2025 CVE Vulnerabilities

45,224 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-27915MEDIUM5.4An issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 10.0 and 10.1. A stored cross-site scripting (XSS) vulnera...
CVE-2025-27914MEDIUM5.4An issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 10.0 and 10.1. A Reflected Cross-Site Scripting (XSS) vuln...
CVE-2025-27794MEDIUM6.8Flarum is open-source forum software. A session hijacking vulnerability exists in versions prior to 1.8.10 when an attac...
CVE-2025-21590MEDIUM6.7An Improper Isolation or Compartmentalization vulnerability in the kernel of Juniper Networks Junos OS allows a local at...
CVE-2025-29904MEDIUM5.3In JetBrains Ktor before 3.1.1 an HTTP Request Smuggling was possible
CVE-2025-1527MEDIUM5.4The ShopLentor – WooCommerce Builder for Elementor & Gutenberg +20 Modules – All in One Solution (formerly WooLentor) pl...
CVE-2025-2239MEDIUM5.3Generation of Error Message Containing Sensitive Information vulnerability in Hillstone Networks Hillstone Next Generati...
CVE-2025-21866MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: powerpc/code-patching: Fix KASAN hit by not flaggin...
CVE-2025-21865MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: gtp: Suppress list corruption splat in gtp_net_exit...
CVE-2025-21864MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: tcp: drop secpath at the same time as we currently ...
CVE-2025-21862MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drop_monitor: fix incorrect initialization order S...
CVE-2025-21861MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm/migrate_device: don't add folio to be freed to L...
CVE-2025-21859MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: USB: gadget: f_midi: f_midi_complete to call queue_...
CVE-2025-21857MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_api: fix error handling causing NULL...
CVE-2025-21854MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: sockmap, vsock: For connectible sockets allow only ...
CVE-2025-21853MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bpf: avoid holding freeze_mutex during mmap operati...
CVE-2025-21852MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: Add rx_skb of kfree_skb to raw_tp_null_args[]....
CVE-2025-21850MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: nvmet: Fix crash when a namespace is disabled The ...
CVE-2025-21849MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/i915/gt: Use spin_lock_irqsave() in interruptib...
CVE-2025-21848MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: nfp: bpf: Add check for nfp_app_ctrl_msg_alloc() A...
CVE-2025-21847MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: stream-ipc: Check for cstream nullity in...
CVE-2025-21846MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: acct: perform last write from workqueue In [1] it ...
CVE-2025-21845MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mtd: spi-nor: sst: Fix SST write failure 'commit 1...
CVE-2025-21844MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: smb: client: Add check for next_buffer in receive_e...
CVE-2025-2205MEDIUM4.8The GDPR Cookie Compliance – Cookie Banner, Cookie Consent, Cookie Notice – CCPA, DSGVO, RGPD plugin for WordPress is vu...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now