2025 CVE Vulnerabilities
45,172 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-49154 | HIGH | 7.8 | 0.1% | Jun 17, 2025 | An insecure access control vulnerability in Trend Micro Apex One and Trend Micro Worry-Free Business Security could allo... |
| CVE-2025-34511 | HIGH | 8.8 | 8.5% | Jun 17, 2025 | Sitecore PowerShell Extensions, an add-on to Sitecore Experience Manager (XM) and Experience Platform (XP), through vers... |
| CVE-2025-34510 | HIGH | 8.8 | 9.2% | Jun 17, 2025 | Sitecore Experience Manager (XM), Experience Platform (XP), and Experience Commerce (XC) versions 9.0 through 9.3 and 10... |
| CVE-2025-34509 | HIGH | 7.5 | 38.4% | Jun 17, 2025 | Sitecore Experience Manager (XM) and Experience Platform (XP) versions 10.1 to 10.1.4 rev. 011974 PRE, all versions of 1... |
| CVE-2025-47866 | HIGH | 7.5 | 0.2% | Jun 17, 2025 | An unrestricted file upload vulnerability in a Trend Micro Apex Central widget below version 8.0.6955 could allow an att... |
| CVE-2025-33122 | HIGH | 7.5 | 0.3% | Jun 17, 2025 | IBM i 7.2, 7.3, 7.4, 7.5, and 7.6 could allow a user to gain elevated privileges due to an unqualified library call in I... |
| CVE-2025-49879 | HIGH | 8.6 | 0.4% | Jun 17, 2025 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in themezaa Litho litho all... |
| CVE-2025-49854 | HIGH | 7.6 | 0.3% | Jun 17, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Anh Tran Slim SEO ... |
| CVE-2025-49508 | HIGH | 8.1 | 0.4% | Jun 17, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-49451 | HIGH | 7.5 | 0.4% | Jun 17, 2025 | Path Traversal: '.../...//' vulnerability in yannisraft Aeroscroll Gallery – Infinite Scroll Image Gallery & Post Grid w... |
| CVE-2025-49415 | HIGH | 8.6 | 0.4% | Jun 17, 2025 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Fastw3b LLC FW Gallery f... |
| CVE-2025-49331 | HIGH | 7.2 | 0.4% | Jun 17, 2025 | Deserialization of Untrusted Data vulnerability in impleCode eCommerce Product Catalog ecommerce-product-catalog allows ... |
| CVE-2025-49316 | HIGH | 7.1 | 0.3% | Jun 17, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Saleswonder Team: ... |
| CVE-2025-49312 | HIGH | 7.1 | 0.3% | Jun 17, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CodeRevolution Ech... |
| CVE-2025-49266 | HIGH | 7.1 | 0.3% | Jun 17, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Rustaurius Ultimat... |
| CVE-2025-49261 | HIGH | 8.1 | 0.5% | Jun 17, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-49260 | HIGH | 8.1 | 0.5% | Jun 17, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-49259 | HIGH | 8.1 | 0.4% | Jun 17, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-49258 | HIGH | 8.1 | 0.5% | Jun 17, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-49257 | HIGH | 8.1 | 0.4% | Jun 17, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-49256 | HIGH | 8.1 | 0.4% | Jun 17, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-49255 | HIGH | 8.1 | 0.4% | Jun 17, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-49254 | HIGH | 8.1 | 0.4% | Jun 17, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-49253 | HIGH | 8.1 | 0.4% | Jun 17, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-49252 | HIGH | 8.1 | 0.4% | Jun 17, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now