad...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now