2025 CVE Vulnerabilities
45,184 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-24009 | HIGH | 8.2 | 0.4% | May 13, 2025 | A vulnerability has been identified in SIRIUS 3RK3 Modular Safety System (MSS) (All versions), SIRIUS Safety Relays 3SK2... |
| CVE-2025-24008 | HIGH | 8.7 | 0.2% | May 13, 2025 | A vulnerability has been identified in SIRIUS 3RK3 Modular Safety System (MSS) (All versions), SIRIUS Safety Relays 3SK2... |
| CVE-2025-24007 | HIGH | 8.7 | 0.2% | May 13, 2025 | A vulnerability has been identified in SIRIUS 3RK3 Modular Safety System (MSS) (All versions), SIRIUS Safety Relays 3SK2... |
| CVE-2025-22248 | HIGH | 7.5 | 0.4% | May 13, 2025 | The bitnami/pgpool Docker image, and the bitnami/postgres-ha k8s chart, under default configurations, comes with an 'rep... |
| CVE-2025-41645 | HIGH | 8.6 | 0.3% | May 13, 2025 | An unauthenticated remote attacker could use a demo account of the portal to hijack devices that were created in that ac... |
| CVE-2025-27696 | HIGH | 8.8 | 1.0% | May 13, 2025 | Incorrect Authorization vulnerability in Apache Superset allows ownership takeover of dashboards, charts or datasets by ... |
| CVE-2025-4474 | HIGH | 8.8 | 0.4% | May 13, 2025 | The Frontend Dashboard plugin for WordPress is vulnerable to Privilege Escalation due to a missing capability check on t... |
| CVE-2025-4473 | HIGH | 8.8 | 0.4% | May 13, 2025 | The Frontend Dashboard plugin for WordPress is vulnerable to Privilege Escalation due to a missing capability check on t... |
| CVE-2025-4317 | HIGH | 8.8 | 1.1% | May 13, 2025 | The TheGem theme for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the thegem... |
| CVE-2025-22249 | HIGH | 8.2 | 0.3% | May 13, 2025 | VMware Aria automation contains a DOM based Cross-Site Scripting (XSS) vulnerability. A malicious actor may exploit this... |
| CVE-2025-22246 | HIGH | 7.5 | 0.2% | May 13, 2025 | Cloud Foundry UAA release versions from v77.21.0 to v7.31.0 are vulnerable to a private key exposure in logs. |
| CVE-2025-4396 | HIGH | 7.5 | 2.6% | May 13, 2025 | The Relevanssi – A Better Search plugin for WordPress is vulnerable to time-based SQL Injection via the cats and tags qu... |
| CVE-2025-35471 | HIGH | 7.8 | 0.2% | May 13, 2025 | conda-forge openssl-feedstock before 066e83c (2024-05-20), on Microsoft Windows, configures OpenSSL to use an OPENSSLDIR... |
| CVE-2025-43011 | HIGH | 7.7 | 0.3% | May 13, 2025 | Under certain conditions, SAP Landscape Transformation's PCL Basis module does not perform the necessary authorization c... |
| CVE-2025-43010 | HIGH | 8.3 | 0.4% | May 13, 2025 | SAP S/4HANA Cloud Private Edition or on Premise (SCM Master Data Layer (MDL)) allows an authenticated attacker with SAP ... |
| CVE-2025-43000 | HIGH | 7.9 | 0.1% | May 13, 2025 | Under certain conditions Promotion Management Wizard (PMW) allows an attacker to access information which would otherwis... |
| CVE-2025-30018 | HIGH | 7.5 | 0.4% | May 13, 2025 | The Live Auction Cockpit in SAP Supplier Relationship Management (SRM) allows an unauthenticated attacker to submit an a... |
| CVE-2025-31259 | HIGH | 7.8 | 0.2% | May 12, 2025 | A privacy issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.5, macOS Sequoia 15.7, macOS... |
| CVE-2025-31253 | HIGH | 7.1 | 0.2% | May 12, 2025 | This issue was addressed through improved state management. This issue is fixed in iOS 18.5 and iPadOS 18.5. Muting the ... |
| CVE-2025-31249 | HIGH | 7.1 | 0.3% | May 12, 2025 | A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.5. An app may be able to acces... |
| CVE-2025-31247 | HIGH | 7.5 | 0.4% | May 12, 2025 | A logic issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.5, macOS Sonoma 14.7... |
| CVE-2025-31246 | HIGH | 8.8 | 0.5% | May 12, 2025 | The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.5, macOS Sonoma 14.7.6. C... |
| CVE-2025-31244 | HIGH | 8.8 | 0.2% | May 12, 2025 | A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS Sequoia 15.5. An app may be ... |
| CVE-2025-31240 | HIGH | 7.5 | 0.5% | May 12, 2025 | This issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.5, macOS Sonoma 14.7.6, macOS Ven... |
| CVE-2025-31238 | HIGH | 7.3 | 0.9% | May 12, 2025 | The issue was addressed with improved checks. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, macOS Sequoi... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now