2025 CVE Vulnerabilities
45,230 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-26360 | MEDIUM | 5.3 | 0.4% | Feb 12, 2025 | A CWE-306 "Missing Authentication for Critical Function" in maxprofile/persistance/routes.lua in Q-Free MaxTime less tha... |
| CVE-2025-26358 | MEDIUM | 5.5 | 0.5% | Feb 12, 2025 | A CWE-15 "External Control of System or Configuration Setting" in ldbMT.so in Q-Free MaxTime less than or equal to versi... |
| CVE-2025-26357 | MEDIUM | 4.9 | 0.7% | Feb 12, 2025 | A CWE-35 "Path Traversal" in maxtime/api/database/database.lua in Q-Free MaxTime less than or equal to version 2.11.0 al... |
| CVE-2025-26355 | MEDIUM | 6.5 | 0.9% | Feb 12, 2025 | A CWE-35 "Path Traversal" in maxtime/api/database/database.lua in Q-Free MaxTime less than or equal to version 2.11.0 al... |
| CVE-2025-26353 | MEDIUM | 4.9 | 0.8% | Feb 12, 2025 | A CWE-35 "Path Traversal" in maxtime/api/sql/sql.lua in Q-Free MaxTime less than or equal to version 2.11.0 allows an au... |
| CVE-2025-26352 | MEDIUM | 6.5 | 1.0% | Feb 12, 2025 | A CWE-35 "Path Traversal" in the template deletion mechanism in Q-Free MaxTime less than or equal to version 2.11.0 allo... |
| CVE-2025-26351 | MEDIUM | 4.9 | 0.8% | Feb 12, 2025 | A CWE-35 "Path Traversal" in the template download mechanism in Q-Free MaxTime less than or equal to version 2.11.0 allo... |
| CVE-2025-21699 | MEDIUM | 5.5 | 0.2% | Feb 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: gfs2: Truncate address space when flipping GFS2_DIF... |
| CVE-2025-21697 | MEDIUM | 5.5 | 0.2% | Feb 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Ensure job pointer is set to NULL after jo... |
| CVE-2025-21696 | MEDIUM | 5.5 | 0.2% | Feb 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm: clear uffd-wp PTE/PMD state on mremap() When m... |
| CVE-2025-21695 | MEDIUM | 4.7 | 0.2% | Feb 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-uart-backlight: fix serdev race ... |
| CVE-2025-21694 | MEDIUM | 5.5 | 0.2% | Feb 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: fs/proc: fix softlockup in __read_vmcore (part 2) ... |
| CVE-2025-1201 | MEDIUM | 6.5 | 0.4% | Feb 12, 2025 | A vulnerability was found in SourceCodester Best Church Management Software 1.1. It has been rated as critical. This iss... |
| CVE-2025-1101 | MEDIUM | 5.3 | 0.7% | Feb 12, 2025 | A CWE-204 "Observable Response Discrepancy" in the login page in Q-Free MaxTime less than or equal to version 2.11.0 all... |
| CVE-2025-1199 | MEDIUM | 6.5 | 0.4% | Feb 12, 2025 | A vulnerability was found in SourceCodester Best Church Management Software 1.1. It has been classified as critical. Thi... |
| CVE-2025-1196 | MEDIUM | 5.4 | 0.3% | Feb 12, 2025 | A vulnerability, which was classified as problematic, was found in code-projects Real Estate Property Management System ... |
| CVE-2025-1195 | MEDIUM | 5.4 | 0.3% | Feb 12, 2025 | A vulnerability, which was classified as problematic, has been found in code-projects Real Estate Property Management Sy... |
| CVE-2025-0511 | MEDIUM | 6.1 | 0.3% | Feb 12, 2025 | The Welcart e-Commerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘name’ parameter in all... |
| CVE-2025-1230 | MEDIUM | 4.8 | 0.2% | Feb 12, 2025 | Stored Cross-Site Scripting (XSS) vulnerability in Prestashop 8.1.7, due to the lack of proper validation of user input ... |
| CVE-2025-1190 | MEDIUM | 6.1 | 0.3% | Feb 12, 2025 | A vulnerability has been found in code-projects Job Recruitment 1.0 and classified as problematic. This vulnerability af... |
| CVE-2025-0506 | MEDIUM | 5.4 | 0.3% | Feb 12, 2025 | The Rise Blocks – A Complete Gutenberg Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi... |
| CVE-2025-0808 | MEDIUM | 5.4 | 0.2% | Feb 12, 2025 | The Houzez Property Feed plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inc... |
| CVE-2025-25529 | MEDIUM | 5.1 | 0.2% | Feb 11, 2025 | Buffer overflow vulnerability in Digital China DCBC Gateway 200-2.1.1 due to the lack of length verification, which is r... |
| CVE-2025-25528 | MEDIUM | 5.1 | 3.7% | Feb 11, 2025 | Multiple buffer overflow vulnerabilities in Wavlink WL-WN575A3 RPT75A3.V4300, which are caused by not performing strict ... |
| CVE-2025-25527 | MEDIUM | 5.1 | 0.2% | Feb 11, 2025 | Buffer overflow vulnerability in Ruijie RG-NBR2600S Gateway 10.3(4b12) due to the lack of length verification, which is ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now