2025 CVE Vulnerabilities

45,172 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-7798MEDIUM6.3A vulnerability classified as critical has been found in Beijing Shenzhou Shihan Technology Multimedia Integrated Busine...
CVE-2025-52163MEDIUM6.5A Server-Side Request Forgery (SSRF) in the component TunnelServlet of agorum Software GmbH Agorum core open v11.9.2 & v...
CVE-2025-33014MEDIUM6.1IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.7 and 6.2.0.0 through 6.2.0.4 uses a web...
CVE-2025-7797MEDIUM5.5A vulnerability was found in GPAC up to 2.4. It has been rated as problematic. Affected by this issue is the function gf...
CVE-2025-52168MEDIUM6.5Incorrect access control in the dynawebservice component of agorum Software GmbH Agorum core open v11.9.2 & v11.10.1 all...
CVE-2025-52166MEDIUM6.5Incorrect access control in Software GmbH Agorum core open v11.9.2 & v11.10.1 allows authenticated attackers to escalate...
CVE-2025-52162MEDIUM6.5agorum Software GmbH Agorum core open v11.9.2 & v11.10.1 was discovered to contain an XML External Entity (XXE) via the ...
CVE-2025-50586MEDIUM6.5StudentManage v1.0 was discovered to contain Cross-Site Request Forgery (CSRF).
CVE-2025-45157MEDIUM6.5Insecure permissions in Splashin iOS v2.0 allow unauthorized attackers to access location data for specific users.
CVE-2025-45156MEDIUM5.3Splashin iOS v2.0 fails to enforce server-side interval restrictions for location updates for free-tier users.
CVE-2025-7791MEDIUM5.4A vulnerability was found in PHPGurukul Online Security Guards Hiring System 1.0. It has been declared as problematic. T...
CVE-2025-7790MEDIUM6.5A vulnerability was found in D-Link DI-8100 16.07.26A1. It has been classified as critical. This affects an unknown part...
CVE-2025-54078MEDIUM6.1WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. A Reflected Cro...
CVE-2025-54077MEDIUM6.1WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. A Reflected Cro...
CVE-2025-54076MEDIUM6.1WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. A Reflected Cro...
CVE-2025-54059MEDIUM4.4melange allows users to build apk packages using declarative pipelines. Starting in version 0.23.0 and prior to version ...
CVE-2025-46732MEDIUM5.4OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to version 6....
CVE-2025-46000MEDIUM6.5An arbitrary file upload vulnerability in the component /rsc/filemanager.rsc.class.php of Filemanager commit c75b914 v.2...
CVE-2025-7786MEDIUM5.4A vulnerability, which was classified as problematic, has been found in Gnuboard g6 up to 6.0.10. This issue affects som...
CVE-2025-7784MEDIUM6.5A flaw was found in the Keycloak identity and access management system when Fine-Grained Admin Permissions(FGAPv2) are e...
CVE-2025-46002MEDIUM6.5An issue in Filemanager v2.5.0 and below allows attackers to execute a directory traversal via sending a crafted HTTP re...
CVE-2025-7785MEDIUM4.3A vulnerability classified as problematic was found in thinkgem JeeSite up to 5.12.0. This vulnerability affects the fun...
CVE-2025-6233MEDIUM4.9Mattermost versions 10.8.x <= 10.8.1, 10.7.x <= 10.7.3, 10.5.x <= 10.5.7, 9.11.x <= 9.11.16 fail to sanitize input paths...
CVE-2025-50126MEDIUM5.3A stored XSS vulnerability in the RSBlog! component 1.11.6-1.14.5 Joomla was discovered. The issue allows remote authent...
CVE-2025-50058MEDIUM5.1A stored XSS vulnerability in the RSDirectory! component 1.0.0-2.2.8 Joomla was discovered. The issue allows remote auth...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now