2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-54161MEDIUM4.9An allocation of resources without limits or throttling vulnerability has been reported to affect File Station 5. If a r...
CVE-2025-54155MEDIUM4.9An allocation of resources without limits or throttling vulnerability has been reported to affect File Station 5. If a r...
CVE-2025-54152MEDIUM6.5A use of out-of-range pointer offset vulnerability has been reported to affect Qsync Central. If a remote attacker gains...
CVE-2025-54151MEDIUM5.5An uncontrolled resource consumption vulnerability has been reported to affect Qsync Central. If a local attacker gains ...
CVE-2025-54150MEDIUM5.5An uncontrolled resource consumption vulnerability has been reported to affect Qsync Central. If a local attacker gains ...
CVE-2025-54149MEDIUM5.5An uncontrolled resource consumption vulnerability has been reported to affect Qsync Central. If a local attacker gains ...
CVE-2025-54148MEDIUM6.5A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac...
CVE-2025-54147MEDIUM6.5A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac...
CVE-2025-54146MEDIUM6.5A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac...
CVE-2025-53598MEDIUM6.5A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac...
CVE-2025-48722MEDIUM6.5A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac...
CVE-2025-47209MEDIUM6.5A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac...
CVE-2025-47205MEDIUM4.9A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote...
CVE-2025-30266MEDIUM6.5A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac...
CVE-2025-14592MEDIUM5.3GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 18.6.6, 18.7 before 18.7.4, and 1...
CVE-2025-14560MEDIUM5.4GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.1 before 18.6.6, 18.7 before 18.7.4, and 1...
CVE-2025-12575MEDIUM5.4GitLab has remediated an issue in GitLab EE affecting all versions from 18.0 before 18.6.6, 18.7 before 18.7.4, and 18.8...
CVE-2025-12073MEDIUM4.3GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.0 before 18.6.6, 18.7 before 18.7.4, and 1...
CVE-2025-13650MEDIUM6.1An attacker with access to the web application ZeusWeb of the provider Microcom (in this case, registration is not neces...
CVE-2025-13649MEDIUM6.1An attacker with access to the web application ZeusWeb of the provider Microcom (in this case, registration is not nec...
CVE-2025-13648MEDIUM6.1An attacker with access to the web application ZeusWeb of the provider Microcom (in this case, registration is require...
CVE-2025-10912MEDIUM5.4Authorization Bypass Through User-Controlled Key vulnerability in Saastech Cleaning and Internet Services Inc. TemizlikY...
CVE-2025-15400MEDIUM6.5The OpenPix for WooCommerce WordPress plugin through 2.13.3 allows any authenticated user to trigger AJAX actions that r...
CVE-2025-15524MEDIUM4.3The Gallery by FooGallery plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability ...
CVE-2025-13431MEDIUM6.5The SlimStat Analytics plugin for WordPress is vulnerable to time-based SQL Injection via the ‘args’ parameter in all ve...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now