2025 CVE Vulnerabilities
45,184 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-64070 | MEDIUM | 5.4 | 0.2% | Dec 2, 2025 | Sourcecodester Student Grades Management System v1.0 is vulnerable to Cross Site Scripting (XSS) in the Add New Subject ... |
| CVE-2025-13828 | CRITICAL | 9 | 0.2% | Dec 2, 2025 | SummaryA non privileged user can install and remove arbitrary packages via composer for a composer based installed, even... |
| CVE-2025-13827 | HIGH | 8.8 | 0.4% | Dec 2, 2025 | Summary Arbitrary files can be uploaded via the GrapesJS Builder, as the types of files that can be uploaded are not res... |
| CVE-2025-65187 | MEDIUM | 6.1 | 0.2% | Dec 2, 2025 | A Stored Cross Site Scripting vulnerability exists in CiviCRM before v6.7 in the Accounting Batches field. An authentica... |
| CVE-2025-64460 | HIGH | 7.5 | 2.1% | Dec 2, 2025 | An issue was discovered in 5.2 before 5.2.9, 5.1 before 5.1.15, and 4.2 before 4.2.27. Algorithmic complexity in `django... |
| CVE-2025-63872 | MEDIUM | 6.1 | 0.2% | Dec 2, 2025 | DeepSeek V3.2 has a Cross Site Scripting (XSS) vulnerability, which allows JavaScript execution through model-generated ... |
| CVE-2025-59704 | MEDIUM | 4.6 | 0.2% | Dec 2, 2025 | Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow an attacker to gain access the ... |
| CVE-2025-59703 | CRITICAL | 9.1 | 0.4% | Dec 2, 2025 | Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a Physically Proximate Attacker... |
| CVE-2025-58113 | MEDIUM | 6.5 | 0.3% | Dec 2, 2025 | An out-of-bounds read vulnerability exists in the EMF functionality of PDF-XChange Co. Ltd PDF-XChange Editor 10.7.3.401... |
| CVE-2025-13877 | MEDIUM | 5.6 | 0.3% | Dec 2, 2025 | A vulnerability was detected in nocobase up to 1.9.4/2.0.0-alpha.37. The affected element is an unknown function of the ... |
| CVE-2025-13372 | MEDIUM | 4.3 | 0.9% | Dec 2, 2025 | An issue was discovered in 5.2 before 5.2.9, 5.1 before 5.1.15, and 4.2 before 4.2.27. `FilteredRelation` is subject to ... |
| CVE-2025-12630 | MEDIUM | 4.9 | 0.2% | Dec 2, 2025 | The Upload.am WordPress plugin before 1.0.1 is vulnerable to arbitrary option disclosure due to a missing capability ch... |
| CVE-2025-59705 | MEDIUM | 6.8 | 0.3% | Dec 2, 2025 | Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a Physically Proximate Attacker... |
| CVE-2025-59702 | HIGH | 7.2 | 0.3% | Dec 2, 2025 | Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a physically proximate attacker... |
| CVE-2025-59701 | MEDIUM | 4.1 | 0.2% | Dec 2, 2025 | Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a physically proximate attacker... |
| CVE-2025-59700 | LOW | 3.9 | 0.1% | Dec 2, 2025 | Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a physically proximate attacker... |
| CVE-2025-59699 | MEDIUM | 6.8 | 0.3% | Dec 2, 2025 | Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a physically proximate attacker... |
| CVE-2025-59698 | MEDIUM | 6.8 | 0.3% | Dec 2, 2025 | Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, might allow a physically proximate at... |
| CVE-2025-59697 | HIGH | 7.2 | 0.3% | Dec 2, 2025 | Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a physically proximate attacker... |
| CVE-2025-59696 | LOW | 3.2 | 0.2% | Dec 2, 2025 | Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a physically proximate attacker... |
| CVE-2025-59695 | CRITICAL | 9.8 | 0.5% | Dec 2, 2025 | Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a user with OS root access to a... |
| CVE-2025-59694 | MEDIUM | 6.8 | 0.3% | Dec 2, 2025 | The Chassis Management Board in Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow... |
| CVE-2025-59693 | CRITICAL | 9.8 | 0.7% | Dec 2, 2025 | The Chassis Management Board in Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow... |
| CVE-2025-13876 | HIGH | 7.8 | 0.3% | Dec 2, 2025 | A security vulnerability has been detected in Rareprob HD Video Player All Formats App 12.1.372 on Android. Impacted is ... |
| CVE-2025-13875 | MEDIUM | 6.3 | 0.3% | Dec 2, 2025 | A weakness has been identified in Yohann0617 oci-helper up to 3.2.4. This issue affects the function addCfg of the file ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now