2025 CVE Vulnerabilities

45,221 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-3007MEDIUM5.5A vulnerability was found in Novastar CX40 up to 2.44.0. It has been rated as critical. This issue affects the function ...
CVE-2025-31128MEDIUM6.9gifplayer is a customizable jquery plugin to play and stop animated gifs. gifplayer contains a cross-site scripting (XSS...
CVE-2025-29908MEDIUM5.3Netty QUIC codec is a QUIC codec for netty which makes use of quiche. An issue was discovered in the codec. A hash colli...
CVE-2025-3005MEDIUM5.4A vulnerability was found in Sayski ForestBlog up to 20250321 and classified as problematic. Affected by this issue is s...
CVE-2025-3004MEDIUM5.4A vulnerability has been found in Sayski ForestBlog up to 20250321 and classified as problematic. Affected by this vulne...
CVE-2025-3003MEDIUM6.3A vulnerability, which was classified as critical, was found in ESAFENET CDG 3. Affected is an unknown function of the f...
CVE-2025-30006MEDIUM6.1Xorcom CompletePBX is vulnerable to a reflected cross-site scripting (XSS) in the administrative control panel. This...
CVE-2025-2292MEDIUM6.5Xorcom CompletePBX is vulnerable to an authenticated path traversal, allowing for arbitrary file reads via the Backup an...
CVE-2025-3048MEDIUM6.9After completing a build with AWS Serverless Application Model Command Line Interface (SAM CLI) which include symlinks, ...
CVE-2025-3047MEDIUM6.9When running the AWS Serverless Application Model Command Line Interface (SAM CLI) build process with Docker and symlink...
CVE-2025-3001MEDIUM5.3A vulnerability classified as critical was found in PyTorch 2.6.0. This vulnerability affects the function torch.lstm_ce...
CVE-2025-30209MEDIUM5.3Tuleap is an Open Source Suite to improve management of software developments and collaboration. An attacker can access ...
CVE-2025-30203MEDIUM4.8Tuleap is an Open Source Suite to improve management of software developments and collaboration. Tuleap allows cross-sit...
CVE-2025-30161MEDIUM5.4OpenEMR is a free and open source electronic health records and medical practice management application. A stored XSS vu...
CVE-2025-30155MEDIUM4.3Tuleap is an Open Source Suite to improve management of software developments and collaboration. Tuleap does not enforce...
CVE-2025-30149MEDIUM4.6OpenEMR is a free and open source electronic health records and medical practice management application. OpenEMR allows ...
CVE-2025-29929MEDIUM4.3Tuleap is an Open Source Suite to improve management of software developments and collaboration. Tuleap is missing CSRF ...
CVE-2025-29772MEDIUM6.1OpenEMR is a free and open source electronic health records and medical practice management application. The POST parame...
CVE-2025-29766MEDIUM4.3Tuleap is an Open Source Suite to improve management of software developments and collaboration. Tuleap has missing CSRF...
CVE-2025-27095MEDIUM4.3JumpServer is an open source bastion host and an operation and maintenance security audit system. Prior to 4.8.0 and 3.1...
CVE-2025-3000MEDIUM5.3A vulnerability classified as critical has been found in PyTorch 2.6.0. This affects the function torch.jit.script. The ...
CVE-2025-2999MEDIUM5.3A vulnerability was found in PyTorch 2.6.0. It has been rated as critical. Affected by this issue is the function torch....
CVE-2025-2998MEDIUM5.3A vulnerability was found in PyTorch 2.6.0. It has been declared as critical. Affected by this vulnerability is the func...
CVE-2025-31629MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jacob Allred Infus...
CVE-2025-31627MEDIUM5.9Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in David Lingren Medi...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now