2025 CVE Vulnerabilities
45,137 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-61029 | HIGH | 7.5 | 0.4% | Jun 23, 2026 | An issue in the sqlo_untry component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Servi... |
| CVE-2025-61024 | HIGH | 7.5 | 0.4% | Jun 23, 2026 | An issue in the sqlo_try_in_loop component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of... |
| CVE-2025-61028 | HIGH | 7.5 | 0.5% | Jun 23, 2026 | An issue in the time_t_to_dt component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Ser... |
| CVE-2025-61027 | HIGH | 7.5 | 0.4% | Jun 23, 2026 | An issue in the t_set_push component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Servi... |
| CVE-2025-61025 | HIGH | 7.5 | 0.4% | Jun 23, 2026 | An issue in the sslr_qst_get component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Ser... |
| CVE-2025-61023 | HIGH | 7.5 | 0.5% | Jun 23, 2026 | An issue in the st_compare component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Servi... |
| CVE-2025-61022 | HIGH | 7.5 | 0.4% | Jun 23, 2026 | An issue in the sqlo_tb_col_preds component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial o... |
| CVE-2025-61021 | HIGH | 7.5 | 0.4% | Jun 23, 2026 | An issue in the sqlo_natural_join_cond component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Den... |
| CVE-2025-61020 | HIGH | 7.5 | 0.5% | Jun 23, 2026 | An issue in the sqlo_strip_in_join component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial ... |
| CVE-2025-61019 | HIGH | 7.5 | 0.4% | Jun 23, 2026 | An issue in the sqlo_key_part_best component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial ... |
| CVE-2025-61018 | HIGH | 7.5 | 0.5% | Jun 23, 2026 | An issue in the sqlo_place_dt_set component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial o... |
| CVE-2025-62180 | HIGH | 7.1 | 0.2% | Jun 23, 2026 | Pega Platform versions 8.3.0 through Infinity 25.1.2 are affected by an authorization weakness that may allow authentica... |
| CVE-2025-71376 | HIGH | 8.1 | 0.3% | Jun 23, 2026 | picklescan before 0.0.29 fails to detect malicious pickle files using idlelib.autocomplete.AutoComplete.fetch_completion... |
| CVE-2025-71370 | HIGH | 8.1 | 0.4% | Jun 23, 2026 | picklescan before 0.0.28 fails to detect malicious torch.jit.unsupported_tensor_ops.execWrapper function calls embedded ... |
| CVE-2025-71365 | HIGH | 8.1 | 0.3% | Jun 23, 2026 | picklescan before 0.0.33 fails to detect malicious pickle files that invoke numpy.f2py.crackfortran.myeval function thro... |
| CVE-2025-71341 | HIGH | 8.1 | 0.5% | Jun 23, 2026 | picklescan before 0.0.29 fails to detect the profile.Profile.runctx function when analyzing pickle files, allowing attac... |
| CVE-2025-71337 | HIGH | 8.7 | 0.3% | Jun 23, 2026 | Flowise before 3.0.10 (affected versions 3.0.7 and earlier) contains an unverified email change vulnerability. An authen... |
| CVE-2025-71358 | HIGH | 8.1 | 0.2% | Jun 22, 2026 | picklescan before 0.0.29 fails to detect malicious pickle files that exploit idlelib.autocomplete.AutoComplete.get_entit... |
| CVE-2025-71344 | HIGH | 8.1 | 0.4% | Jun 22, 2026 | picklescan before 0.0.30 (affected versions 0.0.26 and earlier) fails to detect the ensurepip._run_pip built-in function... |
| CVE-2025-71339 | HIGH | 8.1 | 0.3% | Jun 22, 2026 | Picklescan before 0.0.33 fails to detect the numpy.f2py.crackfortran._eval_length gadget in pickle __reduce__ methods, a... |
| CVE-2025-66389 | HIGH | 7.5 | 0.4% | Jun 22, 2026 | GitHub Copilot 1.372.0 allows filesystem access outside of a workspace folder (without user approval) via a file-handler... |
| CVE-2025-4994 | HIGH | 8.7 | 0.2% | Jun 22, 2026 | The SafeLine SL6 and SL6+ devices integrated into elevator emergency intercom systems are vulnerable to an authenticatio... |
| CVE-2025-66336 | HIGH | 8.1 | 0.3% | Jun 22, 2026 | Apache Doris MCP Server contains a SQL injection vulnerability in a metadata query path. A user-controlled database name... |
| CVE-2025-71378 | HIGH | 7.8 | 0.3% | Jun 21, 2026 | picklescan before 0.0.30 fails to detect cProfile.runctx function calls in pickle file reduce methods, allowing attacker... |
| CVE-2025-71357 | HIGH | 7.8 | 0.2% | Jun 21, 2026 | picklescan before 0.0.30 fails to detect malicious pickle files using idlelib.pyshell.ModifiedInterpreter.runcommand in ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now