2025 CVE Vulnerabilities

45,207 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-32215MEDIUM6.5Unrestricted Upload of File with Dangerous Type vulnerability in Ability, Inc Accessibility Suite online-accessibility a...
CVE-2025-32214MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Hive Support Hive ...
CVE-2025-32213MEDIUM6.5Missing Authorization vulnerability in flothemesplugins Flo Forms flo-forms allows Exploiting Incorrectly Configured Acc...
CVE-2025-32212MEDIUM6.5Missing Authorization vulnerability in Specia Theme Specia Companion specia-companion allows Exploiting Incorrectly Conf...
CVE-2025-32210MEDIUM6.5Missing Authorization vulnerability in CreativeMindsSolutions CM Registration and Invitation Codes cm-invitation-codes a...
CVE-2025-32209MEDIUM6.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in totalprocessing Nomupay ...
CVE-2025-32208MEDIUM6.5Missing Authorization vulnerability in Hive Support Hive Support hive-support allows Exploiting Incorrectly Configured A...
CVE-2025-32199MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in eyale-vc Contact F...
CVE-2025-32198MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in themefusecom Brizy...
CVE-2025-32139MEDIUM5.9Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in FooPlugins FooBox ...
CVE-2025-2719MEDIUM6.5The Swatchly – WooCommerce Variation Swatches for Products (product attributes: Image swatch, Color swatches, Label swat...
CVE-2025-3489MEDIUM6.1A vulnerability was found in Nababur Simple-User-Management-System 1.0. It has been rated as problematic. Affected by th...
CVE-2025-22471MEDIUM6.5Dell PowerScale OneFS, versions 9.4.0.0 through 9.10.0.1, contains an integer overflow or wraparound vulnerability. An u...
CVE-2025-29989MEDIUM4.4Dell Client Platform BIOS contains a Security Version Number Mutable to Older Versions vulnerability. A high privileged ...
CVE-2025-32387MEDIUM6.5Helm is a package manager for Charts for Kubernetes. A JSON Schema file within a chart can be crafted with a deeply nest...
CVE-2025-32386MEDIUM6.5Helm is a tool for managing Charts. A chart archive file can be crafted in a manner where it expands to be significantly...
CVE-2025-24375MEDIUM5Charmed MySQL K8s operator is a Charmed Operator for running MySQL on Kubernetes. Before revision 221, the method for ca...
CVE-2025-29018MEDIUM4.8A Stored Cross-Site Scripting (XSS) vulnerability exists in the name parameter of pages_add_acc_type.php in Code Astro I...
CVE-2025-30657MEDIUM6.9An Improper Encoding or Escaping of Output vulnerability in the Sampling Route Record Daemon (SRRD) of Juniper Networks ...
CVE-2025-30655MEDIUM6.8An Improper Check for Unusual or Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Ne...
CVE-2025-30654MEDIUM6.8An Exposure of Sensitive Information to an Unauthorized Actor vulnerability in the User Interface (UI) of Juniper Networ...
CVE-2025-30653MEDIUM6.5An Expired Pointer Dereference vulnerability in Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS ...
CVE-2025-30652MEDIUM6.8An Improper Handling of Exceptional Conditions vulnerability in routing protocol daemon (rpd) of Juniper Networks Junos ...
CVE-2025-26888MEDIUM5.3Missing Authorization vulnerability in Amir Helzer WooCommerce Multilingual & Multicurrency woocommerce-multilingual all...
CVE-2025-21597MEDIUM6An Improper Check for Unusual or Exceptional Conditions vulnerability in routing protocol daemon (rpd) of Juniper Networ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now