2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-40025 | HIGH | 7.8 | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check on node footer for non... |
| CVE-2025-10151 | HIGH | 7.2 | 0.2% | Oct 28, 2025 | Improper locking vulnerability in Softing Industrial Automation GmbH gateways allows infected memory and/or resource lea... |
| CVE-2025-10150 | HIGH | 8.7 | 0.2% | Oct 28, 2025 | Webserver crash caused by scanning on TCP port 80 in Softing Industrial Automation GmbH gateways and switch.This issue a... |
| CVE-2025-12378 | CRITICAL | 9.8 | 0.5% | Oct 28, 2025 | A security flaw has been discovered in code-projects Simple Food Ordering System 1.0. This issue affects some unknown pr... |
| CVE-2025-11735 | HIGH | 7.5 | 0.3% | Oct 28, 2025 | The HUSKY – Products Filter Professional for WooCommerce plugin for WordPress is vulnerable to blind SQL Injection via t... |
| CVE-2025-10145 | — | — | — | Oct 28, 2025 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-7073. Reason: This candidate is a r... |
| CVE-2025-62777 | HIGH | 8.8 | 0.2% | Oct 28, 2025 | Use of Hard-Coded Credentials issue exists in MZK-DP300N version 1.07 and earlier, which may allow an attacker within th... |
| CVE-2025-10939 | LOW | 3.7 | 0.4% | Oct 28, 2025 | A flaw was found in Keycloak. The Keycloak guides recommend to not expose /admin path to the outside in case the install... |
| CVE-2025-12347 | HIGH | 8.8 | 0.4% | Oct 28, 2025 | A flaw has been found in MaxSite CMS up to 109. This issue affects some unknown processing of the file application/maxsi... |
| CVE-2025-12346 | HIGH | 8.8 | 0.4% | Oct 28, 2025 | A vulnerability was detected in MaxSite CMS up to 109. This vulnerability affects unknown code of the file application/m... |
| CVE-2025-12344 | MEDIUM | 6.3 | 0.2% | Oct 28, 2025 | A vulnerability has been found in Yonyou U8 Cloud up to 5.1sp. The impacted element is an unknown function of the file /... |
| CVE-2025-12342 | HIGH | 7.3 | 0.3% | Oct 28, 2025 | A flaw has been found in Serdar Bayram Ghost Hot Spot up to 20251014. The affected element is an unknown function of the... |
| CVE-2025-12341 | HIGH | 7.8 | 0.2% | Oct 28, 2025 | A vulnerability was detected in ermig1979 AntiDupl up to 2.3.12. Impacted is an unknown function of the file AntiDupl.NE... |
| CVE-2025-12339 | CRITICAL | 9.8 | 0.4% | Oct 28, 2025 | A security vulnerability has been detected in Campcodes Retro Basketball Shoes Online Store 1.0. This issue affects some... |
| CVE-2025-12338 | CRITICAL | 9.8 | 0.4% | Oct 28, 2025 | A weakness has been identified in Campcodes Retro Basketball Shoes Online Store 1.0. This vulnerability affects unknown ... |
| CVE-2025-12337 | CRITICAL | 9.8 | 0.4% | Oct 28, 2025 | A security flaw has been discovered in Campcodes Retro Basketball Shoes Online Store 1.0. This affects an unknown part o... |
| CVE-2025-12336 | CRITICAL | 9.8 | 0.4% | Oct 28, 2025 | A vulnerability was identified in Campcodes Retro Basketball Shoes Online Store 1.0. Affected by this issue is some unkn... |
| CVE-2025-43024 | HIGH | 7.5 | 0.3% | Oct 28, 2025 | A GUI dialog of an application allows to view what files are in the file system without proper authorization. |
| CVE-2025-33133 | MEDIUM | 6.5 | 0.3% | Oct 28, 2025 | IBM DB2 High Performance Unload 6.1.0.3, 5.1.0.1, 6.1.0.2, 6.5, 6.5.0.0 IF1, 6.1.0.1, 6.1, and 5.1 could allow an authen... |
| CVE-2025-33132 | MEDIUM | 6.5 | 0.3% | Oct 28, 2025 | IBM DB2 High Performance Unload 6.1.0.3, 5.1.0.1, 6.1.0.2, 6.5, 6.5.0.0 IF1, 6.1.0.1, 6.1, and 5.1 could allow an authen... |
| CVE-2025-33131 | MEDIUM | 6.5 | 0.3% | Oct 28, 2025 | IBM DB2 High Performance Unload 6.1.0.3, 5.1.0.1, 6.1.0.2, 6.5, 6.5.0.0 IF1, 6.1.0.1, 6.1, and 5.1 could allow an authen... |
| CVE-2025-33126 | MEDIUM | 6.5 | 0.3% | Oct 28, 2025 | IBM DB2 High Performance Unload 6.1.0.3, 5.1.0.1, 6.1.0.2, 6.5, 6.5.0.0 IF1, 6.1.0.1, 6.1, 5.1, 6.1.0.3, 5.1.0.1, 6.1.0.... |
| CVE-2025-12335 | MEDIUM | 6.1 | 0.4% | Oct 28, 2025 | A vulnerability was determined in code-projects E-Commerce Website 1.0. Affected by this vulnerability is an unknown fun... |
| CVE-2025-12332 | MEDIUM | 4.8 | 0.3% | Oct 28, 2025 | A flaw has been found in SourceCodester Student Grades Management System 1.0. This affects the function delete_user of t... |
| CVE-2025-62259 | MEDIUM | 5.4 | 0.2% | Oct 27, 2025 | Liferay Portal 7.4.0 through 7.4.3.109, and older unsupported versions, and Liferay DXP 2023.Q3.1 through 2023.Q3.4, 7.4... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now