2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-62258 | MEDIUM | 6.5 | 0.2% | Oct 27, 2025 | CSRF vulnerability in Headless API in Liferay Portal 7.4.0 through 7.4.3.107, and Liferay DXP 2023.Q3.1 through 2023.Q3.... |
| CVE-2025-12334 | MEDIUM | 6.1 | 0.4% | Oct 27, 2025 | A vulnerability was found in code-projects E-Commerce Website 1.0. Affected is an unknown function of the file /pages/pr... |
| CVE-2025-12333 | MEDIUM | 6.1 | 0.4% | Oct 27, 2025 | A vulnerability has been found in code-projects E-Commerce Website 1.0. This impacts an unknown function of the file /pa... |
| CVE-2025-62793 | MEDIUM | 6.8 | 0.2% | Oct 27, 2025 | eLabFTW is an open source electronic lab notebook for research labs. The application served uploaded SVG files inline. B... |
| CVE-2025-62781 | MEDIUM | 5 | 0.2% | Oct 27, 2025 | PILOS (Platform for Interactive Live-Online Seminars) is a frontend for BigBlueButton. Prior to 4.8.0, users with a loca... |
| CVE-2025-62779 | MEDIUM | 5.4 | 0.2% | Oct 27, 2025 | Frappe Learning is a learning system that helps users structure their content. In Frappe Learning 2.39.1 and earlier, us... |
| CVE-2025-62778 | MEDIUM | 5.3 | 0.2% | Oct 27, 2025 | Frappe Learning is a learning management system. A security issue was identified in Frappe Learning 2.39.1 and earlier, ... |
| CVE-2025-62261 | MEDIUM | 6.5 | 0.2% | Oct 27, 2025 | Liferay Portal 7.4.0 through 7.4.3.99, and older unsupported versions, and Liferay DXP 2023.Q3.1 through 2023.Q3.4, 7.4 ... |
| CVE-2025-62260 | HIGH | 7.5 | 0.4% | Oct 27, 2025 | Liferay Portal 7.4.0 through 7.4.3.99, and Liferay DXP 2023.Q3.1 through 2023.Q3.4, 7.4 GA through update 92, 7.3 GA thr... |
| CVE-2025-12331 | HIGH | 7.2 | 0.4% | Oct 27, 2025 | A weakness has been identified in Willow CMS up to 1.4.0. Impacted is an unknown function of the file /admin/images/add.... |
| CVE-2025-12330 | MEDIUM | 4.8 | 0.2% | Oct 27, 2025 | A security flaw has been discovered in Willow CMS up to 1.4.0. This issue affects some unknown processing of the file /a... |
| CVE-2025-12329 | MEDIUM | 6.5 | 0.3% | Oct 27, 2025 | A security flaw has been discovered in shawon100 RUET OJ up to 18fa45b0a669fa1098a0b8fc629cf6856369d9a5. The affected el... |
| CVE-2025-12328 | MEDIUM | 6.5 | 0.2% | Oct 27, 2025 | A vulnerability was identified in shawon100 RUET OJ up to 18fa45b0a669fa1098a0b8fc629cf6856369d9a5. Impacted is an unkno... |
| CVE-2025-62784 | MEDIUM | 5.3 | 0.2% | Oct 27, 2025 | InventoryGui is a library for creating chest GUIs for Bukkit/Spigot plugins. Versions before 1.6.5 contain a vulnerabili... |
| CVE-2025-62783 | MEDIUM | 4.3 | 0.2% | Oct 27, 2025 | InventoryGui is a library for creating chest GUIs for Bukkit/Spigot plugins. Versions 1.6.1-SNAPSHOT and earlier contain... |
| CVE-2025-62782 | MEDIUM | 5.3 | 0.2% | Oct 27, 2025 | InventoryGui is a library for creating chest GUIs for Bukkit/Spigot plugins. Versions 1.6.3-SNAPSHOT and earlier contain... |
| CVE-2025-62725 | HIGH | 8.9 | 13.8% | Oct 27, 2025 | Docker Compose trusts the path information embedded in remote OCI compose artifacts. When a layer includes the annotatio... |
| CVE-2025-62524 | MEDIUM | 5.3 | 0.2% | Oct 27, 2025 | PILOS (Platform for Interactive Live-Online Seminars) is a frontend for BigBlueButton. PILOS before 4.8.0 exposes the PH... |
| CVE-2025-62523 | MEDIUM | 6.3 | 0.2% | Oct 27, 2025 | PILOS (Platform for Interactive Live-Online Seminars) is a frontend for BigBlueButton. PILOS before 4.8.0 includes a Cro... |
| CVE-2025-62262 | MEDIUM | 4.4 | 0.1% | Oct 27, 2025 | Information exposure through log file vulnerability in LDAP import feature in Liferay Portal 7.4.0 through 7.4.3.97, and... |
| CVE-2025-12327 | MEDIUM | 6.5 | 0.2% | Oct 27, 2025 | A vulnerability was determined in shawon100 RUET OJ up to 18fa45b0a669fa1098a0b8fc629cf6856369d9a5. This issue affects s... |
| CVE-2025-12326 | HIGH | 7.5 | 0.4% | Oct 27, 2025 | A vulnerability was found in shawon100 RUET OJ up to 18fa45b0a669fa1098a0b8fc629cf6856369d9a5. This vulnerability affect... |
| CVE-2025-12325 | CRITICAL | 9.8 | 0.5% | Oct 27, 2025 | A vulnerability has been found in SourceCodester Best Salon Management System 1.0. This affects an unknown part of the f... |
| CVE-2025-12322 | HIGH | 8.8 | 0.7% | Oct 27, 2025 | A flaw has been found in Tenda CH22 1.0.0.1. Affected by this issue is the function fromNatStaticSetting of the file /go... |
| CVE-2025-12316 | CRITICAL | 9.8 | 0.4% | Oct 27, 2025 | A vulnerability was identified in code-projects Courier Management System 1.0. This impacts an unknown function of the f... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now