2025 CVE Vulnerabilities

45,202 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-5725MEDIUM4.8A vulnerability was found in SourceCodester Student Result Management System 1.0. It has been declared as problematic. A...
CVE-2025-5724MEDIUM4.8A vulnerability was found in SourceCodester Student Result Management System 1.0. It has been classified as problematic....
CVE-2025-1778MEDIUM4.3The Art Theme for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'arttheme_them...
CVE-2025-1777MEDIUM6.4The BM Content Builder plugin for WordPress is vulnerable to unauthorized modification of data to a missing capability c...
CVE-2025-5723MEDIUM4.8A vulnerability was found in SourceCodester Student Result Management System 1.0 and classified as problematic. This iss...
CVE-2025-5722MEDIUM4.8A vulnerability has been found in SourceCodester Student Result Management System 1.0 and classified as problematic. Thi...
CVE-2025-36513MEDIUM5.1Cross-site request forgery vulnerability exists in surveillance cameras provided by i-PRO Co., Ltd.. If a user views a c...
CVE-2025-5733MEDIUM5.3The Modern Events Calendar Lite plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and in...
CVE-2025-5721MEDIUM5.4A vulnerability, which was classified as problematic, was found in SourceCodester Student Result Management System 1.0. ...
CVE-2025-5719MEDIUM5.1The wallet has an authentication bypass vulnerability that allows access to specific pages.
CVE-2025-5715MEDIUM6.4A vulnerability was found in Signal App 7.41.4 on Android. It has been declared as problematic. This vulnerability affec...
CVE-2025-5714MEDIUM4.3A vulnerability was found in SoluçõesCoop iSoluçõesWEB up to 20250516. It has been classified as problematic. This affec...
CVE-2025-5713MEDIUM5.4A vulnerability was found in SoluçõesCoop iSoluçõesWEB up to 20250519 and classified as problematic. Affected by this is...
CVE-2025-49012MEDIUM5.4Himmelblau is an interoperability suite for Microsoft Azure Entra ID and Intune. Himmelblau versions 0.9.0 through 0.9.1...
CVE-2025-5695MEDIUM4.7A vulnerability has been found in Teledyne FLIR AX8 up to 1.46.16. This impacts the function subscribe_to_spot/subscribe...
CVE-2025-5745MEDIUM5.6The strncmp implementation optimized for the Power10 processor in the GNU C Library version 2.40 and later writes to vec...
CVE-2025-5702MEDIUM5.6The strcmp implementation optimized for the Power10 processor in the GNU C Library version 2.39 and later writes to vect...
CVE-2025-46258MEDIUM5.4Missing Authorization vulnerability in BdThemes Element Pack Pro allows Exploiting Incorrectly Configured Access Control...
CVE-2025-46257MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in BdThemes Element Pack Pro allows Cross Site Request Forgery.This issu...
CVE-2025-49009MEDIUM6.2Para is a multitenant backend server/framework for object persistence and retrieval. A vulnerability that exists in vers...
CVE-2025-48493MEDIUM6.5The Yii 2 Redis extension provides the redis key-value store support for the Yii framework 2.0. On failing connection, t...
CVE-2025-5661MEDIUM5.4A vulnerability, which was classified as problematic, was found in code-projects Traffic Offense Reporting System 1.0. T...
CVE-2025-5382MEDIUM6.8Improper access control in users MFA feature in Devolutions Server 2025.1.7.0 and earlier allows a user with user manage...
CVE-2025-47827MEDIUM4.6In IGEL OS before 11, Secure Boot can be bypassed because the igel-flash-driver module improperly verifies a cryptograph...
CVE-2025-3768MEDIUM5Improper access control in Tor network blocking feature in Devolutions Server 2025.1.10.0 and earlier allows an authenti...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now