2025 CVE Vulnerabilities

45,172 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-1411HIGH7.8IBM Security Verify Directory Container 10.0.0.0 through 10.0.3.1 could allow a local user to execute commands as root d...
CVE-2025-4200HIGH8.1The Zagg - Electronics & Accessories WooCommerce WordPress Theme theme for WordPress is vulnerable to Local File Inclusi...
CVE-2025-5487HIGH7.2The AutomatorWP – Automator plugin for no-code automations, webhooks & custom integrations in WordPress plugin for WordP...
CVE-2025-3234HIGH7.2The File Manager Pro – Filester plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type va...
CVE-2025-33108HIGH8.8IBM Backup, Recovery and Media Services for i 7.4 and 7.5 could allow a user with the capability to compile or restore a...
CVE-2025-25215HIGH8.8An arbitrary free vulnerability exists in the cv_close functionality of Dell ControlVault3 prior to 5.15.10.14 and Dell...
CVE-2025-24919HIGH8.1A deserialization of untrusted input vulnerability exists in the cvhDecapsulateCmd functionality of Dell ControlVault3 p...
CVE-2025-25050HIGH8.8An out-of-bounds write vulnerability exists in the cv_upgrade_sensor_firmware functionality of Dell ControlVault3 prior...
CVE-2025-24922HIGH8.8A stack-based buffer overflow vulnerability exists in the securebio_identify functionality of Dell ControlVault3 prior ...
CVE-2025-24311HIGH8.4An out-of-bounds read vulnerability exists in the cv_send_blockdata functionality of Dell ControlVault3 prior to 5.15.1...
CVE-2025-49587HIGH8XWiki is an open-source wiki software platform. When a user without script right creates a document with an XWiki.Notifi...
CVE-2025-49586HIGH8.8XWiki is an open-source wiki software platform. Any XWiki user with edit right on at least one App Within Minutes applic...
CVE-2025-49585HIGH8XWiki is a generic wiki platform. In versions before 15.10.16, 16.0.0-rc-1 through 16.4.6, and 16.5.0-rc-1 through 16.10...
CVE-2025-49584HIGH7.5XWiki is a generic wiki platform. In XWiki Platform versions 10.9 through 16.4.6, 16.5.0-rc-1 through 16.10.2, and 17.0....
CVE-2025-49582HIGH8XWiki is a generic wiki platform. When editing content that contains "dangerous" macros like malicious script macros tha...
CVE-2025-6052HIGH7.5A flaw was found in how GLib’s GString manages memory when adding data to strings. If a string is already very large, co...
CVE-2025-49581HIGH8.8XWiki is a generic wiki platform. Any user with edit right on a page (could be the user's profile) can execute code (Gro...
CVE-2025-49580HIGH8XWiki is a generic wiki platform. From 8.2 and 7.4.5 until 17.1.0-rc-1, 16.10.4, and 16.4.7, pages can gain script or pr...
CVE-2025-48920HIGH7.3Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal etracker al...
CVE-2025-48918HIGH8.8Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Simple Klar...
CVE-2025-48915HIGH8.6Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal COOKiES Con...
CVE-2025-48914HIGH8.6Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal COOKiES Con...
CVE-2025-36633HIGH7.8In Tenable Agent versions prior to 10.8.5 on a Windows host, it was found that a non-administrative user could arbitrari...
CVE-2025-36631HIGH7.8In Tenable Agent versions prior to 10.8.5 on a Windows host, it was found that a non-administrative user could overwrite...
CVE-2025-28382HIGH7.5An issue in the openc3-api/tables endpoint of OpenC3 COSMOS before 6.1.0 allows attackers to execute a directory travers...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now