2025 CVE Vulnerabilities
45,180 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-48796 | HIGH | 7.3 | 0.2% | May 27, 2025 | A flaw was found in GIMP. The GIMP ani_load_image() function is vulnerable to a stack-based overflow. If a user opens.AN... |
| CVE-2025-5272 | HIGH | 7.3 | 0.3% | May 27, 2025 | Memory safety bugs present in Firefox 138 and Thunderbird 138. Some of these bugs showed evidence of memory corruption a... |
| CVE-2025-5270 | HIGH | 7.5 | 0.2% | May 27, 2025 | In certain cases, SNI could have been sent unencrypted even when encrypted DNS was enabled. This vulnerability was fixed... |
| CVE-2025-5269 | HIGH | 8.1 | 0.4% | May 27, 2025 | Memory safety bug present in Firefox ESR 128.10, and Thunderbird 128.10. This bug showed evidence of memory corruption a... |
| CVE-2025-5268 | HIGH | 8.1 | 0.4% | May 27, 2025 | Memory safety bugs present in Firefox 138, Thunderbird 138, Firefox ESR 128.10, and Thunderbird 128.10. Some of these bu... |
| CVE-2025-5262 | HIGH | 7.5 | 0.4% | May 27, 2025 | A double-free could have occurred in `vpx_codec_enc_init_multi` after a failed allocation when initializing the encoder ... |
| CVE-2025-5244 | HIGH | 7.8 | 0.2% | May 27, 2025 | A vulnerability was found in GNU Binutils up to 2.44. It has been rated as critical. Affected by this issue is the funct... |
| CVE-2025-5117 | HIGH | 8.8 | 0.4% | May 27, 2025 | The Property plugin for WordPress is vulnerable to Privilege Escalation due to a missing capability check on the use of ... |
| CVE-2025-41653 | HIGH | 7.5 | 0.5% | May 27, 2025 | An unauthenticated remote attacker can exploit a denial-of-service vulnerability in the device's web server functionalit... |
| CVE-2025-41650 | HIGH | 7.5 | 0.4% | May 27, 2025 | An unauthenticated remote attacker can exploit input validation in cmd services of the devices, allowing them to disrupt... |
| CVE-2025-41649 | HIGH | 7.5 | 0.4% | May 27, 2025 | An unauthenticated remote attacker can exploit insufficient input validation to write data beyond the bounds of a buffer... |
| CVE-2025-5232 | HIGH | 7.2 | 0.3% | May 27, 2025 | A vulnerability, which was classified as critical, has been found in PHPGurukul Student Study Center Management System 1... |
| CVE-2025-5228 | HIGH | 8.8 | 2.0% | May 27, 2025 | A vulnerability was found in D-Link DI-8100 up to 20250523. It has been classified as critical. Affected is the function... |
| CVE-2025-5227 | HIGH | 7.3 | 0.4% | May 27, 2025 | A vulnerability was found in PHPGurukul Small CRM 3.0 and classified as critical. This issue affects some unknown proces... |
| CVE-2025-48828 | HIGH | 8.1 | 48.4% | May 27, 2025 | Certain vBulletin versions might allow attackers to execute arbitrary PHP code by abusing Template Conditionals in the t... |
| CVE-2025-26211 | HIGH | 8.8 | 0.2% | May 27, 2025 | Gibbon before 29.0.00 allows CSRF. |
| CVE-2025-5226 | HIGH | 7.3 | 0.4% | May 27, 2025 | A vulnerability has been found in PHPGurukul Small CRM 3.0 and classified as critical. This vulnerability affects unknow... |
| CVE-2025-5204 | HIGH | 7.8 | 0.2% | May 26, 2025 | A vulnerability classified as problematic has been found in Open Asset Import Library Assimp 5.4.3. This affects the fun... |
| CVE-2025-5203 | HIGH | 7.8 | 0.2% | May 26, 2025 | A vulnerability was found in Open Asset Import Library Assimp 5.4.3. It has been rated as problematic. Affected by this ... |
| CVE-2025-5202 | HIGH | 7.8 | 0.2% | May 26, 2025 | A vulnerability was found in Open Asset Import Library Assimp 5.4.3. It has been declared as problematic. Affected by th... |
| CVE-2025-5201 | HIGH | 7.8 | 0.2% | May 26, 2025 | A vulnerability was found in Open Asset Import Library Assimp 5.4.3. It has been classified as problematic. Affected is ... |
| CVE-2025-5200 | HIGH | 7.8 | 0.2% | May 26, 2025 | A vulnerability was found in Open Asset Import Library Assimp 5.4.3 and classified as problematic. This issue affects th... |
| CVE-2025-23395 | HIGH | 7.8 | 0.2% | May 26, 2025 | Screen 5.0.0 when it runs with setuid-root privileges does not drop privileges while operating on a user supplied path. ... |
| CVE-2025-5196 | HIGH | 7.5 | 0.8% | May 26, 2025 | A vulnerability has been found in Wing FTP Server up to 7.4.3 and classified as critical. Affected by this vulnerability... |
| CVE-2025-5186 | HIGH | 8.8 | 0.4% | May 26, 2025 | A vulnerability was found in thinkgem JeeSite up to 5.11.1. It has been rated as critical. Affected by this issue is the... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now