2025 CVE Vulnerabilities

45,172 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-8520MEDIUM4.7A vulnerability classified as critical was found in givanz Vvveb up to 1.0.5. This vulnerability affects unknown code of...
CVE-2025-46206MEDIUM6.5An issue in Artifex mupdf 1.25.6, 1.25.5 allows a remote attacker to cause a denial of service via an infinite recursion...
CVE-2025-50420MEDIUM6.5An issue in the pdfseparate utility of freedesktop poppler v25.04.0 allows attackers to cause an infinite recursion via ...
CVE-2025-44962MEDIUM4.3RUCKUS SmartZone (SZ) before 6.1.2p3 Refresh Build allows ../ directory traversal to read files.
CVE-2025-8517MEDIUM6.3A vulnerability was detected in givanz Vvveb 1.0.6.1. Impacted is an unknown function. The manipulation results in sessi...
CVE-2025-8516MEDIUM5.5A security vulnerability has been detected in Kingdee Cloud-Starry-Sky Enterprise Edition up to 8.2. This issue affects ...
CVE-2025-5988MEDIUM5.3A flaw was found in the Ansible aap-gateway. Cross-site request forgery (CSRF) origin checking is not done on requests f...
CVE-2025-38739MEDIUM5.3Dell Digital Delivery, versions prior to 5.6.1.0, contains an Insufficiently Protected Credentials vulnerability. A remo...
CVE-2025-30098MEDIUM6.7Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.1....
CVE-2025-30097MEDIUM6.7Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.1....
CVE-2025-30096MEDIUM6.7Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.1....
CVE-2025-36605MEDIUM6.1Dell Unity, version(s) 5.5 and prior, contain(s) an Improper Neutralization of Input During Web Page Generation ('Cross-...
CVE-2025-0932MEDIUM4.3Use After Free vulnerability in Arm Ltd Bifrost GPU Userspace Driver, Arm Ltd Valhall GPU Userspace Driver, Arm Ltd Arm ...
CVE-2025-8341MEDIUM5Grafana is an open-source platform for monitoring and observability. The Infinity datasource plugin, maintained by Grafa...
CVE-2025-41658MEDIUM5.5CODESYS Runtime Toolkit-based products may expose sensitive files to local low-privileged operating system users due to ...
CVE-2025-48499MEDIUM6.9Out-of-bounds write vulnerability exists in FUJIFILM Business Innovation MFPs. A specially crafted IPP (Internet Printin...
CVE-2025-54962MEDIUM6.4/edit-user in webserver in OpenPLC Runtime 3 through 9cd8f1b allows authenticated users to upload arbitrary files (such ...
CVE-2025-20698MEDIUM6.7In Power HAL, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation...
CVE-2025-20697MEDIUM6.7In Power HAL, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation...
CVE-2025-20696MEDIUM6.8In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pri...
CVE-2025-8513MEDIUM5.3A vulnerability, which was classified as problematic, was found in Caixin News App 8.0.1 on Android. Affected is an unkn...
CVE-2025-8512MEDIUM5.3A vulnerability, which was classified as problematic, has been found in TVB Big Big Shop App 2.9.0 on Android. This issu...
CVE-2025-8511MEDIUM5.4A vulnerability classified as problematic was found in Portabilis i-Diario 1.5.0. This vulnerability affects unknown cod...
CVE-2025-8510MEDIUM5.4A vulnerability classified as problematic has been found in Portabilis i-Educar 2.10. This affects the function Gerar of...
CVE-2025-8509MEDIUM5.4A vulnerability was found in Portabilis i-Educar 2.9. It has been rated as problematic. Affected by this issue is some u...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now