2025 CVE Vulnerabilities
45,209 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-53053 | MEDIUM | 5.5 | 0.4% | Oct 21, 2025 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affecte... |
| CVE-2025-53052 | MEDIUM | 6.1 | 0.2% | Oct 21, 2025 | Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supp... |
| CVE-2025-53051 | LOW | 2.7 | 0.3% | Oct 21, 2025 | Vulnerability in the RDBMS Functional Index component of Oracle Database Server. Supported versions that are affected a... |
| CVE-2025-53050 | HIGH | 7.5 | 0.4% | Oct 21, 2025 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Performance Monitor). S... |
| CVE-2025-53049 | HIGH | 8.4 | 0.3% | Oct 21, 2025 | Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics W... |
| CVE-2025-53048 | MEDIUM | 5.4 | 0.2% | Oct 21, 2025 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Rich Text Editor). Supp... |
| CVE-2025-53047 | MEDIUM | 5.8 | 0.3% | Oct 21, 2025 | Vulnerability in the Portable Clusterware component of Oracle Database Server. Supported versions that are affected are... |
| CVE-2025-53046 | MEDIUM | 4.9 | 0.4% | Oct 21, 2025 | Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: Analytics). The supported ... |
| CVE-2025-53045 | MEDIUM | 4.9 | 0.5% | Oct 21, 2025 | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are... |
| CVE-2025-53044 | MEDIUM | 4.9 | 0.5% | Oct 21, 2025 | Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are... |
| CVE-2025-53043 | HIGH | 8.1 | 0.3% | Oct 21, 2025 | Vulnerability in the Oracle Product Hub product of Oracle E-Business Suite (component: Item Catalog). Supported version... |
| CVE-2025-53042 | MEDIUM | 4.9 | 0.5% | Oct 21, 2025 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a... |
| CVE-2025-53041 | MEDIUM | 6.1 | 0.2% | Oct 21, 2025 | Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions th... |
| CVE-2025-53040 | MEDIUM | 4.9 | 0.5% | Oct 21, 2025 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a... |
| CVE-2025-53037 | CRITICAL | 9.8 | 0.4% | Oct 21, 2025 | Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Servic... |
| CVE-2025-53036 | HIGH | 8.6 | 0.4% | Oct 21, 2025 | Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Servic... |
| CVE-2025-53035 | MEDIUM | 6.5 | 0.3% | Oct 21, 2025 | Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Servic... |
| CVE-2025-53034 | MEDIUM | 5.4 | 0.2% | Oct 21, 2025 | Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Servic... |
| CVE-2025-52079 | HIGH | 8.8 | 0.5% | Oct 21, 2025 | The administrator password setting of the D-Link DIR-820L 1.06B02 is has Improper Access Control and is vulnerable to Un... |
| CVE-2025-50075 | MEDIUM | 6.5 | 0.3% | Oct 21, 2025 | Vulnerability in the Oracle Financial Services Revenue Management and Billing product of Oracle Financial Services Appli... |
| CVE-2025-50074 | MEDIUM | 4.9 | 0.4% | Oct 21, 2025 | Vulnerability in the Oracle Financial Services Revenue Management and Billing product of Oracle Financial Services Appli... |
| CVE-2025-62249 | MEDIUM | 6.1 | 0.2% | Oct 21, 2025 | A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025... |
| CVE-2025-61457 | MEDIUM | 6.1 | 0.3% | Oct 21, 2025 | code16 Sharp v9.6.6 is vulnerable to Cross Site Scripting (XSS) src/Form/Fields/SharpFormUploadField.php. |
| CVE-2025-61255 | MEDIUM | 6.1 | 0.2% | Oct 21, 2025 | Bank Locker Management System by PHPGurukul is affected by a Cross-Site Scripting (XSS) vulnerability via the /search pa... |
| CVE-2025-56802 | MEDIUM | 5.1 | 0.1% | Oct 21, 2025 | The Reolink desktop application uses a hard-coded and predictable AES encryption key to encrypt user configuration files... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now