2025 CVE Vulnerabilities

45,203 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-20991MEDIUM5.1Improper export of Android application components in Bluetooth prior to SMR Jun-2025 Release 1 allows local attackers to...
CVE-2025-20989MEDIUM5.2Improper logging in fingerprint trustlet prior to SMR May-2025 Release 1 allows local privileged attackers to get a hmac...
CVE-2025-20987MEDIUM6.7Improper access control in fingerprint trustlet prior to SMR May-2025 Release 1 allows local privileged attackers to get...
CVE-2025-20986MEDIUM5.5Improper access control in ScreenCapture for Galaxy Watch prior to SMR Jun-2025 Release 1 allows local attackers to take...
CVE-2025-20984MEDIUM6.2Incorrect default permission in Samsung Cloud for Galaxy Watch prior to SMR Jun-2025 Release 1 allows local attackers to...
CVE-2025-20981MEDIUM6.2Improper access control in AudioService prior to SMR Jun-2025 Release 1 allows local attackers to access sensitive infor...
CVE-2025-5532MEDIUM6.4The Campus Directory – Faculty, Staff & Student Directory Plugin for WordPress plugin for WordPress is vulnerable to Sto...
CVE-2025-5531MEDIUM6.4The Employee Directory – Staff Listing & Team Directory Plugin for WordPress plugin for WordPress is vulnerable to Store...
CVE-2025-5543MEDIUM4.8A vulnerability was found in TOTOLINK X2000R 1.0.0-B20230726.1108. It has been declared as problematic. Affected by this...
CVE-2025-24015MEDIUM5.3Deno is a JavaScript, TypeScript, and WebAssembly runtime. Versions 1.46.0 through 2.1.6 have an issue that affects AES-...
CVE-2025-5542MEDIUM4.8A vulnerability was found in TOTOLINK X2000R 1.0.0-B20230726.1108. It has been classified as problematic. Affected is an...
CVE-2025-49000MEDIUM5.7InvenTree is an Open Source Inventory Management System. Prior to version 0.17.13, the skip field in the built-in `label...
CVE-2025-5523MEDIUM6.1A vulnerability classified as problematic has been found in enilu web-flash 1.0. This affects the function fileService.u...
CVE-2025-48953MEDIUM6.5Umbraco is an ASP.NET content management system (CMS). Starting in version 14.0.0 and prior to versions 15.4.2 and 16.0....
CVE-2025-5520MEDIUM6.9A vulnerability was found in Open5GS up to 2.7.3. It has been classified as problematic. Affected is the function gmm_st...
CVE-2025-5516MEDIUM4.8A vulnerability, which was classified as problematic, was found in TOTOLINK X2000R 1.0.0-B20230726.1108. This affects an...
CVE-2025-5515MEDIUM6.3A vulnerability, which was classified as critical, has been found in TOTOLINK X2000R 1.0.0-B20230726.1108. Affected by t...
CVE-2025-5513MEDIUM5.4A vulnerability has been found in quequnlong shiyi-blog up to 1.2.1 and classified as problematic. Affected by this vuln...
CVE-2025-30360MEDIUM6.5webpack-dev-server allows users to use webpack with a development server that provides live reloading. Prior to version ...
CVE-2025-30359MEDIUM5.9webpack-dev-server allows users to use webpack with a development server that provides live reloading. Prior to version ...
CVE-2025-5507MEDIUM5.4A vulnerability was found in TOTOLINK A3002RU 2.1.1-B20230720.1011. It has been declared as problematic. Affected by thi...
CVE-2025-25020MEDIUM6.5IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could all...
CVE-2025-25019MEDIUM6.5IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 does not ...
CVE-2025-1334MEDIUM4IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 allows we...
CVE-2025-5506MEDIUM5.4A vulnerability was found in TOTOLINK A3002RU 2.1.1-B20230720.1011. It has been classified as problematic. Affected is a...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now