2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-1366 | HIGH | 7.8 | 0.3% | Feb 17, 2025 | A vulnerability was found in MicroWord eScan Antivirus 7.0.32 on Linux and classified as critical. Affected by this issu... |
| CVE-2025-1365 | HIGH | 7.8 | 0.3% | Feb 17, 2025 | A vulnerability, which was classified as critical, was found in GNU elfutils 0.192. This affects the function process_sy... |
| CVE-2025-0591 | HIGH | 7.8 | 0.2% | Feb 17, 2025 | Out-of-bounds Read vulnerability (CWE-125) was found in CX-Programmer. Attackers may be able to read sensitive informati... |
| CVE-2025-26768 | HIGH | 7.1 | 0.1% | Feb 16, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in what3words what3words Address Field 3-word-address-validation-field a... |
| CVE-2025-26759 | HIGH | 7.1 | 0.1% | Feb 16, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in alexvtn Content Snippet Manager content-snippet-manager allows Stored... |
| CVE-2025-26755 | HIGH | 7.6 | 0.4% | Feb 16, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in jgwhite33 WP Airbn... |
| CVE-2025-22680 | HIGH | 7.1 | 0.2% | Feb 16, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Ad Insert... |
| CVE-2025-22286 | HIGH | 7.1 | 0.2% | Feb 16, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in enituretechnology ... |
| CVE-2025-1356 | HIGH | 7.5 | 0.4% | Feb 16, 2025 | A vulnerability was found in needyamin Library Card System 1.0. It has been rated as critical. Affected by this issue is... |
| CVE-2025-1353 | HIGH | 7.3 | 0.2% | Feb 16, 2025 | A vulnerability was found in Kong Insomnia up to 10.3.0 and classified as critical. This issue affects some unknown proc... |
| CVE-2025-1352 | HIGH | 7.5 | 0.6% | Feb 16, 2025 | A vulnerability has been found in GNU elfutils 0.192 and classified as critical. This vulnerability affects the function... |
| CVE-2025-1341 | HIGH | 8.1 | 1.0% | Feb 16, 2025 | A vulnerability, which was classified as problematic, was found in PMWeb 7.2.0. This affects an unknown part of the comp... |
| CVE-2025-1340 | HIGH | 8.8 | 14.3% | Feb 16, 2025 | A vulnerability classified as critical has been found in TOTOLINK X18 9.1.0cu.2024_B20220329. Affected is the function s... |
| CVE-2025-1339 | HIGH | 8.8 | 2.7% | Feb 16, 2025 | A vulnerability was found in TOTOLINK X18 9.1.0cu.2024_B20220329. It has been rated as critical. This issue affects the ... |
| CVE-2025-1338 | HIGH | 7.3 | 51.9% | Feb 16, 2025 | A vulnerability was found in NUUO Camera up to 20250203. It has been declared as critical. This vulnerability affects th... |
| CVE-2025-1336 | HIGH | 8.1 | 1.0% | Feb 16, 2025 | A vulnerability has been found in CmsEasy 7.7.7.9 and classified as problematic. Affected by this vulnerability is the f... |
| CVE-2025-1335 | HIGH | 8.1 | 0.9% | Feb 16, 2025 | A vulnerability, which was classified as problematic, was found in CmsEasy 7.7.7.9. Affected is the function deleteimg_a... |
| CVE-2025-0997 | HIGH | 8.1 | 0.4% | Feb 15, 2025 | Use after free in Navigation in Google Chrome prior to 133.0.6943.98 allowed a remote attacker to potentially exploit he... |
| CVE-2025-0995 | HIGH | 8.8 | 0.5% | Feb 15, 2025 | Use after free in V8 in Google Chrome prior to 133.0.6943.98 allowed a remote attacker to potentially exploit heap corru... |
| CVE-2025-26819 | HIGH | 7.5 | 0.5% | Feb 15, 2025 | Monero through 0.18.3.4 before ec74ff4 does not have response limits on HTTP server connections. |
| CVE-2025-0593 | HIGH | 8.8 | 0.7% | Feb 14, 2025 | The vulnerability may allow a remote low priviledged attacker to run arbitrary shell commands by using lower-level funct... |
| CVE-2025-0592 | HIGH | 8.8 | 0.3% | Feb 14, 2025 | The vulnerability may allow a remote low priviledged attacker to run arbitrary shell commands by manipulating the firmwa... |
| CVE-2025-25297 | HIGH | 7.7 | 0.5% | Feb 14, 2025 | Label Studio is an open source data labeling tool. Prior to version 1.16.0, Label Studio's S3 storage integration featur... |
| CVE-2025-26156 | HIGH | 8.8 | 0.7% | Feb 14, 2025 | A SQL Injection vulnerability was found in /shopping/track-orders.php in PHPGurukul Online Shopping Portal v2.1, which a... |
| CVE-2025-25997 | HIGH | 7.5 | 1.0% | Feb 14, 2025 | Directory Traversal vulnerability in FeMiner wms v.1.0 allows a remote attacker to obtain sensitive information via the ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now