2025 CVE Vulnerabilities

45,221 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-54267MEDIUM6.5Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by an...
CVE-2025-54266MEDIUM4.8Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by a ...
CVE-2025-54265MEDIUM5.9Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by an...
CVE-2025-54264HIGH8.1Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by a ...
CVE-2025-54263HIGH8.1Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and earlier are affected by an...
CVE-2025-62374MEDIUM6.4Parse Javascript SDK provides access to the powerful Parse Server backend from your JavaScript app. Prior to 7.0.0, inje...
CVE-2025-61807HIGH7.8Substance3D - Stager versions 3.1.4 and earlier are affected by an Integer Overflow or Wraparound vulnerability that cou...
CVE-2025-61806HIGH7.8Substance3D - Stager versions 3.1.4 and earlier are affected by an out-of-bounds read vulnerability when parsing a craft...
CVE-2025-61805HIGH7.8Substance3D - Stager versions 3.1.4 and earlier are affected by an out-of-bounds read vulnerability when parsing a craft...
CVE-2025-61803HIGH7.8Substance3D - Stager versions 3.1.4 and earlier are affected by an Integer Overflow or Wraparound vulnerability that cou...
CVE-2025-61802HIGH7.8Substance3D - Stager versions 3.1.4 and earlier are affected by a Use After Free vulnerability that could result in arbi...
CVE-2025-61801HIGH7.8Dimension versions 4.1.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code ...
CVE-2025-61800HIGH7.8Dimension versions 4.1.4 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result i...
CVE-2025-61799HIGH7.8Dimension versions 4.1.4 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, wh...
CVE-2025-61798HIGH7.8Dimension versions 4.1.4 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, wh...
CVE-2025-61678HIGH8.6FreePBX Endpoint Manager is a module for managing telephony endpoints in FreePBX systems. In versions prior to 16.0.92 f...
CVE-2025-61675HIGH8.6FreePBX Endpoint Manager is a module for managing telephony endpoints in FreePBX systems. In versions prior to 16.0.92 f...
CVE-2025-60540MEDIUM6.5karakeep v0.26.0 to v0.7.0 was discovered to contain a Server-Side Request Forgery (SSRF).
CVE-2025-60374MEDIUM6.1Stored Cross-Site Scripting (XSS) in Perfex CRM chatbot before 3.3.1 allows attackers to inject arbitrary HTML/JavaScrip...
CVE-2025-59429MEDIUM5.4FreePBX is an open source GUI for managing Asterisk. In versions prior to 16.0.68.39 for FreePBX 16 and versions prior t...
CVE-2025-59051HIGH8.6The FreePBX Endpoint Manager module includes a Network Scanning feature that provides web-based access to nmap functiona...
CVE-2025-54284HIGH7.8Illustrator versions 29.7, 28.7.9 and earlier are affected by an out-of-bounds write vulnerability that could result in ...
CVE-2025-54283HIGH7.8Illustrator versions 29.7, 28.7.9 and earlier are affected by an out-of-bounds write vulnerability that could result in ...
CVE-2025-54282HIGH7.8Adobe Framemaker versions 2020.9, 2022.7 and earlier are affected by a Heap-based Buffer Overflow vulnerability that cou...
CVE-2025-54281HIGH7.8Adobe Framemaker versions 2020.9, 2022.7 and earlier are affected by a Use After Free vulnerability that could result in...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now