2025 CVE Vulnerabilities
45,227 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-1904 | MEDIUM | 6.1 | 0.3% | Mar 4, 2025 | A vulnerability, which was classified as problematic, has been found in code-projects Blood Bank System 1.0. Affected by... |
| CVE-2025-23418 | MEDIUM | 5.5 | 0.1% | Mar 4, 2025 | in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read. |
| CVE-2025-23234 | MEDIUM | 5.5 | 0.1% | Mar 4, 2025 | in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through buffer overflow. |
| CVE-2025-22897 | MEDIUM | 5.5 | 0.1% | Mar 4, 2025 | in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through buffer overflow. |
| CVE-2025-22847 | MEDIUM | 5.5 | 0.1% | Mar 4, 2025 | in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read. |
| CVE-2025-22841 | MEDIUM | 5.5 | 0.1% | Mar 4, 2025 | in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read. |
| CVE-2025-22837 | MEDIUM | 5.5 | 0.1% | Mar 4, 2025 | in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through NULL pointer dereference. |
| CVE-2025-22443 | MEDIUM | 5.5 | 0.1% | Mar 4, 2025 | in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read. |
| CVE-2025-21098 | MEDIUM | 5.5 | 0.2% | Mar 4, 2025 | in OpenHarmony v5.0.2 and prior versions allow a local attacker cause information leak through out-of-bounds read bypass... |
| CVE-2025-21097 | MEDIUM | 5.5 | 0.1% | Mar 4, 2025 | in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through NULL pointer dereference. |
| CVE-2025-21089 | MEDIUM | 5.5 | 0.1% | Mar 4, 2025 | in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read. |
| CVE-2025-20081 | MEDIUM | 5.3 | 0.1% | Mar 4, 2025 | in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through u... |
| CVE-2025-20042 | MEDIUM | 5.5 | 0.1% | Mar 4, 2025 | in OpenHarmony v5.0.2 and prior versions allow a local attacker cause information leak through out-of-bounds read. |
| CVE-2025-20024 | MEDIUM | 5.3 | 0.1% | Mar 4, 2025 | in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through i... |
| CVE-2025-20021 | MEDIUM | 5.5 | 0.1% | Mar 4, 2025 | in OpenHarmony v5.0.2 and prior versions allow a local attacker cause DOS through out-of-bounds read. |
| CVE-2025-20011 | MEDIUM | 5.5 | 0.1% | Mar 4, 2025 | in OpenHarmony v5.0.2 and prior versions allow a local attacker case DOS through missing release of memory. |
| CVE-2025-1892 | MEDIUM | 4.8 | 0.4% | Mar 4, 2025 | A vulnerability was found in shishuocms 1.1. It has been classified as problematic. Affected is an unknown function of t... |
| CVE-2025-1695 | MEDIUM | 5.3 | 0.5% | Mar 4, 2025 | In NGINX Unit before version 1.34.2 with the Java Language Module in use, undisclosed requests can lead to an infinite l... |
| CVE-2025-27221 | MEDIUM | 5.3 | 0.5% | Mar 4, 2025 | In the URI gem before 1.0.3 for Ruby, the URI handling methods (URI.join, URI#merge, URI#+) have an inadvertent leakage ... |
| CVE-2025-1891 | MEDIUM | 5.3 | 0.3% | Mar 4, 2025 | A vulnerability was found in shishuocms 1.1 and classified as problematic. This issue affects some unknown processing. T... |
| CVE-2025-1881 | MEDIUM | 5.3 | 0.3% | Mar 3, 2025 | A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been declared as problematic. Affected by this v... |
| CVE-2025-1880 | MEDIUM | 4.3 | 0.2% | Mar 3, 2025 | A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been classified as problematic. Affected is an u... |
| CVE-2025-1879 | MEDIUM | 6.8 | 0.2% | Mar 3, 2025 | A vulnerability was found in i-Drive i11 and i12 up to 20250227 and classified as problematic. This issue affects some u... |
| CVE-2025-27500 | MEDIUM | 6.1 | 0.3% | Mar 3, 2025 | OpenZiti is a free and open source project focused on bringing zero trust to any application. An endpoint(/api/upload) o... |
| CVE-2025-27499 | MEDIUM | 6.1 | 0.3% | Mar 3, 2025 | WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. A Stored Cross-Site Scri... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now