2025 CVE Vulnerabilities
45,184 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-6301 | MEDIUM | 5.4 | 0.2% | Jun 20, 2025 | A vulnerability, which was classified as problematic, has been found in PHPGurukul Notice Board System 1.0. This issue a... |
| CVE-2025-6299 | MEDIUM | 4.7 | 7.0% | Jun 20, 2025 | A vulnerability classified as critical has been found in TOTOLINK N150RT 3.4.0-B20190525. This affects an unknown part o... |
| CVE-2025-6264 | MEDIUM | 5.5 | 1.0% | Jun 20, 2025 | Velociraptor allows collection of VQL queries packaged into Artifacts from endpoints. These artifacts can be used to do ... |
| CVE-2025-6288 | MEDIUM | 5.4 | 0.2% | Jun 20, 2025 | A vulnerability, which was classified as problematic, has been found in PHPGurukul Bus Pass Management System 1.0. Affec... |
| CVE-2025-48058 | MEDIUM | 6.3 | 0.4% | Jun 20, 2025 | PowSyBl (Power System Blocks) is a framework to build power system oriented software. Prior to version 6.7.2, there is a... |
| CVE-2025-6287 | MEDIUM | 5.4 | 0.2% | Jun 20, 2025 | A vulnerability classified as problematic was found in PHPGurukul COVID19 Testing Management System 1.0. Affected by thi... |
| CVE-2025-6286 | MEDIUM | 6.1 | 0.2% | Jun 19, 2025 | A vulnerability classified as problematic has been found in PHPGurukul COVID19 Testing Management System 2021. Affected ... |
| CVE-2025-6285 | MEDIUM | 6.1 | 0.3% | Jun 19, 2025 | A vulnerability was found in PHPGurukul COVID19 Testing Management System 2021. It has been rated as problematic. This i... |
| CVE-2025-6284 | MEDIUM | 4.3 | 0.2% | Jun 19, 2025 | A vulnerability was found in PHPGurukul Car Rental Portal 3.0. It has been declared as problematic. This vulnerability a... |
| CVE-2025-6281 | MEDIUM | 6.3 | 0.4% | Jun 19, 2025 | A vulnerability has been found in OpenBMB XAgent up to 1.0.0 and classified as critical. Affected by this vulnerability ... |
| CVE-2025-36050 | MEDIUM | 6.2 | 0.2% | Jun 19, 2025 | IBM QRadar SIEM 7.5 through 7.5.0 Update Package 12 stores potentially sensitive information in log files that could be ... |
| CVE-2025-6270 | MEDIUM | 5.3 | 0.2% | Jun 19, 2025 | A vulnerability, which was classified as critical, has been found in HDF5 up to 1.14.6. Affected by this issue is the fu... |
| CVE-2025-50200 | MEDIUM | 5.5 | 0.2% | Jun 19, 2025 | RabbitMQ is a messaging and streaming broker. In versions 3.13.7 and prior, RabbitMQ is logging authorization headers in... |
| CVE-2025-6269 | MEDIUM | 5.3 | 0.2% | Jun 19, 2025 | A vulnerability classified as critical was found in HDF5 up to 1.14.6. Affected by this vulnerability is the function H5... |
| CVE-2025-6268 | MEDIUM | 4.3 | 0.3% | Jun 19, 2025 | A vulnerability classified as problematic has been found in Luna Imaging up to 7.5.5.6. Affected is an unknown function ... |
| CVE-2025-49014 | MEDIUM | 5.5 | 0.3% | Jun 19, 2025 | jq is a command-line JSON processor. In version 1.8.0 a heap use after free vulnerability exists within the function f_s... |
| CVE-2025-48886 | MEDIUM | 4.8 | 0.2% | Jun 19, 2025 | Hydra is a layer-two scalability solution for Cardano. Prior to version 0.22.0, the process assumes L1 event finality an... |
| CVE-2025-32896 | MEDIUM | 6.5 | 1.0% | Jun 19, 2025 | # Summary Unauthorized users can perform Arbitrary File Read and Deserialization attack by submit job using restful api... |
| CVE-2025-5234 | MEDIUM | 5.4 | 0.2% | Jun 19, 2025 | The Gutenverse News plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘elementId’ parameter in a... |
| CVE-2025-4965 | MEDIUM | 5.4 | 0.2% | Jun 19, 2025 | The WPBakery Page Builder for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin... |
| CVE-2025-4571 | MEDIUM | 5.4 | 0.3% | Jun 19, 2025 | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to unauthorized view and modifi... |
| CVE-2025-5490 | MEDIUM | 4.8 | 0.2% | Jun 19, 2025 | The Football Pool plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions u... |
| CVE-2025-5524 | MEDIUM | 4.9 | 0.2% | Jun 19, 2025 | The OceanWP theme for WordPress is vulnerable to Stored Cross-Site Scripting via the Select HTML tag in all versions up ... |
| CVE-2025-4479 | MEDIUM | 5.4 | 0.2% | Jun 19, 2025 | The ElementsKit Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the... |
| CVE-2025-4367 | MEDIUM | 5.4 | 0.2% | Jun 19, 2025 | The Download Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wpdm_user_dashbo... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now