2025 CVE Vulnerabilities
45,181 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-5126 | HIGH | 8.8 | 4.7% | May 24, 2025 | A vulnerability was found in Teledyne FLIR AX8 up to 1.46.16. This vulnerability affects the function setDataTime of the... |
| CVE-2025-4602 | HIGH | 7.5 | 0.6% | May 24, 2025 | The eMagicOne Store Manager for WooCommerce plugin for WordPress is vulnerable to Arbitrary File Reads in all versions u... |
| CVE-2025-48754 | HIGH | 7.5 | 0.3% | May 24, 2025 | In the memory_pages crate 0.1.0 for Rust, division by zero can occur. |
| CVE-2025-43860 | HIGH | 7.6 | 3.4% | May 23, 2025 | OpenEMR is a free and open source electronic health records and medical practice management application. A stored cross-... |
| CVE-2025-32794 | HIGH | 7.6 | 4.0% | May 23, 2025 | OpenEMR is a free and open source electronic health records and medical practice management application. A stored cross-... |
| CVE-2025-24917 | HIGH | 7.8 | 0.2% | May 23, 2025 | In Tenable Network Monitor versions prior to 6.5.1 on a Windows host, it was found that a non-administrative user could ... |
| CVE-2025-24916 | HIGH | 7.8 | 0.1% | May 23, 2025 | When installing Tenable Network Monitor to a non-default location on a Windows host, Tenable Network Monitor versions pr... |
| CVE-2025-48292 | HIGH | 8.1 | 0.4% | May 23, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-48286 | HIGH | 7.1 | 0.2% | May 23, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in catkin ReDi Restau... |
| CVE-2025-48273 | HIGH | 7.5 | 0.4% | May 23, 2025 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in wpjobportal WP Job Porta... |
| CVE-2025-48245 | HIGH | 7.1 | 0.2% | May 23, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Saad Iqbal Quick C... |
| CVE-2025-48241 | HIGH | 7.1 | 0.2% | May 23, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Soft8Soft LLC Verg... |
| CVE-2025-47690 | HIGH | 8.8 | 0.3% | May 23, 2025 | Missing Authorization vulnerability in Smackcoders Inc., Lead Form Data Collection to CRM wp-leads-builder-any-crm allow... |
| CVE-2025-47680 | HIGH | 7.1 | 0.2% | May 23, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Michel - xiligroup... |
| CVE-2025-47678 | HIGH | 7.1 | 0.2% | May 23, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in FunnelCockpit Funn... |
| CVE-2025-47673 | HIGH | 7.1 | 0.2% | May 23, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in tychesoftwares Arc... |
| CVE-2025-47672 | HIGH | 8.1 | 0.4% | May 23, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-47671 | HIGH | 7.6 | 0.3% | May 23, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LETSCMS MLM Softwa... |
| CVE-2025-47670 | HIGH | 8.1 | 0.4% | May 23, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-47660 | HIGH | 8.8 | 0.4% | May 23, 2025 | Deserialization of Untrusted Data vulnerability in Codexpert, Inc WC Affiliate wc-affiliate allows Object Injection.This... |
| CVE-2025-47658 | HIGH | 8.8 | 0.4% | May 23, 2025 | Unrestricted Upload of File with Dangerous Type vulnerability in ELEXtensions ELEX WordPress HelpDesk & Customer Ticketi... |
| CVE-2025-47631 | HIGH | 8.8 | 0.3% | May 23, 2025 | Incorrect Privilege Assignment vulnerability in mojoomla Hospital Management System allows Privilege Escalation. This is... |
| CVE-2025-47618 | HIGH | 7.1 | 0.2% | May 23, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mortgage Calculato... |
| CVE-2025-47613 | HIGH | 7.1 | 0.2% | May 23, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in mojoomla School Ma... |
| CVE-2025-47611 | HIGH | 7.1 | 0.2% | May 23, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Khaled User Meta u... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now