2025 CVE Vulnerabilities
45,184 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-6201 | MEDIUM | 6.4 | 0.2% | Jun 19, 2025 | The Pixel Manager for WooCommerce – Track Conversions and Analytics, Google Ads, TikTok and more plugin for WordPress is... |
| CVE-2025-50183 | MEDIUM | 6.5 | 0.3% | Jun 19, 2025 | OpenList Frontend is a UI component for OpenList. Prior to version 4.0.0-rc.4, a vulnerability exists in the file previe... |
| CVE-2025-50182 | MEDIUM | 6.1 | 0.3% | Jun 19, 2025 | urllib3 is a user-friendly HTTP client library for Python. Starting in version 2.2.0 and prior to 2.5.0, urllib3 does no... |
| CVE-2025-50181 | MEDIUM | 6.1 | 0.4% | Jun 19, 2025 | urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all r... |
| CVE-2025-24291 | MEDIUM | 6.1 | 0.3% | Jun 19, 2025 | The Versa Director SD-WAN orchestration platform provides functionality to upload various types of files. However, the J... |
| CVE-2025-24287 | MEDIUM | 6.1 | 0.2% | Jun 19, 2025 | A vulnerability allowing local system users to modify directory contents, allowing for arbitrary code execution on the l... |
| CVE-2025-24286 | MEDIUM | 4.9 | 10.7% | Jun 19, 2025 | A vulnerability allowing an authenticated user with the Backup Operator role to modify backup jobs, which could execute ... |
| CVE-2025-23170 | MEDIUM | 6.7 | 0.6% | Jun 19, 2025 | The Versa Director SD-WAN orchestration platform includes functionality to initiate SSH sessions to remote CPEs and the ... |
| CVE-2025-23169 | MEDIUM | 6.1 | 0.3% | Jun 19, 2025 | The Versa Director SD-WAN orchestration platform allows customization of the user interface, including the header, foote... |
| CVE-2025-49590 | MEDIUM | 6.1 | 0.3% | Jun 18, 2025 | CryptPad is a collaboration suite. Prior to version 2025.3.0, the "Link Bouncer" functionality attempts to filter javasc... |
| CVE-2025-1349 | MEDIUM | 4.8 | 0.2% | Jun 18, 2025 | IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.4 is vulne... |
| CVE-2025-1348 | MEDIUM | 4 | 0.1% | Jun 18, 2025 | IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.4 could allo... |
| CVE-2025-4820 | MEDIUM | 5.3 | 0.7% | Jun 18, 2025 | Impact Cloudflare quiche was discovered to be vulnerable to incorrect congestion window growth, which could cause it to... |
| CVE-2025-6240 | MEDIUM | 4.9 | 0.3% | Jun 18, 2025 | Improper Input Validation vulnerability in Profisee on Windows (filesystem modules) allows Path Traversal after authenti... |
| CVE-2025-49015 | MEDIUM | 4.9 | 0.2% | Jun 18, 2025 | The Couchbase .NET SDK (client library) before 3.7.1 does not properly enable hostname verification for TLS certificates... |
| CVE-2025-45661 | MEDIUM | 5.9 | 0.3% | Jun 18, 2025 | A cross-site scripting (XSS) vulnerability in miniTCG v1.3.1 beta allows attackers to execute abritrary web scripts or H... |
| CVE-2025-5237 | MEDIUM | 6.4 | 0.2% | Jun 18, 2025 | The Target Video Easy Publish plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘width’ paramete... |
| CVE-2025-38080 | MEDIUM | 5.5 | 0.1% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Increase block_sequence array size... |
| CVE-2025-38078 | MEDIUM | 4.7 | 0.1% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: Fix race of buffer access at PCM OSS lay... |
| CVE-2025-38075 | MEDIUM | 5.5 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix timeout on deleted connect... |
| CVE-2025-38074 | MEDIUM | 5.5 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: vhost-scsi: protect vq->log_used with vq->mutex Th... |
| CVE-2025-38072 | MEDIUM | 5.5 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: libnvdimm/labels: Fix divide error in nd_label_data... |
| CVE-2025-38071 | MEDIUM | 5.5 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: x86/mm: Check return value from memblock_phys_alloc... |
| CVE-2025-38070 | MEDIUM | 5.5 | 0.1% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: ASoC: sma1307: Add NULL check in sma1307_setting_lo... |
| CVE-2025-38067 | MEDIUM | 5.5 | 0.5% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: rseq: Fix segfault on registration when rseq_cs is ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now