2025 CVE Vulnerabilities
45,203 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-20991 | MEDIUM | 5.1 | 0.1% | Jun 4, 2025 | Improper export of Android application components in Bluetooth prior to SMR Jun-2025 Release 1 allows local attackers to... |
| CVE-2025-20989 | MEDIUM | 5.2 | 0.1% | Jun 4, 2025 | Improper logging in fingerprint trustlet prior to SMR May-2025 Release 1 allows local privileged attackers to get a hmac... |
| CVE-2025-20987 | MEDIUM | 6.7 | 0.1% | Jun 4, 2025 | Improper access control in fingerprint trustlet prior to SMR May-2025 Release 1 allows local privileged attackers to get... |
| CVE-2025-20986 | MEDIUM | 5.5 | 0.1% | Jun 4, 2025 | Improper access control in ScreenCapture for Galaxy Watch prior to SMR Jun-2025 Release 1 allows local attackers to take... |
| CVE-2025-20984 | MEDIUM | 6.2 | 0.1% | Jun 4, 2025 | Incorrect default permission in Samsung Cloud for Galaxy Watch prior to SMR Jun-2025 Release 1 allows local attackers to... |
| CVE-2025-20981 | MEDIUM | 6.2 | 0.1% | Jun 4, 2025 | Improper access control in AudioService prior to SMR Jun-2025 Release 1 allows local attackers to access sensitive infor... |
| CVE-2025-5532 | MEDIUM | 6.4 | 0.2% | Jun 4, 2025 | The Campus Directory – Faculty, Staff & Student Directory Plugin for WordPress plugin for WordPress is vulnerable to Sto... |
| CVE-2025-5531 | MEDIUM | 6.4 | 0.2% | Jun 4, 2025 | The Employee Directory – Staff Listing & Team Directory Plugin for WordPress plugin for WordPress is vulnerable to Store... |
| CVE-2025-5543 | MEDIUM | 4.8 | 0.3% | Jun 3, 2025 | A vulnerability was found in TOTOLINK X2000R 1.0.0-B20230726.1108. It has been declared as problematic. Affected by this... |
| CVE-2025-24015 | MEDIUM | 5.3 | 0.2% | Jun 3, 2025 | Deno is a JavaScript, TypeScript, and WebAssembly runtime. Versions 1.46.0 through 2.1.6 have an issue that affects AES-... |
| CVE-2025-5542 | MEDIUM | 4.8 | 0.3% | Jun 3, 2025 | A vulnerability was found in TOTOLINK X2000R 1.0.0-B20230726.1108. It has been classified as problematic. Affected is an... |
| CVE-2025-49000 | MEDIUM | 5.7 | 0.3% | Jun 3, 2025 | InvenTree is an Open Source Inventory Management System. Prior to version 0.17.13, the skip field in the built-in `label... |
| CVE-2025-5523 | MEDIUM | 6.1 | 0.3% | Jun 3, 2025 | A vulnerability classified as problematic has been found in enilu web-flash 1.0. This affects the function fileService.u... |
| CVE-2025-48953 | MEDIUM | 6.5 | 0.2% | Jun 3, 2025 | Umbraco is an ASP.NET content management system (CMS). Starting in version 14.0.0 and prior to versions 15.4.2 and 16.0.... |
| CVE-2025-5520 | MEDIUM | 6.9 | 0.7% | Jun 3, 2025 | A vulnerability was found in Open5GS up to 2.7.3. It has been classified as problematic. Affected is the function gmm_st... |
| CVE-2025-5516 | MEDIUM | 4.8 | 0.3% | Jun 3, 2025 | A vulnerability, which was classified as problematic, was found in TOTOLINK X2000R 1.0.0-B20230726.1108. This affects an... |
| CVE-2025-5515 | MEDIUM | 6.3 | 4.5% | Jun 3, 2025 | A vulnerability, which was classified as critical, has been found in TOTOLINK X2000R 1.0.0-B20230726.1108. Affected by t... |
| CVE-2025-5513 | MEDIUM | 5.4 | 0.3% | Jun 3, 2025 | A vulnerability has been found in quequnlong shiyi-blog up to 1.2.1 and classified as problematic. Affected by this vuln... |
| CVE-2025-30360 | MEDIUM | 6.5 | 0.3% | Jun 3, 2025 | webpack-dev-server allows users to use webpack with a development server that provides live reloading. Prior to version ... |
| CVE-2025-30359 | MEDIUM | 5.9 | 0.4% | Jun 3, 2025 | webpack-dev-server allows users to use webpack with a development server that provides live reloading. Prior to version ... |
| CVE-2025-5507 | MEDIUM | 5.4 | 0.3% | Jun 3, 2025 | A vulnerability was found in TOTOLINK A3002RU 2.1.1-B20230720.1011. It has been declared as problematic. Affected by thi... |
| CVE-2025-25020 | MEDIUM | 6.5 | 0.4% | Jun 3, 2025 | IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could all... |
| CVE-2025-25019 | MEDIUM | 6.5 | 0.2% | Jun 3, 2025 | IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 does not ... |
| CVE-2025-1334 | MEDIUM | 4 | 0.2% | Jun 3, 2025 | IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 allows we... |
| CVE-2025-5506 | MEDIUM | 5.4 | 0.3% | Jun 3, 2025 | A vulnerability was found in TOTOLINK A3002RU 2.1.1-B20230720.1011. It has been classified as problematic. Affected is a... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now