2025 CVE Vulnerabilities

45,206 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-31120MEDIUM5.3NamelessMC is a free, easy to use & powerful website software for Minecraft servers. In version 2.1.4 and prior, an inse...
CVE-2025-30357MEDIUM6.8NamelessMC is a free, easy to use & powerful website software for Minecraft servers. In version 2.1.4 and prior, if a ma...
CVE-2025-27599MEDIUM6.5Element X Android is a Matrix Android Client provided by element.io. Prior to version 25.04.2, a crafted hyperlink on a ...
CVE-2025-3791MEDIUM5.3A vulnerability classified as critical was found in symisc UnQLite up to 957c377cb691a4f617db9aba5cc46d90425071e2. This ...
CVE-2025-2950MEDIUM5.4IBM i 7.3, 7.4, 7.5, and 7.5 is vulnerable to a host header injection attack caused by improper neutralization of HTTP h...
CVE-2025-3790MEDIUM6.9A vulnerability classified as critical has been found in baseweb JSite 1.0. This affects an unknown part of the file /dr...
CVE-2025-3789MEDIUM5.4A vulnerability was found in baseweb JSite 1.0. It has been rated as problematic. Affected by this issue is some unknown...
CVE-2025-32790MEDIUM4.3Dify is an open-source LLM app development platform. In versions 0.6.8 and prior, a vulnerability was identified in the ...
CVE-2025-3788MEDIUM5.4A vulnerability was found in baseweb JSite 1.0. It has been declared as problematic. Affected by this vulnerability is a...
CVE-2025-3787MEDIUM6.5A vulnerability was found in PbootCMS 3.2.5. It has been classified as problematic. Affected is an unknown function of t...
CVE-2025-3106MEDIUM6.4The LA-Studio Element Kit for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin...
CVE-2025-3056MEDIUM5.4The Download Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versi...
CVE-2025-40325MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: md/raid10: wait barrier before returning discard re...
CVE-2025-39989MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: x86/mce: use is_copy_from_user() to determine copy-...
CVE-2025-39930MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ASoC: simple-card-utils: Don't use __free(device_no...
CVE-2025-39755MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: staging: gpib: Fix cb7210 pcmcia Oops The pcmcia_...
CVE-2025-39728MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: clk: samsung: Fix UBSAN panic in samsung_clk_init()...
CVE-2025-39688MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: nfsd: allow SC_STATUS_FREEABLE when searching via n...
CVE-2025-38637MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net_sched: skbprio: Remove overly strict queue asse...
CVE-2025-38575MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ksmbd: use aead_request_free to match aead_request_...
CVE-2025-38240MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/mediatek: dp: drm_err => dev_err in HPD path to...
CVE-2025-38152MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: remoteproc: core: Clear table_sz when rproc_shutdow...
CVE-2025-38104MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Replace Mutex with Spinlock for RLCG re...
CVE-2025-38049MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: x86/resctrl: Fix allocation of cleanest CLOSID on p...
CVE-2025-37925MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: jfs: reject on-disk inodes of an unsupported type ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now