2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-64689 | — | — | — | Nov 10, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it relates to interna... |
| CVE-2025-64688 | — | — | — | Nov 10, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it relates to interna... |
| CVE-2025-64687 | — | — | — | Nov 10, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it was fixed before p... |
| CVE-2025-64686 | — | — | — | Nov 10, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it was fixed before p... |
| CVE-2025-64685 | HIGH | 7.5 | 0.2% | Nov 10, 2025 | In JetBrains YouTrack before 2025.3.104432 missing TLS certificate validation enabled data disclosure |
| CVE-2025-64684 | HIGH | 7.5 | 0.3% | Nov 10, 2025 | In JetBrains YouTrack before 2025.3.104432 information disclosure was possible via the feedback form |
| CVE-2025-64683 | HIGH | 7.5 | 0.2% | Nov 10, 2025 | In JetBrains Hub before 2025.3.104432 information disclosure was possible via the Users API |
| CVE-2025-64682 | LOW | 3.7 | 0.1% | Nov 10, 2025 | In JetBrains Hub before 2025.3.104432 a race condition allowed bypass of the Agent-user limit |
| CVE-2025-64681 | LOW | 3.7 | 0.2% | Nov 10, 2025 | In JetBrains Hub before 2025.3.104992 a race condition allowed bypass of the user limit via invitations |
| CVE-2025-64457 | HIGH | 7 | 0.1% | Nov 10, 2025 | In JetBrains ReSharper, Rider and dotTrace before 2025.2.5 local privilege escalation was possible via race condition |
| CVE-2025-64456 | HIGH | 7.8 | 0.1% | Nov 10, 2025 | In JetBrains ReSharper before 2025.2.4 missing signature verification in DPA Collector allows local privilege escalation |
| CVE-2025-12939 | CRITICAL | 9.8 | 0.3% | Nov 10, 2025 | A security flaw has been discovered in SourceCodester Interview Management System up to 1.0. Affected by this issue is s... |
| CVE-2025-12938 | CRITICAL | 9.8 | 0.4% | Nov 10, 2025 | A vulnerability was identified in projectworlds Online Admission System 1.0. Affected by this vulnerability is an unknow... |
| CVE-2025-41001 | MEDIUM | 5.4 | 0.2% | Nov 10, 2025 | Cross Site Scripting (XSS) vulnerability stored in SOPlanning v1.53.02, which consist of a stored XSS due to a lack of p... |
| CVE-2025-12405 | HIGH | 7.7 | 0.2% | Nov 10, 2025 | An improper privilege management vulnerability was found in Looker Studio. It impacted all JDBC-based connectors. A Loo... |
| CVE-2025-41107 | MEDIUM | 5.4 | 0.2% | Nov 10, 2025 | Stored Cross Site Scripting (XSS) vulnerability in Smart School 7.0 due to lack of proper validation of user input when ... |
| CVE-2025-12409 | HIGH | 7.3 | 0.2% | Nov 10, 2025 | A SQL injection vulnerability was discovered in Looker Studio that allowed for data exfiltration from BigQuery data sour... |
| CVE-2025-12397 | HIGH | 7.6 | 0.3% | Nov 10, 2025 | A SQL injection vulnerability was found in Looker Studio. A Looker Studio user with report view access could inject mal... |
| CVE-2025-12155 | HIGH | 7.1 | 1.2% | Nov 10, 2025 | A Command Injection vulnerability, resulting from improper file path sanitization (Directory Traversal) in Looker allows... |
| CVE-2025-41731 | HIGH | 7.4 | 0.1% | Nov 10, 2025 | A vulnerability was identified in the password generation algorithm when accessing the debug-interface. An unauthenticat... |
| CVE-2025-12933 | CRITICAL | 9.8 | 0.3% | Nov 10, 2025 | A vulnerability was identified in SourceCodester Baby Care System 1.0. This affects an unknown part of the file /updatew... |
| CVE-2025-62689 | HIGH | 8.7 | 0.4% | Nov 10, 2025 | NULL pointer dereference vulnerability exists in GNU libmicrohttpd v1.0.2 and earlier. The vulnerability was fixed in co... |
| CVE-2025-59777 | HIGH | 8.7 | 0.4% | Nov 10, 2025 | NULL pointer dereference vulnerability exists in GNU libmicrohttpd v1.0.2 and earlier. The vulnerability was fixed in co... |
| CVE-2025-12932 | CRITICAL | 9.8 | 0.3% | Nov 10, 2025 | A vulnerability was determined in SourceCodester Baby Care System 1.0. Affected by this issue is some unknown functional... |
| CVE-2025-12931 | CRITICAL | 9.8 | 0.3% | Nov 10, 2025 | A vulnerability was found in SourceCodester Food Ordering System 1.0. Affected by this vulnerability is an unknown funct... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now