2025 CVE Vulnerabilities

45,230 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-36245HIGH8.8IBM InfoSphere 11.7.0.0 through 11.7.1.6 Information Server could allow an authenticated user to execute arbitrary comma...
CVE-2025-59933HIGH7.8libvips is a demand-driven, horizontally threaded image processing library. For versions 8.17.1 and below, when libvips ...
CVE-2025-59163LOW2.1vet is an open source software supply chain security tool. Versions 1.12.4 and below are vulnerable to a DNS rebinding a...
CVE-2025-57769MEDIUM6.1FreshRSS is a free, self-hostable RSS aggregator. Versions 1.26.3 and below contain a vulnerability where a specially cr...
CVE-2025-54875CRITICAL9.8FreshRSS is a free, self-hostable RSS aggregator. In versions 1.16.0 and above through 1.26.3, an unprivileged attacker ...
CVE-2025-54592CRITICAL9.8FreshRSS is a free, self-hostable RSS aggregator. Versions 1.26.3 and below do not properly terminate the session during...
CVE-2025-43820MEDIUM5.4Multiple cross-site scripting (XSS) vulnerabilities in the Calendar widget when inviting users to a event in Liferay Por...
CVE-2025-43818MEDIUM6.1Cross-site scripting (XSS) vulnerability in the Calendar widget in Liferay Portal 7.4.3.35 through 7.4.3.110, and Lifera...
CVE-2025-43815MEDIUM6.1Reflected cross-site scripting (XSS) vulnerability on the page configuration page in Liferay Portal 7.4.3.102 through 7....
CVE-2025-43811MEDIUM5.4Multiple stored cross-site scripting (XSS) vulnerability in the related asset selector in Liferay Portal 7.4.3.50 throug...
CVE-2025-57266CRITICAL9.8An issue was discovered in file AssistantController.java in ThriveX Blogging Framework 2.5.9 thru 3.1.3 allowing unauthe...
CVE-2025-54591HIGH7.5FreshRSS is a free, self-hostable RSS aggregator. Versions 1.26.3 and below expose information about feeds and tags of d...
CVE-2025-45376HIGH7.8Dell Repository Manager (DRM), versions 3.4.7 and 3.4.8, contains an Improper Handling of Insufficient Permissions or Pr...
CVE-2025-34235HIGH7.8Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2...
CVE-2025-34234HIGH7.5Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2...
CVE-2025-34233MEDIUM6.8Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2...
CVE-2025-34232MEDIUM5.3Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2...
CVE-2025-34231HIGH8.6Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2...
CVE-2025-34230MEDIUM5.8Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2...
CVE-2025-34229MEDIUM5.8Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2...
CVE-2025-34228HIGH8.6Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2...
CVE-2025-34225HIGH8.6Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 2...
CVE-2025-34224CRITICAL9.1Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 22.0.1049 and Application prior to version ...
CVE-2025-34223CRITICAL9.8Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 22.0.1049 and Application prior to version ...
CVE-2025-34222CRITICAL9.1Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 22.0.1049 and Application prior to version ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now