2025 CVE Vulnerabilities
45,207 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-0362 | MEDIUM | 6.5 | 0.2% | Apr 10, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions from 7.7 before 17.8.7, 17.9 before 17.9.6, and 17.1... |
| CVE-2025-32395 | MEDIUM | 6 | 1.7% | Apr 10, 2025 | Vite is a frontend tooling framework for javascript. Prior to 6.2.6, 6.1.5, 6.0.15, 5.4.18, and 4.5.13, the contents of ... |
| CVE-2025-32391 | MEDIUM | 4.6 | 0.3% | Apr 10, 2025 | HedgeDoc is an open source, real-time, collaborative, markdown notes application. Prior to 1.10.3, a malicious SVG file ... |
| CVE-2025-2469 | MEDIUM | 5.3 | 0.3% | Apr 10, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions from 17.9 before 17.9.6, and 17.10 before 17.10.4. T... |
| CVE-2025-29088 | MEDIUM | 5.5 | 0.2% | Apr 10, 2025 | In SQLite 3.49.0 before 3.49.1, certain argument values to sqlite3_db_config (in the C-language API) can cause a denial ... |
| CVE-2025-30148 | MEDIUM | 5.4 | 0.2% | Apr 10, 2025 | Silverstripe Framework is a PHP framework which powers the Silverstripe CMS. Prior to 5.3.23, bad actor with access to e... |
| CVE-2025-2408 | MEDIUM | 5.3 | 0.3% | Apr 10, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions from 13.12 before 17.8.7, 17.9 before 17.9.6, and 17... |
| CVE-2025-25197 | MEDIUM | 5.4 | 0.3% | Apr 10, 2025 | Silverstripe Elemental extends a page type to swap the content area for a list of manageable elements to compose a page ... |
| CVE-2025-31411 | MEDIUM | 5.9 | 0.3% | Apr 10, 2025 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in aribhour Linet ERP-Wooco... |
| CVE-2025-22374 | MEDIUM | 6 | 0.3% | Apr 10, 2025 | A Server-Side Request Forgery (SSRF) vulnerability was discovered in the videx-legacy-ssl web service of Videx’s CyberAu... |
| CVE-2025-27081 | MEDIUM | 6.8 | 0.2% | Apr 10, 2025 | A potential security vulnerability in HPE NonStop OSM Service Connection Suite could potentially be exploited to allow a... |
| CVE-2025-32282 | MEDIUM | 4.3 | 0.1% | Apr 10, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in ShareThis ShareThis Dashboard for Google Analytics googleanalytics.Th... |
| CVE-2025-32275 | MEDIUM | 5.3 | 0.3% | Apr 10, 2025 | Authentication Bypass by Spoofing vulnerability in Ays Pro Survey Maker survey-maker allows Identity Spoofing.This issue... |
| CVE-2025-32260 | MEDIUM | 5.3 | 0.2% | Apr 10, 2025 | Missing Authorization vulnerability in Detheme DethemeKit For Elementor dethemekit-for-elementor.This issue affects Deth... |
| CVE-2025-32259 | MEDIUM | 5.3 | 0.3% | Apr 10, 2025 | Missing Authorization vulnerability in Alimir WP ULike wp-ulike.This issue affects WP ULike: from n/a through <= 4.7.9.1... |
| CVE-2025-32244 | MEDIUM | 6.5 | 0.3% | Apr 10, 2025 | Missing Authorization vulnerability in QuantumCloud SEO Help seo-help allows Exploiting Incorrectly Configured Access Co... |
| CVE-2025-32243 | MEDIUM | 6.5 | 0.3% | Apr 10, 2025 | Missing Authorization vulnerability in Toast Plugins Internal Link Optimiser internal-link-finder allows Exploiting Inco... |
| CVE-2025-32242 | MEDIUM | 6.5 | 0.2% | Apr 10, 2025 | Missing Authorization vulnerability in Hive Support Hive Support hive-support allows Accessing Functionality Not Properl... |
| CVE-2025-32240 | MEDIUM | 6.5 | 0.3% | Apr 10, 2025 | Missing Authorization vulnerability in wpvsingh Site Notify site-notify allows Exploiting Incorrectly Configured Access ... |
| CVE-2025-32236 | MEDIUM | 4.3 | 0.2% | Apr 10, 2025 | Missing Authorization vulnerability in Vagonic Woocommerce Products Reorder Drag Drop Multiple Sort – Sortable, Rearrang... |
| CVE-2025-32230 | MEDIUM | 4.3 | 0.2% | Apr 10, 2025 | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Themeum Tutor LMS tutor.T... |
| CVE-2025-32228 | MEDIUM | 4.3 | 0.2% | Apr 10, 2025 | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in WP Messiah Ai Image Alt Text... |
| CVE-2025-32227 | MEDIUM | 4.3 | 0.3% | Apr 10, 2025 | Authentication Bypass by Spoofing vulnerability in Asgaros Asgaros Forum asgaros-forum allows Identity Spoofing.This iss... |
| CVE-2025-32221 | MEDIUM | 5.4 | 0.2% | Apr 10, 2025 | Missing Authorization vulnerability in Spider Themes EazyDocs eazydocs allows Exploiting Incorrectly Configured Access C... |
| CVE-2025-32216 | MEDIUM | 6.4 | 0.2% | Apr 10, 2025 | Missing Authorization vulnerability in Spider Themes Spider Elements spider-elements allows Exploiting Incorrectly Confi... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now