2025 CVE Vulnerabilities
45,230 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-11028 | HIGH | 7.5 | 0.6% | Sep 26, 2025 | A security flaw has been discovered in givanz Vvveb up to 1.0.7.2. This affects an unknown part of the component Image H... |
| CVE-2025-11027 | MEDIUM | 5.4 | 0.3% | Sep 26, 2025 | A vulnerability was identified in givanz Vvveb up to 1.0.7.2. Affected by this issue is some unknown functionality of th... |
| CVE-2025-6396 | MEDIUM | 6.1 | 0.2% | Sep 26, 2025 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Webbeyaz We... |
| CVE-2025-57292 | MEDIUM | 6.1 | 0.2% | Sep 26, 2025 | Todoist v8484 contains a stored cross-site scripting (XSS) vulnerability in the avatar upload functionality. The applica... |
| CVE-2025-55187 | CRITICAL | 9.9 | 0.4% | Sep 26, 2025 | In DriveLock 24.1.4 before 24.1.5, 24.2.5 before 24.2.6, and 25.1.2 before 25.1.4, attackers can gain elevated privilege... |
| CVE-2025-36326 | HIGH | 7.5 | 0.2% | Sep 26, 2025 | IBM Cognos Controller 11.0.0 through 11.0.1, and IBM Controller 11.1.0 through 11.1.1 could allow an attacker to obtain ... |
| CVE-2025-36274 | HIGH | 7.5 | 0.2% | Sep 26, 2025 | IBM Aspera HTTP Gateway 2.0.0 through 2.3.1 stores sensitive information in clear text in easily obtainable files which ... |
| CVE-2025-11026 | HIGH | 7.5 | 0.3% | Sep 26, 2025 | A vulnerability was determined in givanz Vvveb up to 1.0.7.2. Affected by this vulnerability is an unknown functionality... |
| CVE-2025-11019 | MEDIUM | 4.8 | 0.2% | Sep 26, 2025 | A vulnerability has been found in Total.js CMS up to 19.9.0. This impacts an unknown function of the component Files Men... |
| CVE-2025-11018 | HIGH | 7.5 | 0.9% | Sep 26, 2025 | A flaw has been found in Four-Faith Water Conservancy Informatization Platform 1.0. This affects an unknown function of ... |
| CVE-2025-11017 | MEDIUM | 5.5 | 0.2% | Sep 26, 2025 | A vulnerability was detected in OGRECave Ogre up to 14.4.1. The impacted element is the function Ogre::LogManager::strea... |
| CVE-2025-11016 | MEDIUM | 4.3 | 0.4% | Sep 26, 2025 | A security vulnerability has been detected in kalcaddle kodbox up to 1.61.09. The affected element is the function fileO... |
| CVE-2025-11015 | MEDIUM | 5.3 | 0.1% | Sep 26, 2025 | A weakness has been identified in OGRECave Ogre up to 14.4.1. Impacted is the function STBIImageCodec::encode of the fil... |
| CVE-2025-9267 | HIGH | 7 | 0.2% | Sep 26, 2025 | In Seagate Toolkit on Windows a vulnerability exists in the Toolkit Installer prior to versions 2.35.0.6 where it attemp... |
| CVE-2025-11060 | MEDIUM | 5.7 | 0.3% | Sep 26, 2025 | A flaw was found in the live query subscription mechanism of the database engine. This vulnerability allows record or gu... |
| CVE-2025-11025 | MEDIUM | 5.3 | 0.3% | Sep 26, 2025 | Insertion of Sensitive Information Into Sent Data vulnerability in Vimesoft Information Technologies and Software Inc. V... |
| CVE-2025-11014 | HIGH | 7.8 | 0.2% | Sep 26, 2025 | A security flaw has been discovered in OGRECave Ogre up to 14.4.1. This issue affects the function STBIImageCodec::encod... |
| CVE-2025-11013 | MEDIUM | 5.5 | 0.2% | Sep 26, 2025 | A vulnerability was identified in BehaviorTree up to 4.7.0. This vulnerability affects the function XMLParser::PImpl::lo... |
| CVE-2025-11012 | HIGH | 7.8 | 0.2% | Sep 26, 2025 | A vulnerability was determined in BehaviorTree up to 4.7.0. This affects the function ParseScript of the file /src/scrip... |
| CVE-2025-11011 | MEDIUM | 5.5 | 0.2% | Sep 26, 2025 | A vulnerability was found in BehaviorTree up to 4.7.0. Affected by this issue is the function JsonExporter::fromJson of ... |
| CVE-2025-11010 | MEDIUM | 5.3 | 0.1% | Sep 26, 2025 | A vulnerability has been found in vstakhov libucl up to 0.9.2. Affected by this vulnerability is the function ucl_includ... |
| CVE-2025-5069 | MEDIUM | 6.5 | 0.2% | Sep 26, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions from 17.10 before 18.2.7, 18.3 before 18.3.3, and 18... |
| CVE-2025-11042 | HIGH | 7.5 | 0.3% | Sep 26, 2025 | An issue was discovered in GitLab CE/EE affecting all versions starting from 17.2 before 18.2.7, 18.3 before 18.3.3, and... |
| CVE-2025-10868 | MEDIUM | 5.3 | 0.2% | Sep 26, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions from 17.4 before 18.2.7, 18.3 before 18.3.3, and 18.... |
| CVE-2025-10544 | HIGH | 8.6 | 0.3% | Sep 26, 2025 | Unrestricted file upload vulnerability in DocAve 6.13.2, Perimeter 1.12.3, Compliance Guardian 4.7.1, and earlier versio... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now