2025 CVE Vulnerabilities

45,212 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-2440MEDIUM4.2CWE-922: Insecure Storage of Sensitive Information vulnerability exists that could potentially lead to unauthorized acce...
CVE-2025-27722MEDIUM5.9Cleartext transmission of sensitive information issue exists in Wi-Fi AP UNIT 'AC-WPS-11ac series'. If exploited, a man-...
CVE-2025-25213MEDIUM6.5Improper restriction of rendered UI layers or frames issue exists in Wi-Fi AP UNIT 'AC-WPS-11ac series'. If a user views...
CVE-2025-25056MEDIUM4.3Cross-site request forgery vulnerability exists in Wi-Fi AP UNIT 'AC-WPS-11ac series'. If a user views a malicious page ...
CVE-2025-23407MEDIUM4.3Incorrect privilege assignment vulnerability in the WEB UI (the setting page) exists in Wi-Fi AP UNIT 'AC-WPS-11ac serie...
CVE-2025-20952MEDIUM5.5Improper access control in Mdecservice prior to SMR Apr-2025 Release 1 allows local attackers to access arbitrary files ...
CVE-2025-3442MEDIUM4.4This vulnerability exists in TP-Link Tapo H200 V1 IoT Smart Hub due to storage of Wi-Fi credentials in plain text withi...
CVE-2025-3100MEDIUM5.4The WP Project Manager – Task, team, and project management plugin featuring kanban board and gantt charts plugin for Wo...
CVE-2025-32464MEDIUM6.8HAProxy 2.2 through 3.1.6, in certain uncommon configurations, has a sample_conv_regsub heap-based buffer overflow becau...
CVE-2025-29988MEDIUM6.7Dell Client Platform BIOS contains a Stack-based Buffer Overflow Vulnerability. A high privileged attacker with local ac...
CVE-2025-25013MEDIUM6.5Improper restriction of environment variables in Elastic Defend can lead to exposure of sensitive information such as AP...
CVE-2025-27191MEDIUM5.3Adobe Commerce versions 2.4.7-p4, 2.4.6-p9, 2.4.5-p11, 2.4.4-p12, 2.4.8-beta2 and earlier are affected by an Improper Ac...
CVE-2025-27190MEDIUM5.3Adobe Commerce versions 2.4.7-p4, 2.4.6-p9, 2.4.5-p11, 2.4.4-p12, 2.4.8-beta2 and earlier are affected by an Improper Ac...
CVE-2025-27189MEDIUM4.3Adobe Commerce versions 2.4.7-p4, 2.4.6-p9, 2.4.5-p11, 2.4.4-p12, 2.4.8-beta2 and earlier are affected by a Cross-Site R...
CVE-2025-27188MEDIUM4.3Adobe Commerce versions 2.4.7-p4, 2.4.6-p9, 2.4.5-p11, 2.4.4-p12, 2.4.8-beta2 and earlier are affected by an Improper Au...
CVE-2025-30294MEDIUM6.8ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Improper Input Validation vulnerability that...
CVE-2025-30293MEDIUM6.8ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Improper Input Validation vulnerability that...
CVE-2025-30292MEDIUM6.1ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerab...
CVE-2025-30291MEDIUM5.5ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Information Exposure vulnerability that coul...
CVE-2025-30309MEDIUM5.5XMP Toolkit versions 2023.12 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosu...
CVE-2025-30308MEDIUM5.5XMP Toolkit versions 2023.12 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosu...
CVE-2025-30307MEDIUM5.5XMP Toolkit versions 2023.12 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosu...
CVE-2025-30306MEDIUM5.5XMP Toolkit versions 2023.12 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosu...
CVE-2025-30305MEDIUM5.5XMP Toolkit versions 2023.12 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosu...
CVE-2025-30303MEDIUM5.5Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an out-of-bounds read vulnerability that could lead...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now