2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-62594 | MEDIUM | 5.5 | 0.3% | Oct 27, 2025 | ImageMagick is a software suite to create, edit, compose, or convert bitmap images. ImageMagick versions prior to 7.1.2-... |
| CVE-2025-62516 | — | — | — | Oct 27, 2025 | Rejected reason: Further research determined the issue is not a vulnerability. |
| CVE-2025-62263 | MEDIUM | 5.4 | 0.2% | Oct 27, 2025 | Multiple cross-site scripting (XSS) vulnerabilities in Liferay Portal 7.3.7 through 7.4.3.103, and Liferay DXP 2023.Q3.1... |
| CVE-2025-61105 | HIGH | 7.5 | 0.5% | Oct 27, 2025 | FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_link_info ... |
| CVE-2025-61102 | HIGH | 7.5 | 0.5% | Oct 27, 2025 | FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_a... |
| CVE-2025-61101 | HIGH | 7.5 | 0.5% | Oct 27, 2025 | FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_r... |
| CVE-2025-59151 | HIGH | 8.2 | 0.4% | Oct 27, 2025 | Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level advertisement and internet tracker bloc... |
| CVE-2025-58356 | HIGH | 8.3 | 0.1% | Oct 27, 2025 | Constellation is the first Confidential Kubernetes. The Constellation CVM image uses LUKS2-encrypted volumes for persist... |
| CVE-2025-12315 | CRITICAL | 9.8 | 0.4% | Oct 27, 2025 | A vulnerability was determined in code-projects Food Ordering System 1.0. This affects an unknown function of the file /... |
| CVE-2025-12314 | CRITICAL | 9.8 | 0.3% | Oct 27, 2025 | A vulnerability was found in code-projects Food Ordering System 1.0. The impacted element is an unknown function of the ... |
| CVE-2025-12313 | CRITICAL | 9.8 | 4.0% | Oct 27, 2025 | A vulnerability has been found in D-Link DI-7001 MINI 19.09.19A1/24.04.18B1. The affected element is an unknown function... |
| CVE-2025-12312 | MEDIUM | 4.8 | 0.2% | Oct 27, 2025 | A flaw has been found in PHPGurukul Curfew e-Pass Management System 1.0. Impacted is an unknown function of the file vie... |
| CVE-2025-12311 | MEDIUM | 4.8 | 0.2% | Oct 27, 2025 | A vulnerability was detected in PHPGurukul Curfew e-Pass Management System 1.0. This issue affects some unknown processi... |
| CVE-2025-12310 | MEDIUM | 5.5 | 0.4% | Oct 27, 2025 | A security vulnerability has been detected in VirtFusion up to 6.0.2. This vulnerability affects unknown code of the fil... |
| CVE-2025-62253 | MEDIUM | 6.1 | 0.2% | Oct 27, 2025 | Open redirect vulnerability in page administration in Liferay Portal 7.4.0 through 7.4.3.97, and older unsupported versi... |
| CVE-2025-61100 | HIGH | 7.5 | 0.5% | Oct 27, 2025 | FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the ospf_opaque_lsa_dum... |
| CVE-2025-61099 | HIGH | 7.5 | 0.5% | Oct 27, 2025 | FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the opaque_info_detail ... |
| CVE-2025-53533 | MEDIUM | 6.1 | 0.6% | Oct 27, 2025 | Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level advertisement and internet tracker bloc... |
| CVE-2025-46602 | MEDIUM | 5.5 | 0.1% | Oct 27, 2025 | Dell SupportAssist OS Recovery, versions prior to 5.5.15.0, contain an Insertion of Sensitive Information into Externall... |
| CVE-2025-36170 | MEDIUM | 5.4 | 0.2% | Oct 27, 2025 | IBM QRadar SIEM 7.5 through 7.5.0 Update Pack 13 Independent Fix 02 is vulnerable to stored cross-site scripting. This v... |
| CVE-2025-36138 | MEDIUM | 5.4 | 0.2% | Oct 27, 2025 | IBM QRadar SIEM 7.5 through 7.5.0 Update Pack 13 Independent Fix 02 is vulnerable to stored cross-site scripting. This v... |
| CVE-2025-36007 | HIGH | 7.8 | 0.1% | Oct 27, 2025 | IBM QRadar SIEM 7.5 through 7.5.0 Update Pack 13 Independent Fix 02 is vulnerable to privilege escalation due to imprope... |
| CVE-2025-32785 | MEDIUM | 5.4 | 0.2% | Oct 27, 2025 | Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level advertisement and internet tracker bloc... |
| CVE-2025-12365 | MEDIUM | 5.3 | 0.2% | Oct 27, 2025 | Error Messages Wrapped In HTTP Header.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5. |
| CVE-2025-12309 | CRITICAL | 9.8 | 0.4% | Oct 27, 2025 | A weakness has been identified in code-projects Nero Social Networking Site 1.0. This affects an unknown part of the fil... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now