2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-20194 | MEDIUM | 5.4 | 0.3% | May 7, 2025 | A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, low-privile... |
| CVE-2025-20193 | MEDIUM | 6.5 | 0.4% | May 7, 2025 | A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, low-privile... |
| CVE-2025-20190 | MEDIUM | 6.5 | 0.4% | May 7, 2025 | A vulnerability in the lobby ambassador web interface of Cisco IOS XE Wireless Controller Software could allow an authen... |
| CVE-2025-20187 | MEDIUM | 6.5 | 1.2% | May 7, 2025 | A vulnerability in the application data endpoints of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could... |
| CVE-2025-20181 | MEDIUM | 6.8 | 0.2% | May 7, 2025 | A vulnerability in Cisco IOS Software for Cisco Catalyst 2960X, 2960XR, 2960CX, and 3560CX Series Switches could allow a... |
| CVE-2025-20157 | MEDIUM | 5.9 | 0.2% | May 7, 2025 | A vulnerability in certificate validation processing of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, co... |
| CVE-2025-20155 | MEDIUM | 6 | 0.1% | May 7, 2025 | A vulnerability in the bootstrap loading of Cisco IOS XE Software could allow an authenticated, local attacker to write ... |
| CVE-2025-20151 | MEDIUM | 4.3 | 0.3% | May 7, 2025 | A vulnerability in the implementation of the Simple Network Management Protocol Version 3 (SNMPv3) feature of Cisco IOS ... |
| CVE-2025-20147 | MEDIUM | 5.4 | 0.3% | May 7, 2025 | A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, c... |
| CVE-2025-20137 | MEDIUM | 4.7 | 0.2% | May 7, 2025 | A vulnerability in the access control list (ACL) programming of Cisco IOS Software that is running on Cisco Catalyst 100... |
| CVE-2025-46827 | MEDIUM | 5.4 | 0.2% | May 7, 2025 | Graylog is a free and open log management platform. Prior to versions 6.0.14, 6.1.10, and 6.2.0, it is possible to obtai... |
| CVE-2025-47692 | MEDIUM | 4.3 | 0.2% | May 7, 2025 | Missing Authorization vulnerability in contentstudio Contentstudio contentstudio allows Exploiting Incorrectly Configure... |
| CVE-2025-47691 | MEDIUM | 5.5 | 0.2% | May 7, 2025 | Improper Control of Generation of Code ('Code Injection') vulnerability in Ultimate Member Ultimate Member ultimate-memb... |
| CVE-2025-47686 | MEDIUM | 6.5 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in DELUCKS DELUCKS SE... |
| CVE-2025-47684 | MEDIUM | 5.4 | 0.1% | May 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Smaily Smaily for WP smaily-for-wp allows Cross Site Request Forgery.... |
| CVE-2025-47681 | MEDIUM | 4.3 | 0.1% | May 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Ability, Inc Web Accessibility with Max Access accessibility-toolbar ... |
| CVE-2025-47679 | MEDIUM | 6.5 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RS WP THEMES RS WP... |
| CVE-2025-47677 | MEDIUM | 6.5 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in gt3themes Photo Ga... |
| CVE-2025-47676 | MEDIUM | 6.5 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Faiyaz Alam User L... |
| CVE-2025-47675 | MEDIUM | 6.5 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in woobox Woobox woob... |
| CVE-2025-47674 | MEDIUM | 4.3 | 0.1% | May 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Credova Financial Credova_Financial credova-financial allows Cross Si... |
| CVE-2025-47669 | MEDIUM | 6.5 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sabuj Kundu CBX Ma... |
| CVE-2025-47668 | MEDIUM | 5.9 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in cookiecode CookieC... |
| CVE-2025-47667 | MEDIUM | 5.4 | 0.1% | May 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in qusupport LiveAgent liveagent allows Cross Site Request Forgery.This ... |
| CVE-2025-47665 | MEDIUM | 5.9 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in bistromatic N360 |... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now