2025 CVE Vulnerabilities

45,206 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-62258MEDIUM6.5CSRF vulnerability in Headless API in Liferay Portal 7.4.0 through 7.4.3.107, and Liferay DXP 2023.Q3.1 through 2023.Q3....
CVE-2025-12334MEDIUM6.1A vulnerability was found in code-projects E-Commerce Website 1.0. Affected is an unknown function of the file /pages/pr...
CVE-2025-12333MEDIUM6.1A vulnerability has been found in code-projects E-Commerce Website 1.0. This impacts an unknown function of the file /pa...
CVE-2025-62793MEDIUM6.8eLabFTW is an open source electronic lab notebook for research labs. The application served uploaded SVG files inline. B...
CVE-2025-62781MEDIUM5PILOS (Platform for Interactive Live-Online Seminars) is a frontend for BigBlueButton. Prior to 4.8.0, users with a loca...
CVE-2025-62779MEDIUM5.4Frappe Learning is a learning system that helps users structure their content. In Frappe Learning 2.39.1 and earlier, us...
CVE-2025-62778MEDIUM5.3Frappe Learning is a learning management system. A security issue was identified in Frappe Learning 2.39.1 and earlier, ...
CVE-2025-62261MEDIUM6.5Liferay Portal 7.4.0 through 7.4.3.99, and older unsupported versions, and Liferay DXP 2023.Q3.1 through 2023.Q3.4, 7.4 ...
CVE-2025-62260HIGH7.5Liferay Portal 7.4.0 through 7.4.3.99, and Liferay DXP 2023.Q3.1 through 2023.Q3.4, 7.4 GA through update 92, 7.3 GA thr...
CVE-2025-12331HIGH7.2A weakness has been identified in Willow CMS up to 1.4.0. Impacted is an unknown function of the file /admin/images/add....
CVE-2025-12330MEDIUM4.8A security flaw has been discovered in Willow CMS up to 1.4.0. This issue affects some unknown processing of the file /a...
CVE-2025-12329MEDIUM6.5A security flaw has been discovered in shawon100 RUET OJ up to 18fa45b0a669fa1098a0b8fc629cf6856369d9a5. The affected el...
CVE-2025-12328MEDIUM6.5A vulnerability was identified in shawon100 RUET OJ up to 18fa45b0a669fa1098a0b8fc629cf6856369d9a5. Impacted is an unkno...
CVE-2025-62784MEDIUM5.3InventoryGui is a library for creating chest GUIs for Bukkit/Spigot plugins. Versions before 1.6.5 contain a vulnerabili...
CVE-2025-62783MEDIUM4.3InventoryGui is a library for creating chest GUIs for Bukkit/Spigot plugins. Versions 1.6.1-SNAPSHOT and earlier contain...
CVE-2025-62782MEDIUM5.3InventoryGui is a library for creating chest GUIs for Bukkit/Spigot plugins. Versions 1.6.3-SNAPSHOT and earlier contain...
CVE-2025-62725HIGH8.9Docker Compose trusts the path information embedded in remote OCI compose artifacts. When a layer includes the annotatio...
CVE-2025-62524MEDIUM5.3PILOS (Platform for Interactive Live-Online Seminars) is a frontend for BigBlueButton. PILOS before 4.8.0 exposes the PH...
CVE-2025-62523MEDIUM6.3PILOS (Platform for Interactive Live-Online Seminars) is a frontend for BigBlueButton. PILOS before 4.8.0 includes a Cro...
CVE-2025-62262MEDIUM4.4Information exposure through log file vulnerability in LDAP import feature in Liferay Portal 7.4.0 through 7.4.3.97, and...
CVE-2025-12327MEDIUM6.5A vulnerability was determined in shawon100 RUET OJ up to 18fa45b0a669fa1098a0b8fc629cf6856369d9a5. This issue affects s...
CVE-2025-12326HIGH7.5A vulnerability was found in shawon100 RUET OJ up to 18fa45b0a669fa1098a0b8fc629cf6856369d9a5. This vulnerability affect...
CVE-2025-12325CRITICAL9.8A vulnerability has been found in SourceCodester Best Salon Management System 1.0. This affects an unknown part of the f...
CVE-2025-12322HIGH8.8A flaw has been found in Tenda CH22 1.0.0.1. Affected by this issue is the function fromNatStaticSetting of the file /go...
CVE-2025-12316CRITICAL9.8A vulnerability was identified in code-projects Courier Management System 1.0. This impacts an unknown function of the f...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now