2025 CVE Vulnerabilities

45,203 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-55034HIGH8.8General Industrial Controls Lynx+ Gateway is vulnerable to a weak password requirement vulnerability, which may allow a...
CVE-2025-1256Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2025-13188CRITICAL9.8A vulnerability was detected in D-Link DIR-816L 2_06_b09_beta. Affected by this vulnerability is the function authentica...
CVE-2025-13187HIGH7.5A security vulnerability has been detected in Intelbras ICIP 2.0.20. Affected is an unknown function of the file /xml/si...
CVE-2025-13186MEDIUM5.4A weakness has been identified in Bdtask/CodeCanyon Isshue Multi Store eCommerce Shopping Cart Solution up to 4.0. This ...
CVE-2025-64084MEDIUM5.4An authenticated SQL injection vulnerability exists in Cloudlog 2.7.5 and earlier. The vucc_details_ajax function in app...
CVE-2025-63891HIGH7.5Information Disclosure in web-accessible backup file in SourceCodester Simple Online Book Store System allows a remote u...
CVE-2025-63745MEDIUM5.5A NULL pointer dereference vulnerability was discovered in radare2 6.0.5 and earlier within the info() function of bin_n...
CVE-2025-63744MEDIUM4.3A NULL pointer dereference vulnerability was discovered in radare2 6.0.5 and earlier within the load() function of bin_d...
CVE-2025-13185HIGH7.2A security flaw has been discovered in Bdtask/CodeCanyon News365 up to 7.0.3. This affects an unknown function of the fi...
CVE-2025-13182MEDIUM4.8A vulnerability was identified in pojoin h3blog 1.0. The impacted element is an unknown function of the file /admin/cms/...
CVE-2025-63701MEDIUM6.8A heap corruption vulnerability exists in the Advantech TP-3250 printer driver's DrvUI_x64_ADVANTECH.dll (v0.3.9200.2078...
CVE-2025-13181MEDIUM4.8A vulnerability was determined in pojoin h3blog 1.0. The affected element is an unknown function of the file /admin/cms/...
CVE-2025-13180MEDIUM5.4A vulnerability was found in Bdtask/CodeCanyon Wholesale Inventory Control and Inventory Management System up to 2025032...
CVE-2025-13179MEDIUM6.5A vulnerability has been found in Bdtask/CodeCanyon Wholesale Inventory Control and Inventory Management System up to 20...
CVE-2025-13033HIGH7.5A vulnerability was identified in the email parsing library due to improper handling of specially formatted recipient em...
CVE-2025-63680HIGH8.6Nero BackItUp in the Nero Productline is vulnerable to a path parsing/UI rendering flaw (CWE-22) that, in combination wi...
CVE-2025-63291MEDIUM5.4When processing API requests, the Alteryx server 2022.1.1.42654 and 2024.1 used MongoDB object IDs to uniquely identify ...
CVE-2025-13178MEDIUM5.4A flaw has been found in Bdtask/CodeCanyon SalesERP up to 20250728. This vulnerability affects unknown code of the file ...
CVE-2025-13177HIGH8.8A vulnerability was detected in Bdtask/CodeCanyon SalesERP up to 20250728. This affects an unknown part. The manipulatio...
CVE-2025-13174MEDIUM6.3A weakness has been identified in rachelos WeRSS we-mp-rss up to 1.4.7. Affected by this vulnerability is the function d...
CVE-2025-12187Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All r...
CVE-2025-63830MEDIUM6.1CKFinder 1.4.3 is vulnerable to Cross Site Scripting (XSS) in the File Upload function. An attacker can upload a crafted...
CVE-2025-63725MEDIUM6.1Reflected Cross-Site Scripting (XSS) vulnerability in SVX Portal 2.7A via the id parameter to Recivers.php.
CVE-2025-63724MEDIUM6SQL injection (SQL-i) vulnerability in SVX Portal 2.7A via crafted POST request to admin/update_setings.php.

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now