2025 CVE Vulnerabilities

45,184 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-6201MEDIUM6.4The Pixel Manager for WooCommerce – Track Conversions and Analytics, Google Ads, TikTok and more plugin for WordPress is...
CVE-2025-50183MEDIUM6.5OpenList Frontend is a UI component for OpenList. Prior to version 4.0.0-rc.4, a vulnerability exists in the file previe...
CVE-2025-50182MEDIUM6.1urllib3 is a user-friendly HTTP client library for Python. Starting in version 2.2.0 and prior to 2.5.0, urllib3 does no...
CVE-2025-50181MEDIUM6.1urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all r...
CVE-2025-24291MEDIUM6.1The Versa Director SD-WAN orchestration platform provides functionality to upload various types of files. However, the J...
CVE-2025-24287MEDIUM6.1A vulnerability allowing local system users to modify directory contents, allowing for arbitrary code execution on the l...
CVE-2025-24286MEDIUM4.9A vulnerability allowing an authenticated user with the Backup Operator role to modify backup jobs, which could execute ...
CVE-2025-23170MEDIUM6.7The Versa Director SD-WAN orchestration platform includes functionality to initiate SSH sessions to remote CPEs and the ...
CVE-2025-23169MEDIUM6.1The Versa Director SD-WAN orchestration platform allows customization of the user interface, including the header, foote...
CVE-2025-49590MEDIUM6.1CryptPad is a collaboration suite. Prior to version 2025.3.0, the "Link Bouncer" functionality attempts to filter javasc...
CVE-2025-1349MEDIUM4.8IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.4 is vulne...
CVE-2025-1348MEDIUM4IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.4 could allo...
CVE-2025-4820MEDIUM5.3Impact Cloudflare quiche was discovered to be vulnerable to incorrect congestion window growth, which could cause it to...
CVE-2025-6240MEDIUM4.9Improper Input Validation vulnerability in Profisee on Windows (filesystem modules) allows Path Traversal after authenti...
CVE-2025-49015MEDIUM4.9The Couchbase .NET SDK (client library) before 3.7.1 does not properly enable hostname verification for TLS certificates...
CVE-2025-45661MEDIUM5.9A cross-site scripting (XSS) vulnerability in miniTCG v1.3.1 beta allows attackers to execute abritrary web scripts or H...
CVE-2025-5237MEDIUM6.4The Target Video Easy Publish plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘width’ paramete...
CVE-2025-38080MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Increase block_sequence array size...
CVE-2025-38078MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: Fix race of buffer access at PCM OSS lay...
CVE-2025-38075MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix timeout on deleted connect...
CVE-2025-38074MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: vhost-scsi: protect vq->log_used with vq->mutex Th...
CVE-2025-38072MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: libnvdimm/labels: Fix divide error in nd_label_data...
CVE-2025-38071MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: x86/mm: Check return value from memblock_phys_alloc...
CVE-2025-38070MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ASoC: sma1307: Add NULL check in sma1307_setting_lo...
CVE-2025-38067MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: rseq: Fix segfault on registration when rseq_cs is ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now