2025 CVE Vulnerabilities
45,208 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-22337 | HIGH | 7.1 | 0.3% | Jan 13, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in infosoftplugin Ord... |
| CVE-2025-22314 | HIGH | 7.1 | 0.3% | Jan 13, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Scripts Food St... |
| CVE-2025-0412 | HIGH | 7.8 | 0.4% | Jan 13, 2025 | Luxion KeyShot Viewer KSP File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows ... |
| CVE-2025-0410 | HIGH | 8.8 | 0.5% | Jan 13, 2025 | A vulnerability classified as critical was found in liujianview gymxmjpa 1.0. This vulnerability affects the function Me... |
| CVE-2025-0409 | HIGH | 8.8 | 0.5% | Jan 13, 2025 | A vulnerability classified as critical has been found in liujianview gymxmjpa 1.0. This affects the function MembertypeD... |
| CVE-2025-0408 | HIGH | 8.8 | 0.6% | Jan 13, 2025 | A vulnerability was found in liujianview gymxmjpa 1.0. It has been rated as critical. Affected by this issue is the func... |
| CVE-2025-0407 | HIGH | 8.8 | 0.6% | Jan 13, 2025 | A vulnerability was found in liujianview gymxmjpa 1.0. It has been declared as critical. Affected by this vulnerability ... |
| CVE-2025-0406 | HIGH | 8.8 | 0.5% | Jan 13, 2025 | A vulnerability was found in liujianview gymxmjpa 1.0. It has been classified as critical. Affected is the function Subj... |
| CVE-2025-0405 | HIGH | 8.8 | 0.6% | Jan 13, 2025 | A vulnerability was found in liujianview gymxmjpa 1.0 and classified as critical. This issue affects the function GoodsD... |
| CVE-2025-0402 | HIGH | 8.8 | 0.4% | Jan 13, 2025 | A vulnerability classified as critical was found in 1902756969 reggie 1.0. Affected by this vulnerability is the functio... |
| CVE-2025-0399 | HIGH | 7.2 | 0.4% | Jan 12, 2025 | A vulnerability was found in StarSea99 starsea-mall 1.0. It has been declared as critical. This vulnerability affects th... |
| CVE-2025-0396 | HIGH | 8.5 | 1.0% | Jan 12, 2025 | A vulnerability, which was classified as critical, has been found in exelban stats up to 2.11.21. This issue affects the... |
| CVE-2025-0392 | HIGH | 8.8 | 0.6% | Jan 11, 2025 | A vulnerability, which was classified as critical, was found in Guangzhou Huayi Intelligent Technology Jeewms up to 2024... |
| CVE-2025-0391 | HIGH | 8.8 | 0.5% | Jan 11, 2025 | A vulnerability, which was classified as critical, has been found in Guangzhou Huayi Intelligent Technology Jeewms up to... |
| CVE-2025-0390 | HIGH | 7.5 | 0.8% | Jan 11, 2025 | A vulnerability classified as critical was found in Guangzhou Huayi Intelligent Technology Jeewms up to 20241229. This v... |
| CVE-2025-0103 | HIGH | 8.8 | 0.6% | Jan 11, 2025 | An SQL injection vulnerability in Palo Alto Networks Expedition enables an authenticated attacker to reveal Expedition d... |
| CVE-2025-23113 | HIGH | 8.8 | 0.2% | Jan 10, 2025 | An issue was discovered in REDCap 14.9.6. It has an action=myprojects&logout=1 CSRF issue in the alert-title while perfo... |
| CVE-2025-21598 | HIGH | 8.2 | 0.7% | Jan 9, 2025 | An Out-of-bounds Read vulnerability in Juniper Networks Junos OS and Junos OS Evolved's routing protocol daemon (rpd) al... |
| CVE-2025-21628 | HIGH | 8.8 | 0.6% | Jan 9, 2025 | Chatwoot is a customer engagement suite. Prior to 3.16.0, conversation and contact filters endpoints did not sanitize th... |
| CVE-2025-21602 | HIGH | 7.1 | 0.2% | Jan 9, 2025 | An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Ju... |
| CVE-2025-21600 | HIGH | 7.1 | 0.2% | Jan 9, 2025 | An Out-of-Bounds Read vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS E... |
| CVE-2025-21599 | HIGH | 8.7 | 0.6% | Jan 9, 2025 | A Missing Release of Memory after Effective Lifetime vulnerability in the Juniper Tunnel Driver (jtd) of Juniper Network... |
| CVE-2025-21593 | HIGH | 7.1 | 0.2% | Jan 9, 2025 | An Improper Control of a Resource Through its Lifetime vulnerability in the routing protocol daemon (rpd) of Juniper Net... |
| CVE-2025-22814 | HIGH | 7.1 | 0.1% | Jan 9, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Dylan James Zephyr Admin Theme zephyr-modern-admin-theme allows Cross... |
| CVE-2025-22595 | HIGH | 7.1 | 0.3% | Jan 9, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Yamna Khawaja Mail... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now