2025 CVE Vulnerabilities
45,181 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-7056 | MEDIUM | 6.3 | 0.2% | Jul 7, 2025 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F... |
| CVE-2025-6210 | MEDIUM | 6.2 | 0.3% | Jul 7, 2025 | A vulnerability in the ObsidianReader class of the run-llama/llama_index repository, specifically in version 0.12.27, al... |
| CVE-2025-5472 | MEDIUM | 6.5 | 0.3% | Jul 7, 2025 | The JSONReader in run-llama/llama_index versions 0.12.28 is vulnerable to a stack overflow due to uncontrolled recursive... |
| CVE-2025-4779 | MEDIUM | 6.1 | 0.4% | Jul 7, 2025 | lunary-ai/lunary versions prior to 1.9.24 are vulnerable to stored cross-site scripting (XSS). An unauthenticated attack... |
| CVE-2025-3705 | MEDIUM | 6.8 | 0.8% | Jul 7, 2025 | A physical attacker with no privileges can gain full control of the affected device due to improper neutralization of sp... |
| CVE-2025-3467 | MEDIUM | 5.4 | 0.3% | Jul 7, 2025 | An XSS vulnerability exists in langgenius/dify versions prior to 1.1.3, specifically affecting Firefox browsers. This vu... |
| CVE-2025-3264 | MEDIUM | 5.3 | 0.4% | Jul 7, 2025 | A Regular Expression Denial of Service (ReDoS) vulnerability was discovered in the Hugging Face Transformers library, sp... |
| CVE-2025-3263 | MEDIUM | 5.3 | 0.4% | Jul 7, 2025 | A Regular Expression Denial of Service (ReDoS) vulnerability was discovered in the Hugging Face Transformers library, sp... |
| CVE-2025-3044 | MEDIUM | 5.3 | 0.3% | Jul 7, 2025 | A vulnerability in the ArxivReader class of the run-llama/llama_index repository, versions up to v0.12.22.post1, allows ... |
| CVE-2025-7113 | MEDIUM | 5.4 | 0.2% | Jul 7, 2025 | A vulnerability was found in Portabilis i-Educar 2.9.0. It has been classified as problematic. Affected is an unknown fu... |
| CVE-2025-7112 | MEDIUM | 5.4 | 0.2% | Jul 7, 2025 | A vulnerability was found in Portabilis i-Educar 2.9.0 and classified as problematic. This issue affects some unknown pr... |
| CVE-2025-7111 | MEDIUM | 5.4 | 0.2% | Jul 7, 2025 | A vulnerability has been found in Portabilis i-Educar 2.9.0 and classified as problematic. This vulnerability affects un... |
| CVE-2025-24508 | MEDIUM | 6.4 | 0.1% | Jul 7, 2025 | Extraction of Account Connectivity Credentials (ACCs) from the IT Management Agent secure storage |
| CVE-2025-7110 | MEDIUM | 5.4 | 0.2% | Jul 7, 2025 | A vulnerability, which was classified as problematic, was found in Portabilis i-Educar 2.9.0. This affects an unknown pa... |
| CVE-2025-7109 | MEDIUM | 5.4 | 0.2% | Jul 7, 2025 | A vulnerability, which was classified as problematic, has been found in Portabilis i-Educar 2.9.0. Affected by this issu... |
| CVE-2025-7108 | MEDIUM | 5.4 | 0.4% | Jul 7, 2025 | A vulnerability classified as critical was found in risesoft-y9 Digital-Infrastructure up to 9.6.7. Affected by this vul... |
| CVE-2025-53186 | MEDIUM | 6.2 | 0.1% | Jul 7, 2025 | Vulnerability that allows third-party call apps to send broadcasts without verification in the audio framework module Im... |
| CVE-2025-53185 | MEDIUM | 5.5 | 0.1% | Jul 7, 2025 | Virtual address reuse issue in the memory management module, which can be exploited by non-privileged users to access re... |
| CVE-2025-53178 | MEDIUM | 4.8 | 0.1% | Jul 7, 2025 | Permission bypass vulnerability in the calendar storage module Impact: Successful exploitation of this vulnerability may... |
| CVE-2025-53173 | MEDIUM | 4.3 | 0.2% | Jul 7, 2025 | Stack overflow risk when vector images are parsed during file preview Impact: Successful exploitation of this vulnerabil... |
| CVE-2025-53170 | MEDIUM | 5.5 | 0.1% | Jul 7, 2025 | Null pointer dereference vulnerability in the application exit cause module Impact: Successful exploitation of this vuln... |
| CVE-2025-53168 | MEDIUM | 5.7 | 0.1% | Jul 7, 2025 | Vulnerability of bypassing the process to start SA and use related functions on distributed cameras Impact: Successful e... |
| CVE-2025-7099 | MEDIUM | 5.9 | 0.4% | Jul 7, 2025 | A vulnerability has been found in BoyunCMS up to 1.21 on PHP7 and classified as critical. Affected by this vulnerability... |
| CVE-2025-7095 | MEDIUM | 6.1 | 0.2% | Jul 6, 2025 | A vulnerability classified as critical has been found in Comodo Internet Security Premium 12.3.4.8162. This affects an u... |
| CVE-2025-38235 | MEDIUM | 5.5 | 0.1% | Jul 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: HID: appletb-kbd: fix "appletb_backlight" backlight... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now