2025 CVE Vulnerabilities
45,230 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-36245 | HIGH | 8.8 | 0.4% | Sep 29, 2025 | IBM InfoSphere 11.7.0.0 through 11.7.1.6 Information Server could allow an authenticated user to execute arbitrary comma... |
| CVE-2025-59933 | HIGH | 7.8 | 0.2% | Sep 29, 2025 | libvips is a demand-driven, horizontally threaded image processing library. For versions 8.17.1 and below, when libvips ... |
| CVE-2025-59163 | LOW | 2.1 | 0.4% | Sep 29, 2025 | vet is an open source software supply chain security tool. Versions 1.12.4 and below are vulnerable to a DNS rebinding a... |
| CVE-2025-57769 | MEDIUM | 6.1 | 0.3% | Sep 29, 2025 | FreshRSS is a free, self-hostable RSS aggregator. Versions 1.26.3 and below contain a vulnerability where a specially cr... |
| CVE-2025-54875 | CRITICAL | 9.8 | 0.5% | Sep 29, 2025 | FreshRSS is a free, self-hostable RSS aggregator. In versions 1.16.0 and above through 1.26.3, an unprivileged attacker ... |
| CVE-2025-54592 | CRITICAL | 9.8 | 0.5% | Sep 29, 2025 | FreshRSS is a free, self-hostable RSS aggregator. Versions 1.26.3 and below do not properly terminate the session during... |
| CVE-2025-43820 | MEDIUM | 5.4 | 0.2% | Sep 29, 2025 | Multiple cross-site scripting (XSS) vulnerabilities in the Calendar widget when inviting users to a event in Liferay Por... |
| CVE-2025-43818 | MEDIUM | 6.1 | 0.2% | Sep 29, 2025 | Cross-site scripting (XSS) vulnerability in the Calendar widget in Liferay Portal 7.4.3.35 through 7.4.3.110, and Lifera... |
| CVE-2025-43815 | MEDIUM | 6.1 | 0.2% | Sep 29, 2025 | Reflected cross-site scripting (XSS) vulnerability on the page configuration page in Liferay Portal 7.4.3.102 through 7.... |
| CVE-2025-43811 | MEDIUM | 5.4 | 0.2% | Sep 29, 2025 | Multiple stored cross-site scripting (XSS) vulnerability in the related asset selector in Liferay Portal 7.4.3.50 throug... |
| CVE-2025-57266 | CRITICAL | 9.8 | 0.3% | Sep 29, 2025 | An issue was discovered in file AssistantController.java in ThriveX Blogging Framework 2.5.9 thru 3.1.3 allowing unauthe... |
| CVE-2025-54591 | HIGH | 7.5 | 0.4% | Sep 29, 2025 | FreshRSS is a free, self-hostable RSS aggregator. Versions 1.26.3 and below expose information about feeds and tags of d... |
| CVE-2025-45376 | HIGH | 7.8 | 0.1% | Sep 29, 2025 | Dell Repository Manager (DRM), versions 3.4.7 and 3.4.8, contains an Improper Handling of Insufficient Permissions or Pr... |
| CVE-2025-34235 | HIGH | 7.8 | 0.4% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2... |
| CVE-2025-34234 | HIGH | 7.5 | 0.4% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2... |
| CVE-2025-34233 | MEDIUM | 6.8 | 0.6% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2... |
| CVE-2025-34232 | MEDIUM | 5.3 | 0.5% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2... |
| CVE-2025-34231 | HIGH | 8.6 | 0.7% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2... |
| CVE-2025-34230 | MEDIUM | 5.8 | 0.5% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2... |
| CVE-2025-34229 | MEDIUM | 5.8 | 0.5% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2... |
| CVE-2025-34228 | HIGH | 8.6 | 0.7% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2... |
| CVE-2025-34225 | HIGH | 8.6 | 0.8% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2... |
| CVE-2025-34224 | CRITICAL | 9.1 | 0.9% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 22.0.1049 and Application prior to version ... |
| CVE-2025-34223 | CRITICAL | 9.8 | 1.2% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 22.0.1049 and Application prior to version ... |
| CVE-2025-34222 | CRITICAL | 9.1 | 0.5% | Sep 29, 2025 | Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 22.0.1049 and Application prior to version ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now