2025 CVE Vulnerabilities

45,343 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-9688MEDIUM5A security vulnerability has been detected in Mupen64Plus up to 2.6.0. The affected element is the function write_is_vie...
CVE-2025-9683MEDIUM5.4A vulnerability was found in O2OA up to 10.0-410. Affected by this issue is some unknown functionality of the file /x_cm...
CVE-2025-9682MEDIUM5.4A vulnerability has been found in O2OA up to 10.0-410. Affected by this vulnerability is an unknown functionality of the...
CVE-2025-9681MEDIUM5.4A flaw has been found in O2OA up to 10.0-410. Affected is an unknown function of the file /x_program_center/jaxrs/agent ...
CVE-2025-9680MEDIUM5.4A vulnerability was detected in O2OA up to 10.0-410. This impacts an unknown function of the file /x_portal_assemble_des...
CVE-2025-9500MEDIUM6.4The TablePress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘shortcode_debug’ parameter in ...
CVE-2025-9499MEDIUM6.4The Ocean Extra plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's oceanwp_library short...
CVE-2025-9618MEDIUM4.3The Related Posts Lite plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu...
CVE-2025-4956MEDIUM4.3Path Traversal: '.../...//' vulnerability in AA-Team Pro Bulk Watermark Plugin for WordPress allows Path Traversal.This ...
CVE-2025-58156MEDIUM4.3Centurion ERP is an ERP with a focus on ITSM and automation. In versions starting from 1.12.0 to before 1.21.0, an authe...
CVE-2025-57752MEDIUM6.2Next.js is a React framework for building full-stack web applications. In versions before 14.2.31 and from 15.0.0 to bef...
CVE-2025-55173MEDIUM4.3Next.js is a React framework for building full-stack web applications. In versions before 14.2.31 and from 15.0.0 to bef...
CVE-2025-9677MEDIUM5.5A security flaw has been discovered in Modo Legend of the Phoenix up to 1.0.5. The affected element is an unknown functi...
CVE-2025-9676MEDIUM5.5A vulnerability was identified in NCSOFT Universe App up to 1.3.0. Impacted is an unknown function of the file AndroidMa...
CVE-2025-9675MEDIUM5.5A vulnerability was determined in Voice Changer App up to 1.1.0. This issue affects some unknown processing of the file ...
CVE-2025-9674MEDIUM5.5A flaw has been found in Transbyte Scooper News App up to 1.2 on Android. Affected by this issue is some unknown functio...
CVE-2025-58067MEDIUM4.2Basecamp's Google Sign-In adds Google sign-in to Rails applications. Prior to version 1.3.1, it is possible to redirect ...
CVE-2025-58066MEDIUM5.3nptd-rs is a tool for synchronizing your computer's clock, implementing the NTP and NTS protocols. In versions between 1...
CVE-2025-9673MEDIUM5.3A vulnerability was detected in Kakao 헤이카카오 Hey Kakao App up to 2.17.4 on Android. Affected by this vulnerability is an ...
CVE-2025-9672MEDIUM5.3A security vulnerability has been detected in Rejseplanen App up to 8.2.2. Affected is an unknown function of the file A...
CVE-2025-9671MEDIUM5.3A weakness has been identified in UAB Paytend App up to 2.1.9 on Android. This impacts an unknown function of the file A...
CVE-2025-9670MEDIUM5.5A security flaw has been discovered in mixmark-io turndown up to 7.2.1. This affects an unknown function of the file src...
CVE-2025-33038MEDIUM6.5A path traversal vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, the...
CVE-2025-33037MEDIUM6.5A path traversal vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, the...
CVE-2025-33036MEDIUM6.5A path traversal vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, the...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now