2025 CVE Vulnerabilities

45,206 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-62594MEDIUM5.5ImageMagick is a software suite to create, edit, compose, or convert bitmap images. ImageMagick versions prior to 7.1.2-...
CVE-2025-62516Rejected reason: Further research determined the issue is not a vulnerability.
CVE-2025-62263MEDIUM5.4Multiple cross-site scripting (XSS) vulnerabilities in Liferay Portal 7.3.7 through 7.4.3.103, and Liferay DXP 2023.Q3.1...
CVE-2025-61105HIGH7.5FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_link_info ...
CVE-2025-61102HIGH7.5FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_a...
CVE-2025-61101HIGH7.5FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_r...
CVE-2025-59151HIGH8.2Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level advertisement and internet tracker bloc...
CVE-2025-58356HIGH8.3Constellation is the first Confidential Kubernetes. The Constellation CVM image uses LUKS2-encrypted volumes for persist...
CVE-2025-12315CRITICAL9.8A vulnerability was determined in code-projects Food Ordering System 1.0. This affects an unknown function of the file /...
CVE-2025-12314CRITICAL9.8A vulnerability was found in code-projects Food Ordering System 1.0. The impacted element is an unknown function of the ...
CVE-2025-12313CRITICAL9.8A vulnerability has been found in D-Link DI-7001 MINI 19.09.19A1/24.04.18B1. The affected element is an unknown function...
CVE-2025-12312MEDIUM4.8A flaw has been found in PHPGurukul Curfew e-Pass Management System 1.0. Impacted is an unknown function of the file vie...
CVE-2025-12311MEDIUM4.8A vulnerability was detected in PHPGurukul Curfew e-Pass Management System 1.0. This issue affects some unknown processi...
CVE-2025-12310MEDIUM5.5A security vulnerability has been detected in VirtFusion up to 6.0.2. This vulnerability affects unknown code of the fil...
CVE-2025-62253MEDIUM6.1Open redirect vulnerability in page administration in Liferay Portal 7.4.0 through 7.4.3.97, and older unsupported versi...
CVE-2025-61100HIGH7.5FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the ospf_opaque_lsa_dum...
CVE-2025-61099HIGH7.5FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the opaque_info_detail ...
CVE-2025-53533MEDIUM6.1Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level advertisement and internet tracker bloc...
CVE-2025-46602MEDIUM5.5Dell SupportAssist OS Recovery, versions prior to 5.5.15.0, contain an Insertion of Sensitive Information into Externall...
CVE-2025-36170MEDIUM5.4IBM QRadar SIEM 7.5 through 7.5.0 Update Pack 13 Independent Fix 02 is vulnerable to stored cross-site scripting. This v...
CVE-2025-36138MEDIUM5.4IBM QRadar SIEM 7.5 through 7.5.0 Update Pack 13 Independent Fix 02 is vulnerable to stored cross-site scripting. This v...
CVE-2025-36007HIGH7.8IBM QRadar SIEM 7.5 through 7.5.0 Update Pack 13 Independent Fix 02 is vulnerable to privilege escalation due to imprope...
CVE-2025-32785MEDIUM5.4Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level advertisement and internet tracker bloc...
CVE-2025-12365MEDIUM5.3Error Messages Wrapped In HTTP Header.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
CVE-2025-12309CRITICAL9.8A weakness has been identified in code-projects Nero Social Networking Site 1.0. This affects an unknown part of the fil...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now