2025 CVE Vulnerabilities
45,221 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-54267 | MEDIUM | 6.5 | 0.4% | Oct 14, 2025 | Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by an... |
| CVE-2025-54266 | MEDIUM | 4.8 | 0.2% | Oct 14, 2025 | Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by a ... |
| CVE-2025-54265 | MEDIUM | 5.9 | 0.5% | Oct 14, 2025 | Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by an... |
| CVE-2025-54264 | HIGH | 8.1 | 0.6% | Oct 14, 2025 | Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by a ... |
| CVE-2025-54263 | HIGH | 8.1 | 0.5% | Oct 14, 2025 | Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by an... |
| CVE-2025-62374 | MEDIUM | 6.4 | 0.4% | Oct 14, 2025 | Parse Javascript SDK provides access to the powerful Parse Server backend from your JavaScript app. Prior to 7.0.0, inje... |
| CVE-2025-61807 | HIGH | 7.8 | 0.2% | Oct 14, 2025 | Substance3D - Stager versions 3.1.4 and earlier are affected by an Integer Overflow or Wraparound vulnerability that cou... |
| CVE-2025-61806 | HIGH | 7.8 | 0.2% | Oct 14, 2025 | Substance3D - Stager versions 3.1.4 and earlier are affected by an out-of-bounds read vulnerability when parsing a craft... |
| CVE-2025-61805 | HIGH | 7.8 | 0.2% | Oct 14, 2025 | Substance3D - Stager versions 3.1.4 and earlier are affected by an out-of-bounds read vulnerability when parsing a craft... |
| CVE-2025-61803 | HIGH | 7.8 | 0.2% | Oct 14, 2025 | Substance3D - Stager versions 3.1.4 and earlier are affected by an Integer Overflow or Wraparound vulnerability that cou... |
| CVE-2025-61802 | HIGH | 7.8 | 0.2% | Oct 14, 2025 | Substance3D - Stager versions 3.1.4 and earlier are affected by a Use After Free vulnerability that could result in arbi... |
| CVE-2025-61801 | HIGH | 7.8 | 0.2% | Oct 14, 2025 | Dimension versions 4.1.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code ... |
| CVE-2025-61800 | HIGH | 7.8 | 0.2% | Oct 14, 2025 | Dimension versions 4.1.4 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result i... |
| CVE-2025-61799 | HIGH | 7.8 | 0.2% | Oct 14, 2025 | Dimension versions 4.1.4 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, wh... |
| CVE-2025-61798 | HIGH | 7.8 | 0.2% | Oct 14, 2025 | Dimension versions 4.1.4 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, wh... |
| CVE-2025-61678 | HIGH | 8.6 | 50.2% | Oct 14, 2025 | FreePBX Endpoint Manager is a module for managing telephony endpoints in FreePBX systems. In versions prior to 16.0.92 f... |
| CVE-2025-61675 | HIGH | 8.6 | 39.0% | Oct 14, 2025 | FreePBX Endpoint Manager is a module for managing telephony endpoints in FreePBX systems. In versions prior to 16.0.92 f... |
| CVE-2025-60540 | MEDIUM | 6.5 | 0.3% | Oct 14, 2025 | karakeep v0.26.0 to v0.7.0 was discovered to contain a Server-Side Request Forgery (SSRF). |
| CVE-2025-60374 | MEDIUM | 6.1 | 0.3% | Oct 14, 2025 | Stored Cross-Site Scripting (XSS) in Perfex CRM chatbot before 3.3.1 allows attackers to inject arbitrary HTML/JavaScrip... |
| CVE-2025-59429 | MEDIUM | 5.4 | 0.2% | Oct 14, 2025 | FreePBX is an open source GUI for managing Asterisk. In versions prior to 16.0.68.39 for FreePBX 16 and versions prior t... |
| CVE-2025-59051 | HIGH | 8.6 | 0.6% | Oct 14, 2025 | The FreePBX Endpoint Manager module includes a Network Scanning feature that provides web-based access to nmap functiona... |
| CVE-2025-54284 | HIGH | 7.8 | 0.2% | Oct 14, 2025 | Illustrator versions 29.7, 28.7.9 and earlier are affected by an out-of-bounds write vulnerability that could result in ... |
| CVE-2025-54283 | HIGH | 7.8 | 0.2% | Oct 14, 2025 | Illustrator versions 29.7, 28.7.9 and earlier are affected by an out-of-bounds write vulnerability that could result in ... |
| CVE-2025-54282 | HIGH | 7.8 | 0.2% | Oct 14, 2025 | Adobe Framemaker versions 2020.9, 2022.7 and earlier are affected by a Heap-based Buffer Overflow vulnerability that cou... |
| CVE-2025-54281 | HIGH | 7.8 | 0.2% | Oct 14, 2025 | Adobe Framemaker versions 2020.9, 2022.7 and earlier are affected by a Use After Free vulnerability that could result in... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now