2025 CVE Vulnerabilities

45,200 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-5890MEDIUM5.3A vulnerability classified as problematic has been found in actions toolkit 0.5.0. This affects the function globEscape ...
CVE-2025-5888MEDIUM6.5A vulnerability was found in jsnjfz WebStack-Guns 1.0. It has been declared as problematic. Affected by this vulnerabili...
CVE-2025-5887MEDIUM5.4A vulnerability was found in jsnjfz WebStack-Guns 1.0. It has been classified as problematic. Affected is an unknown fun...
CVE-2025-49136MEDIUM6.5listmonk is a standalone, self-hosted, newsletter and mailing list manager. Starting in version 4.0.0 and prior to versi...
CVE-2025-46041MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in Anchor CMS v0.12.7 allows attackers to inject malicious JavaScript ...
CVE-2025-45002MEDIUM5.4Vigybag v1.0 and before is vulnerable to Cross Site Scripting (XSS) via the upload profile picture function under my pro...
CVE-2025-29627MEDIUM6.8An issue in KeeperChat IOS Application v.5.8.8 allows a physically proximate attacker to escalate privileges via the Bio...
CVE-2025-5886MEDIUM4.1A vulnerability was found in Emlog up to 2.5.7 and classified as problematic. This issue affects some unknown processing...
CVE-2025-48147MEDIUM6.5Missing Authorization vulnerability in Crypto Cloud CryptoCloud - Crypto Payment Gateway cryptocloud-crypto-payment-gate...
CVE-2025-48139MEDIUM6.5Missing Authorization vulnerability in relentlo StyleAI relentlosoftware allows Accessing Functionality Not Properly Con...
CVE-2025-47598MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in click5 History Log...
CVE-2025-47511MEDIUM6.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in info@welcart Welcart e-C...
CVE-2025-46178MEDIUM6.1Cross-Site Scripting (XSS) vulnerability exists in askquery.php via the eid parameter in the CloudClassroom PHP Project....
CVE-2025-45055MEDIUM5.4Silverpeas 6.4.2 contains a stored cross-site scripting (XSS) vulnerability in the event management module. An authentic...
CVE-2025-5885MEDIUM4.3A vulnerability has been found in Konica Minolta bizhub up to 20250202 and classified as problematic. This vulnerability...
CVE-2025-5884MEDIUM5.4A vulnerability, which was classified as problematic, was found in Konica Minolta bizhub up to 20250202. This affects an...
CVE-2025-5880MEDIUM4.3A vulnerability has been found in Whistle 2.9.98 and classified as problematic. This vulnerability affects unknown code ...
CVE-2025-5879MEDIUM5.4A vulnerability, which was classified as problematic, was found in WuKongOpenSource WukongCRM 9.0. This affects an unkno...
CVE-2025-49130MEDIUM6Laravel Translation Manager is a package to manage Laravel translation files. Prior to version 0.6.8, the application is...
CVE-2025-48062MEDIUM6.1Discourse is an open-source discussion platform. Prior to version 3.4.4 of the `stable` branch, version 3.5.0.beta5 of t...
CVE-2025-40669MEDIUM6.5Incorrect authorization vulnerability in TCMAN's GIM v11. This vulnerability allows an unprivileged attacker to modify t...
CVE-2025-40668MEDIUM6.5Incorrect authorization vulnerability in TCMAN's GIM v11. This vulnerability allows an attacker, with low privilege leve...
CVE-2025-5876MEDIUM5.5A vulnerability classified as problematic was found in Lucky LM-520-SC, LM-520-FSC and LM-520-FSC-SAM up to 20250321. Af...
CVE-2025-5874MEDIUM4.6A vulnerability was found in Redash up to 10.1.0/25.1.0. It has been rated as problematic. This issue affects the functi...
CVE-2025-5873MEDIUM6.3A vulnerability was detected in eCharge Hardy Barth Salia PLCC up to 2.3.81. Affected by this issue is some unknown func...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now