2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-57786 | MEDIUM | 5.4 | 0.2% | Jan 20, 2026 | A reflected cross-site scripting (xss) vulnerability exists in the notifynewstudy functionality of MedDream PACS Premium... |
| CVE-2025-55071 | MEDIUM | 6.1 | 0.3% | Jan 20, 2026 | A reflected cross-site scripting (xss) vulnerability exists in the modifyAnonymize functionality of MedDream PACS Premiu... |
| CVE-2025-54861 | MEDIUM | 5.4 | 0.2% | Jan 20, 2026 | A reflected cross-site scripting (xss) vulnerability exists in the modifyCoercion functionality of MedDream PACS Premium... |
| CVE-2025-54853 | MEDIUM | 5.4 | 0.2% | Jan 20, 2026 | A reflected cross-site scripting (xss) vulnerability exists in the modifyUser functionality of MedDream PACS Premium 7.3... |
| CVE-2025-54852 | MEDIUM | 6.1 | 0.3% | Jan 20, 2026 | A reflected cross-site scripting (xss) vulnerability exists in the modifyAeTitle functionality of MedDream PACS Premium ... |
| CVE-2025-54817 | MEDIUM | 5.4 | 0.2% | Jan 20, 2026 | A reflected cross-site scripting (xss) vulnerability exists in the autoPurge functionality of MedDream PACS Premium 7.3.... |
| CVE-2025-54814 | MEDIUM | 5.4 | 0.2% | Jan 20, 2026 | A reflected cross-site scripting (xss) vulnerability exists in the modifyAutopurgeFilter functionality of MedDream PACS ... |
| CVE-2025-54778 | MEDIUM | 5.4 | 0.2% | Jan 20, 2026 | A reflected cross-site scripting (xss) vulnerability exists in the existingUser functionality of MedDream PACS Premium 7... |
| CVE-2025-54495 | MEDIUM | 5.4 | 0.3% | Jan 20, 2026 | A reflected cross-site scripting (xss) vulnerability exists in the emailfailedjob functionality of MedDream PACS Premium... |
| CVE-2025-54157 | MEDIUM | 5.4 | 0.3% | Jan 20, 2026 | A reflected cross-site scripting (xss) vulnerability exists in the encapsulatedDoc functionality of MedDream PACS Premiu... |
| CVE-2025-53854 | MEDIUM | 5.4 | 0.3% | Jan 20, 2026 | A reflected cross-site scripting (xss) vulnerability exists in the modifyHL7Route functionality of MedDream PACS Premium... |
| CVE-2025-53707 | MEDIUM | 6.1 | 0.3% | Jan 20, 2026 | A reflected cross-site scripting (xss) vulnerability exists in the modifyTranscript functionality of MedDream PACS Premi... |
| CVE-2025-53516 | MEDIUM | 6.1 | 0.3% | Jan 20, 2026 | A reflected cross-site scripting (xss) vulnerability exists in the downloadZip functionality of MedDream PACS Premium 7.... |
| CVE-2025-46270 | MEDIUM | 5.4 | 0.3% | Jan 20, 2026 | A reflected cross-site scripting (xss) vulnerability exists in the fetchPriorStudies functionality of MedDream PACS Prem... |
| CVE-2025-44000 | MEDIUM | 6.1 | 0.3% | Jan 20, 2026 | A reflected cross-site scripting (xss) vulnerability exists in the sendOruReport functionality of MedDream PACS Premium ... |
| CVE-2025-36556 | MEDIUM | 5.4 | 0.3% | Jan 20, 2026 | A reflected cross-site scripting (xss) vulnerability exists in the ldapUser functionality of MedDream PACS Premium 7.3.6... |
| CVE-2025-15043 | MEDIUM | 5.4 | 0.2% | Jan 20, 2026 | The The Events Calendar plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on t... |
| CVE-2025-13925 | MEDIUM | 4.9 | 0.3% | Jan 20, 2026 | IBM Aspera Console 3.4.7 stores potentially sensitive information in log files that could be read by a local privileged ... |
| CVE-2025-41081 | MEDIUM | 5.1 | 0.3% | Jan 20, 2026 | Reflected Cross-Site Scripting (XSS) vulnerability in IsMyGym by Zuinq Studio. This vulnerability allows an attacker to ... |
| CVE-2025-41025 | MEDIUM | 5.4 | 0.1% | Jan 20, 2026 | Stored Cross-Site Scripting (XSS) in Poultry Farm Management System v1.0 due to the lack of proper validation of user in... |
| CVE-2025-41024 | MEDIUM | 5.4 | 0.2% | Jan 20, 2026 | Stored Cross-Site Scripting (XSS) in Poultry Farm Management System v1.0 due to the lack of proper validation of user in... |
| CVE-2025-40679 | MEDIUM | 5.1 | 0.3% | Jan 20, 2026 | HTML Injection vulnerability in Isshue by Bdtask, consisting os an HTML injection due to a lack os proper validation ... |
| CVE-2025-40644 | MEDIUM | 5.1 | 0.3% | Jan 20, 2026 | Reflected Cross-Site Scripting (XSS) vulnerability in Riftzilla's QRGen. This vulnerability allows an attavker to execut... |
| CVE-2025-14369 | MEDIUM | 5.5 | 0.1% | Jan 20, 2026 | dr_flac, an audio decoder within the dr_libs toolset, contains an integer overflow vulnerability flaw due to trusting th... |
| CVE-2025-41084 | MEDIUM | 5.1 | 0.3% | Jan 20, 2026 | Stored Cross-Site Scripting (XSS) vulnerability in Sesame web application, due to the fact that uploaded SVG images are ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now