2025 CVE Vulnerabilities
45,203 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-13120 | MEDIUM | 5.5 | 0.1% | Nov 13, 2025 | A vulnerability has been found in mruby up to 3.4.0. This vulnerability affects the function sort_cmp of the file src/ar... |
| CVE-2025-64741 | CRITICAL | 9.8 | 0.4% | Nov 13, 2025 | Improper authorization handling in Zoom Workplace for Android before version 6.5.10 may allow an unauthenticated user to... |
| CVE-2025-64740 | HIGH | 7.8 | 0.1% | Nov 13, 2025 | Improper verification of cryptographic signature in the installer for Zoom Workplace VDI Client for Windows may allow an... |
| CVE-2025-64739 | HIGH | 7.5 | 0.3% | Nov 13, 2025 | External control of file name or path in certain Zoom Clients may allow an unauthenticated user to conduct a disclosure ... |
| CVE-2025-64738 | MEDIUM | 5.5 | 0.1% | Nov 13, 2025 | External control of file name or path in Zoom Workplace for macOS before version 6.5.10 may allow an authenticated user ... |
| CVE-2025-62483 | HIGH | 7.5 | 0.2% | Nov 13, 2025 | Improper removal of sensitive information in certain Zoom Clients before version 6.5.10 may allow an unauthenticated use... |
| CVE-2025-62482 | MEDIUM | 6.1 | 0.2% | Nov 13, 2025 | Cross-site scripting in Zoom Workplace for Windows before version 6.5.10 may allow an unauthenticated user to impact int... |
| CVE-2025-30669 | MEDIUM | 6.5 | 0.1% | Nov 13, 2025 | Improper certificate validation in certain Zoom Clients may allow an unauthenticated user to conduct a disclosure of inf... |
| CVE-2025-30662 | MEDIUM | 6.5 | 0.1% | Nov 13, 2025 | Symlink following in the installer for the Zoom Workplace VDI Plugin macOS Universal installer before version 6.3.14, 6.... |
| CVE-2025-13119 | MEDIUM | 6.5 | 0.2% | Nov 13, 2025 | A flaw has been found in Fabian Ros/SourceCodester Simple E-Banking System 1.0. This affects an unknown part. This manip... |
| CVE-2025-13118 | MEDIUM | 4.3 | 0.2% | Nov 13, 2025 | A vulnerability was detected in macrozheng mall-swarm up to 1.0.3. Affected by this issue is the function paySuccess of ... |
| CVE-2025-13117 | MEDIUM | 5.3 | 0.3% | Nov 13, 2025 | A security vulnerability has been detected in macrozheng mall-swarm and mall up to 1.0.3. Affected by this vulnerability... |
| CVE-2025-41069 | MEDIUM | 5.3 | 0.2% | Nov 13, 2025 | Insecure Direct Object Reference (IDOR) vulnerability in DeporSite of T-INNOVA. This vulnerability allows an attacker to... |
| CVE-2025-13116 | MEDIUM | 5.3 | 0.3% | Nov 13, 2025 | A weakness has been identified in macrozheng mall-swarm and mall up to 1.0.3. Affected is the function cancelUserOrder o... |
| CVE-2025-13115 | MEDIUM | 5.3 | 0.3% | Nov 13, 2025 | A security flaw has been discovered in macrozheng mall-swarm and mall up to 1.0.3. This impacts the function detail of t... |
| CVE-2025-13114 | MEDIUM | 5.3 | 0.2% | Nov 13, 2025 | A vulnerability was identified in macrozheng mall-swarm up to 1.0.3. This affects the function updateAttr of the file /c... |
| CVE-2025-40681 | MEDIUM | 5.1 | 0.3% | Nov 13, 2025 | Cross-site Scripting (XSS) vulnerability reflected in xCally's Omnichannel v3.30.1. This vulnerability allowsan attacker... |
| CVE-2025-12818 | MEDIUM | 5.9 | 0.3% | Nov 13, 2025 | Integer wraparound in multiple PostgreSQL libpq client library functions allows an application input provider or network... |
| CVE-2025-12817 | LOW | 3.1 | 0.2% | Nov 13, 2025 | Missing authorization in PostgreSQL CREATE STATISTICS command allows a table owner to achieve denial of service against ... |
| CVE-2025-12765 | HIGH | 7.4 | 0.2% | Nov 13, 2025 | pgAdmin <= 9.9 is affected by a vulnerability in the LDAP authentication mechanism allows bypassing TLS certificate ver... |
| CVE-2025-12764 | HIGH | 7.5 | 0.4% | Nov 13, 2025 | pgAdmin <= 9.9 is affected by an LDAP injection vulnerability in the LDAP authentication flow that allows an attacker t... |
| CVE-2025-12763 | HIGH | 8.8 | 0.7% | Nov 13, 2025 | pgAdmin 4 versions up to 9.9 are affected by a command injection vulnerability on Windows systems. This issue is caused ... |
| CVE-2025-12762 | CRITICAL | 9.8 | 12.0% | Nov 13, 2025 | pgAdmin versions up to 9.9 are affected by a Remote Code Execution (RCE) vulnerability that occurs when running in serve... |
| CVE-2025-12377 | MEDIUM | 4.3 | 0.3% | Nov 13, 2025 | The Gallery Plugin for WordPress – Envira Photo Gallery plugin for WordPress is vulnerable to unauthorized modification ... |
| CVE-2025-7704 | MEDIUM | 5.4 | 0.2% | Nov 13, 2025 | Supermicro BMC Insyde SMASH shell program has a stacked-based overflow vulnerability |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now