2025 CVE Vulnerabilities
45,203 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-54562 | MEDIUM | 4.3 | 0.2% | Nov 14, 2025 | A vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2 which allows ... |
| CVE-2025-54561 | MEDIUM | 4.3 | 0.2% | Nov 14, 2025 | An Incorrect Access Control vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.1... |
| CVE-2025-54560 | LOW | 3.8 | 0.2% | Nov 14, 2025 | A Server-side Request Forgery vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0... |
| CVE-2025-54559 | LOW | 3.7 | 0.2% | Nov 14, 2025 | An issue was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2 which allows remote ... |
| CVE-2025-54348 | MEDIUM | 6.5 | 0.1% | Nov 14, 2025 | A Stored Cross Site Scripting (XSS) vulnerability was found in the Application Server of Desktop Alert PingAlert version... |
| CVE-2025-54346 | HIGH | 7.6 | 0.2% | Nov 14, 2025 | A Reflected Cross Site Scripting (XSS) vulnerability was found in the Application Server of Desktop Alert PingAlert vers... |
| CVE-2025-54345 | HIGH | 7.5 | 0.3% | Nov 14, 2025 | An issue was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2. Sensitive Informati... |
| CVE-2025-54343 | CRITICAL | 9.6 | 0.2% | Nov 14, 2025 | An Incorrect Access Control vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.1... |
| CVE-2025-54342 | LOW | 3.3 | 0.1% | Nov 14, 2025 | A vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2. There is Exp... |
| CVE-2025-54340 | MEDIUM | 4.1 | 0.1% | Nov 14, 2025 | A vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2. There is a B... |
| CVE-2025-54339 | CRITICAL | 10 | 0.3% | Nov 14, 2025 | An Incorrect Access Control vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.1... |
| CVE-2025-4618 | MEDIUM | 4.4 | 0.1% | Nov 14, 2025 | A sensitive information disclosure vulnerability in Palo Alto Networks Prisma® Browser allows a locally authenticated no... |
| CVE-2025-4617 | LOW | 1.1 | 0.1% | Nov 14, 2025 | An insufficient policy enforcement vulnerability in Palo Alto Networks Prisma® Browser on Windows allows a locally authe... |
| CVE-2025-4616 | LOW | 1.1 | 0.1% | Nov 14, 2025 | An insufficient validation of an untrusted input vulnerability in Palo Alto Networks Prisma® Browser allows a locally au... |
| CVE-2025-13172 | HIGH | 8.8 | 0.2% | Nov 14, 2025 | A security flaw has been discovered in CodeAstro Gym Management System 1.0. Affected is an unknown function of the file ... |
| CVE-2025-13171 | HIGH | 8.8 | 0.3% | Nov 14, 2025 | A vulnerability was identified in ZZCMS 2023. This impacts an unknown function of the file /admin/wangkan_list.php. Such... |
| CVE-2025-13204 | HIGH | 7.3 | 0.4% | Nov 14, 2025 | npm package `expr-eval` is vulnerable to Prototype Pollution. An attacker with access to express eval interface can use ... |
| CVE-2025-12897 | — | — | — | Nov 14, 2025 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All r... |
| CVE-2025-8870 | MEDIUM | 5.6 | 0.1% | Nov 14, 2025 | On affected platforms running Arista EOS, certain serial console input might result in an unexpected reload of the devic... |
| CVE-2025-64446 | CRITICAL | 9.8 | 89.5% | Nov 14, 2025 | A relative path traversal vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.1, FortiWeb 7.6.0 through 7.6.4, FortiWeb... |
| CVE-2025-13170 | CRITICAL | 9.8 | 0.3% | Nov 14, 2025 | A vulnerability was detected in code-projects Simple Online Hotel Reservation System 1.0. This issue affects some unknow... |
| CVE-2025-13169 | CRITICAL | 9.8 | 0.4% | Nov 14, 2025 | A security vulnerability has been detected in code-projects Simple Online Hotel Reservation System 1.0. This vulnerabili... |
| CVE-2025-13168 | CRITICAL | 9.8 | 0.3% | Nov 14, 2025 | A weakness has been identified in ury-erp ury up to 0.2.0. This affects the function overrided_past_order_list of the fi... |
| CVE-2025-9982 | HIGH | 7.5 | 0.2% | Nov 14, 2025 | A vulnerability exists in QuickCMS version 6.8 where sensitive admin credentials are hardcoded in a configuration file a... |
| CVE-2025-12149 | MEDIUM | 6 | 0.2% | Nov 14, 2025 | In Search Guard FLX versions 3.1.2 and earlier, while Document-Level Security (DLS) is correctly enforced elsewhere, whe... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now