2025 CVE Vulnerabilities

45,172 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-27213MEDIUM4.9An Improper Access Control could allow a malicious actor authenticated in the API of certain UniFi Connect devices to en...
CVE-2025-9264MEDIUM5.4A vulnerability was found in Xuxueli xxl-job up to 3.1.1. Affected by this issue is the function remove of the file /src...
CVE-2025-9263MEDIUM4.3A vulnerability has been found in Xuxueli xxl-job up to 3.1.1. Affected by this vulnerability is the function getJobsByG...
CVE-2025-57749MEDIUM6.5n8n is a workflow automation platform. Before 1.106.0, a symlink traversal vulnerability was discovered in the Read/Writ...
CVE-2025-43757MEDIUM5.4A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025...
CVE-2025-9240MEDIUM4.3A security flaw has been discovered in elunez eladmin up to 2.7. Affected by this issue is some unknown functionality of...
CVE-2025-43746MEDIUM5.4A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025...
CVE-2025-9239MEDIUM6.3A vulnerability was identified in elunez eladmin up to 2.7. Affected by this vulnerability is the function EncryptUtils ...
CVE-2025-9237MEDIUM5.4A vulnerability was found in CodeAstro Ecommerce Website 1.0. This impacts an unknown function of the file /customer/my_...
CVE-2025-47054MEDIUM5.4Adobe Experience Manager versions 6.5.22 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerabilit...
CVE-2025-9235MEDIUM5.4A flaw has been found in Scada-LTS up to 2.7.8.1. The impacted element is an unknown function of the file compound_event...
CVE-2025-9234MEDIUM5.4A vulnerability was detected in Scada-LTS up to 2.7.8.1. The affected element is an unknown function of the file mainten...
CVE-2025-8415MEDIUM5.9A vulnerability was found in the Cryostat HTTP API. Cryostat's HTTP API binds to all network interfaces, allowing possib...
CVE-2025-46998MEDIUM5.4Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2025-46962MEDIUM5.4Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2025-46936MEDIUM5.4Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2025-46932MEDIUM5.4Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2025-46856MEDIUM5.4Adobe Experience Manager versions 6.5.22 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerabilit...
CVE-2025-46852MEDIUM5.4Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2025-46849MEDIUM5.4Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2025-20345MEDIUM4.9A vulnerability in the debug logging function of Cisco Duo Authentication Proxy could allow an authenticated, high-privi...
CVE-2025-20269MEDIUM6.5A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) and Cisco Pri...
CVE-2025-20131MEDIUM4.9A vulnerability in the GUI of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker with ad...
CVE-2025-9233MEDIUM5.4A security vulnerability has been detected in Scada-LTS up to 2.7.8.1. Impacted is an unknown function of the file view_...
CVE-2025-55751MEDIUM5.1OnboardLite is the result of the Influx Initiative, our vision for an improved student organization lifecycle at the Uni...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now