2025 CVE Vulnerabilities

45,181 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-38237MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: platform: exynos4-is: Add hardware sync wait...
CVE-2025-6743MEDIUM5.4The Woodmart theme for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'multiple_markers' attrib...
CVE-2025-42956MEDIUM6.1SAP NetWeaver Application Server ABAP and ABAP Platform allows an unauthenticated attacker to create a malicious link wh...
CVE-2025-41665MEDIUM6.5An low privileged remote attacker can enforce the watchdog of the affected devices to reboot the PLC due to incorrect de...
CVE-2025-24004MEDIUM5.2A physical attacker with access to the device display via USB-C can send a message to the device which triggers an unsec...
CVE-2025-24002MEDIUM5.3An unauthenticated remote attacker can use MQTT messages to crash a service on charging stations complying with German C...
CVE-2025-5957MEDIUM5.3The Guest Support – Complete customer support ticket system for WordPress plugin for WordPress is vulnerable to unauthor...
CVE-2025-5537MEDIUM5.4The Lightbox & Modal Popup WordPress Plugin – FooBox plugin for WordPress is vulnerable to Stored Cross-Site Scripting v...
CVE-2025-6244MEDIUM5.4The Essential Addons for Elementor – Popular Elementor Templates and Widgets plugin for WordPress is vulnerable to Store...
CVE-2025-5570MEDIUM5.4The AI Engine plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the mwai_chatbot shortcode 'id' para...
CVE-2025-20695MEDIUM6.5In Bluetooth FW, there is a possible system crash due to an uncaught exception. This could lead to remote denial of serv...
CVE-2025-20694MEDIUM6.5In Bluetooth FW, there is a possible system crash due to an uncaught exception. This could lead to remote denial of serv...
CVE-2025-20693MEDIUM6.5In wlan STA driver, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote (...
CVE-2025-20692MEDIUM5.5In wlan AP driver, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local inf...
CVE-2025-20691MEDIUM5.5In wlan AP driver, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local inf...
CVE-2025-20690MEDIUM5.5In wlan AP driver, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local inf...
CVE-2025-20689MEDIUM5.5In wlan AP driver, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local inf...
CVE-2025-20688MEDIUM5.5In wlan AP driver, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local inf...
CVE-2025-20687MEDIUM5.5In Bluetooth driver, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local d...
CVE-2025-7156MEDIUM6.3A vulnerability has been found in hitsz-ids airda 0.0.3 and classified as critical. This vulnerability affects the funct...
CVE-2025-43001MEDIUM6.9SAPCAR allows an attacker logged in with high privileges to override the permissions of the current and parent directori...
CVE-2025-42992MEDIUM6.9SAPCAR allows an attacker logged in with high privileges to create a malicious SAR archive in SAPCAR. This could enable ...
CVE-2025-42986MEDIUM4.3Due to a missing authorization check in an obsolete RFC enabled function module in SAP BASIS, an authenticated low-privi...
CVE-2025-42985MEDIUM6.1Due to insufficient sanitization in the SAP BusinessObjects Content Administrator Workbench, attackers could craft malic...
CVE-2025-42981MEDIUM6.1Due to an open redirect vulnerability in SAP NetWeaver Application Server ABAP, an unauthenticated attacker could craft ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now