2025 CVE Vulnerabilities
45,174 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-20272 | MEDIUM | 4.3 | 0.3% | Jul 16, 2025 | A vulnerability in a subset of REST APIs of Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager (E... |
| CVE-2025-53936 | MEDIUM | 6.1 | 0.3% | Jul 16, 2025 | WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. A Reflected Cro... |
| CVE-2025-53935 | MEDIUM | 6.1 | 0.3% | Jul 16, 2025 | WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. A Reflected Cro... |
| CVE-2025-53934 | MEDIUM | 5.4 | 0.3% | Jul 16, 2025 | WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. A Stored Cross-... |
| CVE-2025-53933 | MEDIUM | 5.4 | 0.3% | Jul 16, 2025 | WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. A Stored Cross-... |
| CVE-2025-53932 | MEDIUM | 6.1 | 0.3% | Jul 16, 2025 | WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. A Reflected Cro... |
| CVE-2025-53931 | MEDIUM | 5.4 | 0.3% | Jul 16, 2025 | WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. A Stored Cross-... |
| CVE-2025-53930 | MEDIUM | 5.4 | 0.3% | Jul 16, 2025 | WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. A Stored Cross-... |
| CVE-2025-53929 | MEDIUM | 5.4 | 0.3% | Jul 16, 2025 | WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. A Stored Cross-... |
| CVE-2025-53926 | MEDIUM | 6.1 | 0.3% | Jul 16, 2025 | Emlog is an open source website building system. A cross-site scripting (XSS) vulnerability in emlog up to and including... |
| CVE-2025-47053 | MEDIUM | 5.4 | 0.3% | Jul 16, 2025 | Adobe Experience Manager versions 6.5.22 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerabilit... |
| CVE-2025-46959 | MEDIUM | 5.4 | 0.3% | Jul 16, 2025 | Adobe Experience Manager versions 6.5.22 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerabilit... |
| CVE-2025-53925 | MEDIUM | 5.4 | 0.3% | Jul 16, 2025 | Emlog is an open source website building system. A cross-site scripting (XSS) vulnerability in emlog up to and including... |
| CVE-2025-53924 | MEDIUM | 4.8 | 0.3% | Jul 16, 2025 | Emlog is an open source website building system. A cross-site scripting (XSS) vulnerability in emlog up to and including... |
| CVE-2025-53923 | MEDIUM | 6.1 | 0.4% | Jul 16, 2025 | Emlog is an open source website building system. A cross-site scripting (XSS) vulnerability in emlog up to and including... |
| CVE-2025-53892 | MEDIUM | 5.3 | 0.7% | Jul 16, 2025 | Vue I18n is the internationalization plugin for Vue.js. The escapeParameterHtml: true option in Vue I18n is designed to ... |
| CVE-2025-40919 | MEDIUM | 6.5 | 0.3% | Jul 16, 2025 | Authen::DigestMD5 versions 0.01 through 0.02 for Perl generate the cnonce insecurely. The cnonce (client nonce) is gene... |
| CVE-2025-40918 | MEDIUM | 6.5 | 0.4% | Jul 16, 2025 | Authen::SASL::Perl::DIGEST_MD5 versions 2.04 through 2.1800 for Perl generates the cnonce insecurely. The cnonce (clien... |
| CVE-2025-40913 | MEDIUM | 6.5 | 0.3% | Jul 16, 2025 | Net::Dropbear versions through 0.16 for Perl contains a dependency that may be susceptible to an integer overflow. Net:... |
| CVE-2025-3871 | MEDIUM | 5.3 | 0.3% | Jul 16, 2025 | Broken access control in Fortra's GoAnywhere MFT prior to 7.8.1 allows an attacker to create a denial of service situati... |
| CVE-2025-53758 | MEDIUM | 5.1 | 0.1% | Jul 16, 2025 | This vulnerability exists in Digisol DG-GR6821AC Router due to use of default admin credentials at its web management in... |
| CVE-2025-53755 | MEDIUM | 5.1 | 0.1% | Jul 16, 2025 | This vulnerability exists in Digisol DG-GR6821AC Router due to storage of credentials and PINS without encryption in the... |
| CVE-2025-53754 | MEDIUM | 5.1 | 0.2% | Jul 16, 2025 | This vulnerability exists in Digisol DG-GR6821AC Router due to hard-coded Root Access Credentials in system configuratio... |
| CVE-2025-50028 | MEDIUM | 6.5 | 0.3% | Jul 16, 2025 | Missing Authorization vulnerability in CodeSolz Ultimate Push Notifications ultimate-push-notifications allows Exploitin... |
| CVE-2025-49884 | MEDIUM | 6.5 | 0.3% | Jul 16, 2025 | Missing Authorization vulnerability in alexvtn Internal Linking of Related Contents internal-linking-of-related-contents... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now