2025 CVE Vulnerabilities
45,172 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-38629 | MEDIUM | 5.5 | 0.1% | Aug 22, 2025 | In the Linux kernel, the following vulnerability has been resolved: ALSA: usb: scarlett2: Fix missing NULL check scarl... |
| CVE-2025-38628 | MEDIUM | 5.5 | 0.1% | Aug 22, 2025 | In the Linux kernel, the following vulnerability has been resolved: vdpa/mlx5: Fix release of uninitialized resources o... |
| CVE-2025-38626 | MEDIUM | 5.5 | 0.1% | Aug 22, 2025 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to trigger foreground gc during f2fs_map_... |
| CVE-2025-38625 | MEDIUM | 5.5 | 0.1% | Aug 22, 2025 | In the Linux kernel, the following vulnerability has been resolved: vfio/pds: Fix missing detach_ioas op When CONFIG_I... |
| CVE-2025-38624 | MEDIUM | 5.5 | 0.1% | Aug 22, 2025 | In the Linux kernel, the following vulnerability has been resolved: PCI: pnv_php: Clean up allocated IRQs on unplug Wh... |
| CVE-2025-38623 | MEDIUM | 5.5 | 0.1% | Aug 22, 2025 | In the Linux kernel, the following vulnerability has been resolved: PCI: pnv_php: Fix surprise plug detection and recov... |
| CVE-2025-38622 | MEDIUM | 5.5 | 0.2% | Aug 22, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: drop UFO packets in udp_rcv_segment() When se... |
| CVE-2025-38621 | MEDIUM | 5.5 | 0.1% | Aug 22, 2025 | In the Linux kernel, the following vulnerability has been resolved: md: make rdev_addable usable for rcu mode Our test... |
| CVE-2025-38619 | MEDIUM | 5.5 | 0.2% | Aug 22, 2025 | In the Linux kernel, the following vulnerability has been resolved: media: ti: j721e-csi2rx: fix list_del corruption I... |
| CVE-2025-36042 | MEDIUM | 5.4 | 0.2% | Aug 22, 2025 | IBM QRadar SIEM 7.5 through 7.5.0 Dashboard is vulnerable to cross-site scripting. This vulnerability allows an authenti... |
| CVE-2025-51825 | MEDIUM | 6.5 | 0.2% | Aug 22, 2025 | JeecgBoot versions from 3.4.3 up to 3.8.0 were found to contain a SQL injection vulnerability in the /jeecg-boot/online/... |
| CVE-2025-50691 | MEDIUM | 5.3 | 0.2% | Aug 22, 2025 | MCSManager 10.5.3 daemon process runs as a root account by default, and its sensitive data (including tokens and termina... |
| CVE-2025-38617 | MEDIUM | 4.7 | 0.3% | Aug 22, 2025 | In the Linux kernel, the following vulnerability has been resolved: net/packet: fix a race in packet_set_ring() and pac... |
| CVE-2025-9331 | MEDIUM | 4.3 | 0.3% | Aug 22, 2025 | The Spacious theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on... |
| CVE-2025-57896 | MEDIUM | 5.3 | 0.2% | Aug 22, 2025 | Missing Authorization vulnerability in andy_moyle Church Admin church-admin allows Exploiting Incorrectly Configured Acc... |
| CVE-2025-57895 | MEDIUM | 4.3 | 0.1% | Aug 22, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Hossni Mubarak JobWP jobwp allows Cross Site Request Forgery.This iss... |
| CVE-2025-57894 | MEDIUM | 4.3 | 0.2% | Aug 22, 2025 | Missing Authorization vulnerability in ollybach WPPizza wppizza allows Exploiting Incorrectly Configured Access Control ... |
| CVE-2025-57893 | MEDIUM | 4.3 | 0.1% | Aug 22, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Epsiloncool WP Fast Total Search fulltext-search allows Cross Site Re... |
| CVE-2025-57892 | MEDIUM | 4.3 | 0.1% | Aug 22, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Jeff Starr Simple Statistics for Feeds simple-feed-stats allows Cross... |
| CVE-2025-57891 | MEDIUM | 5.9 | 0.2% | Aug 22, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpecommerce Recurr... |
| CVE-2025-57890 | MEDIUM | 5.9 | 0.2% | Aug 22, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pierre Lannoy Sess... |
| CVE-2025-57888 | MEDIUM | 5.3 | 0.2% | Aug 22, 2025 | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in NooTheme Jobmonster noo-jobm... |
| CVE-2025-57887 | MEDIUM | 6.5 | 0.2% | Aug 22, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NooTheme Jobmonste... |
| CVE-2025-57886 | MEDIUM | 5.4 | 0.2% | Aug 22, 2025 | Authorization Bypass Through User-Controlled Key vulnerability in Equalize Digital Accessibility Checker by Equalize Dig... |
| CVE-2025-57885 | MEDIUM | 4.3 | 0.1% | Aug 22, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Shahjahan Jewel Fluent Support fluent-support allows Cross Site Reque... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now