2025 CVE Vulnerabilities
45,230 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-25082 | MEDIUM | 6.5 | 0.3% | Feb 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Max Chirkov FlexID... |
| CVE-2025-25081 | MEDIUM | 4.2 | 0.2% | Feb 7, 2025 | Missing Authorization vulnerability in DeannaS Embed RSS embed-rss allows Exploiting Incorrectly Configured Access Contr... |
| CVE-2025-25080 | MEDIUM | 6.5 | 0.3% | Feb 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in gubbigubbi Kona Ga... |
| CVE-2025-25079 | MEDIUM | 6.5 | 0.3% | Feb 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Garrett Grimm Simp... |
| CVE-2025-25078 | MEDIUM | 6.5 | 0.3% | Feb 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Andrew Norcross Go... |
| CVE-2025-25077 | MEDIUM | 6.5 | 0.3% | Feb 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in dugbug Easy Chart ... |
| CVE-2025-25076 | MEDIUM | 6.5 | 0.3% | Feb 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in nicholaswilson Gra... |
| CVE-2025-25073 | MEDIUM | 5.9 | 0.3% | Feb 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vasilis Triantafyl... |
| CVE-2025-0302 | MEDIUM | 5.5 | 0.1% | Feb 7, 2025 | in OpenHarmony v4.1.2 and prior versions allow a local attacker cause DOS through integer overflow. |
| CVE-2025-23085 | MEDIUM | 5.3 | 1.3% | Feb 7, 2025 | A memory leak could occur when a remote peer abruptly closes the socket without sending a GOAWAY notification. Additiona... |
| CVE-2025-1072 | MEDIUM | 6.5 | 0.5% | Feb 7, 2025 | A Denial of Service (DoS) issue has been discovered in GitLab CE/EE affecting all versions starting from 7.14.1 prior to... |
| CVE-2025-22402 | MEDIUM | 5.4 | 0.2% | Feb 7, 2025 | Dell Update Manager Plugin, version(s) 1.5.0 through 1.6.0, contain(s) an Improper Neutralization of Script-Related HTML... |
| CVE-2025-1086 | MEDIUM | 6.9 | 0.7% | Feb 7, 2025 | A vulnerability has been found in Safetytest Cloud-Master Server up to 1.1.1 and classified as critical. This vulnerabil... |
| CVE-2025-1085 | MEDIUM | 5.3 | 0.4% | Feb 7, 2025 | A vulnerability, which was classified as problematic, was found in Animati PACS up to 1.24.12.09.03. This affects an unk... |
| CVE-2025-1084 | MEDIUM | 5.3 | 0.3% | Feb 7, 2025 | A vulnerability, which was classified as problematic, has been found in Mindskip xzs-mysql 学之思开源考试系统 3.9.0. Affected by ... |
| CVE-2025-21404 | MEDIUM | 4.3 | 1.0% | Feb 6, 2025 | Microsoft Edge (Chromium-based) Spoofing Vulnerability |
| CVE-2025-21267 | MEDIUM | 4.4 | 0.5% | Feb 6, 2025 | Microsoft Edge (Chromium-based) Spoofing Vulnerability |
| CVE-2025-21253 | MEDIUM | 5.3 | 1.1% | Feb 6, 2025 | Microsoft Edge for IOS and Android Spoofing Vulnerability |
| CVE-2025-1083 | MEDIUM | 6.8 | 0.3% | Feb 6, 2025 | A vulnerability classified as problematic was found in Mindskip xzs-mysql 学之思开源考试系统 3.9.0. Affected by this vulnerabilit... |
| CVE-2025-1082 | MEDIUM | 5.4 | 0.3% | Feb 6, 2025 | A vulnerability classified as problematic has been found in Mindskip xzs-mysql 学之思开源考试系统 3.9.0. Affected is an unknown f... |
| CVE-2025-1004 | MEDIUM | 5.3 | 0.4% | Feb 6, 2025 | Certain HP LaserJet Pro printers may potentially experience a denial of service when a user sends a raw JPEG file to the... |
| CVE-2025-0158 | MEDIUM | 5.5 | 0.1% | Feb 6, 2025 | IBM EntireX 11.1 could allow a local user to cause a denial of service due to an unhandled error and fault isolation. |
| CVE-2025-22936 | MEDIUM | 5.7 | 0.2% | Feb 6, 2025 | An issue in Smartcom Bulgaria AD Smartcom Ralink CPE/WiFi router SAM-4G1G-TT-W-VC, SAM-4F1F-TT-W-A1 allows a remote atta... |
| CVE-2025-22866 | MEDIUM | 4 | 0.3% | Feb 6, 2025 | Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number o... |
| CVE-2025-1078 | MEDIUM | 5.3 | 0.1% | Feb 6, 2025 | A vulnerability has been found in AppHouseKitchen AlDente Charge Limiter up to 1.29 on macOS and classified as critical.... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now