2025 CVE Vulnerabilities
45,224 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-26695 | MEDIUM | 5.3 | 0.1% | Mar 10, 2025 | When requesting an OpenPGP key from a WKD server, an incorrect padding size was used and a network observer could have l... |
| CVE-2025-1296 | MEDIUM | 6.5 | 0.4% | Mar 10, 2025 | Nomad Community and Nomad Enterprise (“Nomad”) are vulnerable to unintentional exposure of the workload identity token a... |
| CVE-2025-26910 | MEDIUM | 6.1 | 0.1% | Mar 10, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Iqonic Design WPBookit wpbookit allows Stored XSS.This issue affects ... |
| CVE-2025-25620 | MEDIUM | 5.4 | 0.5% | Mar 10, 2025 | Unifiedtransform 2.0 is vulnerable to Cross Site Scripting (XSS) in the Create assignment function. |
| CVE-2025-25616 | MEDIUM | 4.3 | 0.4% | Mar 10, 2025 | Unifiedtransform 2.0 is vulnerable to Incorrect Access Control, which allows students to modify rules for exams. The aff... |
| CVE-2025-1944 | MEDIUM | 6.5 | 0.3% | Mar 10, 2025 | picklescan before 0.0.23 is vulnerable to a ZIP archive manipulation attack that causes it to crash when attempting to e... |
| CVE-2025-24387 | MEDIUM | 6.5 | 0.1% | Mar 10, 2025 | A vulnerability in OTRS Application Server allows session hijacking due to missing attributes for sensitive cookie sett... |
| CVE-2025-27257 | MEDIUM | 6.1 | 0.2% | Mar 10, 2025 | Insufficient Verification of Data Authenticity vulnerability in GE Vernova UR IED family devices allows an authenticated... |
| CVE-2025-27253 | MEDIUM | 6.1 | 0.2% | Mar 10, 2025 | A CWE-15 "External Control of System or Configuration Setting" in GE Vernova UR IED family devices from version 7.0 up t... |
| CVE-2025-2150 | MEDIUM | 5.4 | 0.2% | Mar 10, 2025 | The C&Cm@il from HGiga has a Stored Cross-Site Scripting (XSS) vulnerability, allowing remote attackers with regular pri... |
| CVE-2025-1926 | MEDIUM | 4.3 | 0.2% | Mar 10, 2025 | The Page Builder: Pagelayer – Drag and Drop website builder plugin for WordPress is vulnerable to Cross-Site Request For... |
| CVE-2025-2133 | MEDIUM | 4.8 | 0.3% | Mar 10, 2025 | A vulnerability classified as problematic was found in ftcms 2.1. Affected by this vulnerability is an unknown functiona... |
| CVE-2025-2131 | MEDIUM | 4.8 | 0.3% | Mar 9, 2025 | A vulnerability was found in dayrui XunRuiCMS up to 4.6.3. It has been rated as problematic. This issue affects some unk... |
| CVE-2025-2130 | MEDIUM | 5.4 | 0.3% | Mar 9, 2025 | A vulnerability was found in OpenXE up to 1.12. It has been declared as problematic. This vulnerability affects unknown ... |
| CVE-2025-2129 | MEDIUM | 6.3 | 1.0% | Mar 9, 2025 | A vulnerability was found in Mage AI 0.9.75. It has been classified as problematic. This affects an unknown part. The ma... |
| CVE-2025-2127 | MEDIUM | 6.1 | 1.0% | Mar 9, 2025 | A vulnerability was found in JoomlaUX JUX Real Estate 3.4.0 on Joomla. It has been classified as problematic. Affected i... |
| CVE-2025-2125 | MEDIUM | 4.3 | 0.3% | Mar 9, 2025 | A vulnerability has been found in Control iD RH iD 25.2.25.0 and classified as problematic. This vulnerability affects u... |
| CVE-2025-2124 | MEDIUM | 5.1 | 0.3% | Mar 9, 2025 | A vulnerability, which was classified as problematic, was found in Control iD RH iD 25.2.25.0. This affects an unknown p... |
| CVE-2025-2123 | MEDIUM | 6.1 | 0.4% | Mar 9, 2025 | A vulnerability, which was classified as problematic, has been found in GeSHi up to 1.0.9.1. Affected by this issue is t... |
| CVE-2025-2122 | MEDIUM | 5.3 | 0.7% | Mar 9, 2025 | A vulnerability classified as problematic was found in Thinkware Car Dashcam F800 Pro up to 20250226. Affected by this v... |
| CVE-2025-27636 | MEDIUM | 5.6 | 79.8% | Mar 9, 2025 | Bypass/Injection vulnerability in Apache Camel components under particular conditions. This issue affects Apache Camel:... |
| CVE-2025-2120 | MEDIUM | 4.6 | 0.2% | Mar 9, 2025 | A vulnerability was found in Thinkware Car Dashcam F800 Pro up to 20250226. It has been rated as problematic. This issue... |
| CVE-2025-2117 | MEDIUM | 6.3 | 0.3% | Mar 9, 2025 | A vulnerability was found in Beijing Founder Electronics Founder Enjoys All-Media Acquisition and Editing System 3.0 and... |
| CVE-2025-2116 | MEDIUM | 5.3 | 0.4% | Mar 9, 2025 | A vulnerability has been found in Beijing Founder Electronics Founder Enjoys All-Media Acquisition and Editing System 3.... |
| CVE-2025-1382 | MEDIUM | 6.1 | 0.2% | Mar 9, 2025 | The Contact Us By Lord Linus WordPress plugin through 2.6 does not have CSRF check in some places, and is missing saniti... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now