2025 CVE Vulnerabilities
45,172 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-27213 | MEDIUM | 4.9 | 0.2% | Aug 21, 2025 | An Improper Access Control could allow a malicious actor authenticated in the API of certain UniFi Connect devices to en... |
| CVE-2025-9264 | MEDIUM | 5.4 | 0.3% | Aug 21, 2025 | A vulnerability was found in Xuxueli xxl-job up to 3.1.1. Affected by this issue is the function remove of the file /src... |
| CVE-2025-9263 | MEDIUM | 4.3 | 0.3% | Aug 20, 2025 | A vulnerability has been found in Xuxueli xxl-job up to 3.1.1. Affected by this vulnerability is the function getJobsByG... |
| CVE-2025-57749 | MEDIUM | 6.5 | 0.4% | Aug 20, 2025 | n8n is a workflow automation platform. Before 1.106.0, a symlink traversal vulnerability was discovered in the Read/Writ... |
| CVE-2025-43757 | MEDIUM | 5.4 | 0.2% | Aug 20, 2025 | A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025... |
| CVE-2025-9240 | MEDIUM | 4.3 | 0.3% | Aug 20, 2025 | A security flaw has been discovered in elunez eladmin up to 2.7. Affected by this issue is some unknown functionality of... |
| CVE-2025-43746 | MEDIUM | 5.4 | 0.2% | Aug 20, 2025 | A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025... |
| CVE-2025-9239 | MEDIUM | 6.3 | 0.2% | Aug 20, 2025 | A vulnerability was identified in elunez eladmin up to 2.7. Affected by this vulnerability is the function EncryptUtils ... |
| CVE-2025-9237 | MEDIUM | 5.4 | 0.3% | Aug 20, 2025 | A vulnerability was found in CodeAstro Ecommerce Website 1.0. This impacts an unknown function of the file /customer/my_... |
| CVE-2025-47054 | MEDIUM | 5.4 | 0.3% | Aug 20, 2025 | Adobe Experience Manager versions 6.5.22 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerabilit... |
| CVE-2025-9235 | MEDIUM | 5.4 | 0.3% | Aug 20, 2025 | A flaw has been found in Scada-LTS up to 2.7.8.1. The impacted element is an unknown function of the file compound_event... |
| CVE-2025-9234 | MEDIUM | 5.4 | 0.3% | Aug 20, 2025 | A vulnerability was detected in Scada-LTS up to 2.7.8.1. The affected element is an unknown function of the file mainten... |
| CVE-2025-8415 | MEDIUM | 5.9 | 0.3% | Aug 20, 2025 | A vulnerability was found in the Cryostat HTTP API. Cryostat's HTTP API binds to all network interfaces, allowing possib... |
| CVE-2025-46998 | MEDIUM | 5.4 | 0.2% | Aug 20, 2025 | Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2025-46962 | MEDIUM | 5.4 | 0.2% | Aug 20, 2025 | Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2025-46936 | MEDIUM | 5.4 | 0.2% | Aug 20, 2025 | Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2025-46932 | MEDIUM | 5.4 | 0.2% | Aug 20, 2025 | Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2025-46856 | MEDIUM | 5.4 | 0.2% | Aug 20, 2025 | Adobe Experience Manager versions 6.5.22 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerabilit... |
| CVE-2025-46852 | MEDIUM | 5.4 | 0.2% | Aug 20, 2025 | Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2025-46849 | MEDIUM | 5.4 | 0.2% | Aug 20, 2025 | Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2025-20345 | MEDIUM | 4.9 | 0.4% | Aug 20, 2025 | A vulnerability in the debug logging function of Cisco Duo Authentication Proxy could allow an authenticated, high-privi... |
| CVE-2025-20269 | MEDIUM | 6.5 | 0.4% | Aug 20, 2025 | A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) and Cisco Pri... |
| CVE-2025-20131 | MEDIUM | 4.9 | 0.3% | Aug 20, 2025 | A vulnerability in the GUI of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker with ad... |
| CVE-2025-9233 | MEDIUM | 5.4 | 0.3% | Aug 20, 2025 | A security vulnerability has been detected in Scada-LTS up to 2.7.8.1. Impacted is an unknown function of the file view_... |
| CVE-2025-55751 | MEDIUM | 5.1 | 0.3% | Aug 20, 2025 | OnboardLite is the result of the Influx Initiative, our vision for an improved student organization lifecycle at the Uni... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now