2025 CVE Vulnerabilities

45,320 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-14831MEDIUM5.3A flaw was found in GnuTLS. This vulnerability allows a denial of service (DoS) by excessive CPU (Central Processing Uni...
CVE-2025-10464MEDIUM6.5Insecure Storage of Sensitive Information vulnerability in Birtech Information Technologies Industry and Trade Ltd. Co. ...
CVE-2025-7708MEDIUM6.8Insertion of Sensitive Information Into Sent Data vulnerability in Atlas Educational Software Industry Ltd. Co. K12net a...
CVE-2025-66596MEDIUM6.1A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product does not properl...
CVE-2025-66595MEDIUM5.4A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product is vulnerable to...
CVE-2025-66594MEDIUM5.3A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. Detailed messages are displayed...
CVE-2025-66607MEDIUM5.3A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. The response header contains ...
CVE-2025-66605MEDIUM5.3A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. Since there are input fields ...
CVE-2025-66604MEDIUM5.3A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. The library version could be ...
CVE-2025-66601MEDIUM6.1A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product does not specify...
CVE-2025-66599MEDIUM6.9A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. Physical paths could be displ...
CVE-2025-15564MEDIUM5.5A vulnerability has been found in Mapnik up to 4.2.0. This vulnerability affects the function mapnik::detail::mod<...>::...
CVE-2025-15477MEDIUM6.5The Bucketlister plugin for WordPress is vulnerable to SQL Injection via the plugin's shortcode `category` and `id` attr...
CVE-2025-15476MEDIUM4.3The The Bucketlister plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability...
CVE-2025-15491MEDIUM5.5The Post Slides WordPress plugin through 1.0.1 does not validate some shortcode attributes before using them to generate...
CVE-2025-15267MEDIUM6.4The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's bt_bb_accordion...
CVE-2025-13463MEDIUM6.4The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Grid component in a...
CVE-2025-12803MEDIUM6.4The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin 'bt_bb_tabs' shor...
CVE-2025-12159MEDIUM6.4The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's bt_bb_raw_conte...
CVE-2025-31990MEDIUM6.8Rate limiting for certain API calls is not being enforced, making HCL Velocity vulnerable to Denial of Service (DoS) att...
CVE-2025-69216MEDIUM6.5OpenSTAManager is an open source management software for technical assistance and invoicing. In 2.9.8 and earlier, an au...
CVE-2025-13523MEDIUM5.4Mattermost Confluence plugin version <1.7.0 fails to properly escape user-controlled display names in HTML template rend...
CVE-2025-13818MEDIUM6.7Local privilege escalation vulnerability via insecure temporary batch file execution in ESET Management Agent
CVE-2025-10753MEDIUM5.3The OAuth Single Sign On – SSO (OAuth Client) plugin for WordPress is vulnerable to unauthorized access in all versions ...
CVE-2025-32393MEDIUM6.5AutoGPT is a platform that allows users to create, deploy, and manage continuous artificial intelligence agents that aut...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now