2025 CVE Vulnerabilities

45,172 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-8753MEDIUM5.4A vulnerability, which was classified as critical, has been found in linlinjava litemall up to 1.8.0. Affected by this i...
CVE-2025-7726MEDIUM6.4The The7 theme for WordPress is vulnerable to Stored Cross-Site Scripting via its lightbox rendering code in all version...
CVE-2025-7020MEDIUM5.1An incorrect encryption implementation vulnerability exists in the system log dump feature of BYD's DiLink 3.0 OS (e.g. ...
CVE-2025-8751MEDIUM6.1A vulnerability was found in Protected Total WebShield Extension up to 3.2.0 on Chrome. It has been classified as proble...
CVE-2025-8750MEDIUM5.4A vulnerability has been found in macrozheng mall up to 1.0.3 and classified as problematic. Affected by this vulnerabil...
CVE-2025-8746MEDIUM5.5A vulnerability, which was classified as problematic, was found in GNU libopts up to 27.6. Affected is the function __st...
CVE-2025-8745MEDIUM5.5A vulnerability, which was classified as problematic, has been found in Weee RICEPO App 6.17.77 on Android. This issue a...
CVE-2025-4655MEDIUM5SSRF vulnerability in FreeMarker templates in Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025.Q1.0 through ...
CVE-2025-55149MEDIUM6.7Tiny-Scientist is a lightweight framework for automating the entire lifecycle of scientific research—from ideation to im...
CVE-2025-55013MEDIUM4.2The Assemblyline 4 Service Client interfaces with the API to fetch tasks and publish the result for a service in Assembl...
CVE-2025-55003MEDIUM5.7OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certifi...
CVE-2025-55001MEDIUM6.5OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certifi...
CVE-2025-55000MEDIUM6.5OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certifi...
CVE-2025-54998MEDIUM5.3OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certifi...
CVE-2025-55152MEDIUM5.3oak is a middleware framework for Deno's native HTTP server, Deno Deploy, Node.js 16.5 and later, Cloudflare Workers and...
CVE-2025-8743MEDIUM5.4A vulnerability classified as problematic has been found in Scada-LTS up to 2.7.8.1. This affects an unknown part of the...
CVE-2025-8742MEDIUM6.3A vulnerability was found in macrozheng mall 1.0.3. It has been rated as problematic. Affected by this issue is some unk...
CVE-2025-8741MEDIUM5.9A vulnerability was found in macrozheng mall up to 1.0.3. It has been declared as problematic. Affected by this vulnerab...
CVE-2025-8740MEDIUM5.4A vulnerability was found in zhenfeng13 My-Blog up to 1.0.0. It has been classified as problematic. Affected is an unkno...
CVE-2025-8739MEDIUM4.3A vulnerability was found in zhenfeng13 My-Blog up to 1.0.0 and classified as problematic. This issue affects some unkno...
CVE-2025-8738MEDIUM5.5A vulnerability has been found in zlt2000 microservices-platform up to 6.0.0 and classified as problematic. This vulnera...
CVE-2025-8736MEDIUM5.3A vulnerability, which was classified as critical, has been found in GNU cflow up to 1.8. Affected by this issue is the ...
CVE-2025-50928MEDIUM4.8Easy Hosting Control Panel EHCP v20.04.1.b was discovered to contain a SQL injection vulnerability via the id parameter ...
CVE-2025-50927MEDIUM6.3A reflected cross-site scripting (XSS) vulnerability in the List All FTP User Function in EHCP v20.04.1.b allows authent...
CVE-2025-50468MEDIUM6.5OpenMetadata <=1.4.4 is vulnerable to SQL Injection. An attacker can extract information from the database in function l...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now