2025 CVE Vulnerabilities

45,137 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-68049MEDIUM6.3Subscriber Broken Access Control in bunny.net <= 2.3.6 versions.
CVE-2025-60175MEDIUM4.4Administrator Server Side Request Forgery (SSRF) in PopAd <= 1.0.4 versions.
CVE-2025-70102MEDIUM6.3A NULL pointer dereference occurs in Roy Marples NetworkConfiguration/dhcpcd 10.3.0 while parsing configuration options....
CVE-2025-55663MEDIUM5.5A segmentation violation in the Track_SetStreamDescriptor function (isomedia/track.c) of GPAC MP4Box v2.4 allows attacke...
CVE-2025-55661MEDIUM5.5A heap buffer overflow in the Opus audio stream parser component of GPAC MP4Box v2.4 allows attackers to cause a Denial ...
CVE-2025-55660MEDIUM5.5A stack overflow in the gf_opus_read_length function (media_tools/av_parsers.c) of GPAC MP4Box v2.4 allows attackers to ...
CVE-2025-55652MEDIUM5.5A heap buffer overflow in the gf_isom_vp_config_new function (isomedia/avc_ext.c) of GPAC MP4Box v2.4 allows attackers t...
CVE-2025-55650MEDIUM5.5A heap use-after-free in the gf_node_get_tag function (scenegraph/base_scenegraph.c) of GPAC MP4Box v2.4 allows attacker...
CVE-2025-55649MEDIUM5.5A NULL pointer dereference in the gf_media_map_esd function (media_tools/isom_tools.c) of GPAC MP4Box v2.4 allows attack...
CVE-2025-55648MEDIUM5.5A heap buffer overflow in the gf_opus_parse_packet_header function (media_tools/av_parsers.c) of GPAC MP4Box v2.4 allows...
CVE-2025-55647MEDIUM5.5An Out-of-Memory in the mp4_mux_cenc_insert_pssh function (filters/mux_isom.c) of GPAC MP4Box v2.4 allows attackers to c...
CVE-2025-55645MEDIUM5.5A heap buffer overflow in the gf_cenc_set_pssh function (isomedia/drm_sample.c) of GPAC MP4Box v2.4 allows attackers to ...
CVE-2025-55644MEDIUM5.5A heap use-after-free in the gf_node_get_tag function (scenegraph/base_scenegraph.c) of GPAC MP4Box v2.4 allows attacker...
CVE-2025-55643MEDIUM5.5A NULL pointer dereference in the TrackWriter handling component (filters/mux_isom.c) of GPAC MP4Box v2.4 allows attacke...
CVE-2025-55642MEDIUM6.5GPAC MP4Box v2.4 was discovered to contain a floating point exception in the avidmx_process function (isomedia/isom_writ...
CVE-2025-55641MEDIUM5.5A NULL pointer dereference in the gf_isom_copy_sample_info function (isomedia/isom_write.c) of GPAC MP4Box v2.4 allows a...
CVE-2025-15659MEDIUM6.5Contributor Cross Site Scripting (XSS) in Elizaibots <= 1.0.2 versions.
CVE-2025-15658MEDIUM5.9Administrator Cross Site Scripting (XSS) in WP Emmet <= 0.3.4 versions.
CVE-2025-64215MEDIUM6.5Missing Authorization vulnerability in StylemixThemes MasterStudy LMS Pro allows Accessing Functionality Not Properly Co...
CVE-2025-15546MEDIUM5.4The Iptanus File Upload WordPress plugin before 5.1.7 does not implement proper file handling when the duplicatepolicy s...
CVE-2025-7019MEDIUM5.5Stack overflow vulnerability in Avast Antivirus when scanning a malformed Office Open XML file may allow Denial-of-Servi...
CVE-2025-7018MEDIUM5.5Null pointer dereference vulnerability in Avira Antivirus engine when scanning a malformed Windows PE file may allow Den...
CVE-2025-7010MEDIUM5.5Stack overflow vulnerability due to uncontrolled recursion in Avast Antivirus when scanning a malformed PDF file may all...
CVE-2025-7006MEDIUM5.5Use of stack memory after free vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Deni...
CVE-2025-7005MEDIUM5.5Uncontrolled recursion vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Denial-of-Se...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now