2025 CVE Vulnerabilities
45,233 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-2404 | MEDIUM | 4.3 | 0.2% | Sep 16, 2025 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Ubit Inform... |
| CVE-2025-10316 | LOW | 2.3 | 0.3% | Sep 16, 2025 | The extension "Form to Database" is susceptible to Cross-Site Scripting. This issue affects the following versions: befo... |
| CVE-2025-5519 | MEDIUM | 6.5 | 0.3% | Sep 16, 2025 | Insertion of Sensitive Information Into Sent Data vulnerability in ArgusTech BILGER allows Choosing Message Identifier. ... |
| CVE-2025-5518 | MEDIUM | 6.5 | 0.4% | Sep 16, 2025 | Authorization Bypass Through User-Controlled Key vulnerability with user privileges in ArgusTech BILGER allows Exploitat... |
| CVE-2025-9808 | MEDIUM | 5.3 | 0.8% | Sep 16, 2025 | The The Events Calendar plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including,... |
| CVE-2025-59453 | LOW | 3.2 | 0.1% | Sep 16, 2025 | Click Studios Passwordstate before 9.9 Build 9972 has a potential authentication bypass for Passwordstate emergency acce... |
| CVE-2025-59437 | LOW | 3.2 | 0.1% | Sep 16, 2025 | The ip (aka node-ip) package through 2.0.1 (in NPM) might allow SSRF because the IP address value 0 is improperly catego... |
| CVE-2025-59436 | LOW | 3.2 | 0.1% | Sep 16, 2025 | The ip (aka node-ip) package through 2.0.1 (in NPM) might allow SSRF because the IP address value 017700000001 is improp... |
| CVE-2025-43375 | MEDIUM | 5.5 | 0.3% | Sep 15, 2025 | The issue was addressed with improved checks. This issue is fixed in Xcode 26. Processing an overly large path value may... |
| CVE-2025-43372 | HIGH | 7.8 | 0.5% | Sep 15, 2025 | The issue was addressed with improved input validation. This issue is fixed in iOS 26 and iPadOS 26, macOS Sonoma 14.8.2... |
| CVE-2025-43371 | HIGH | 8.2 | 0.2% | Sep 15, 2025 | This issue was addressed with improved checks. This issue is fixed in Xcode 26. An app may be able to break out of its s... |
| CVE-2025-43370 | MEDIUM | 4 | 0.3% | Sep 15, 2025 | A path handling issue was addressed with improved validation. This issue is fixed in Xcode 26. Processing an overly larg... |
| CVE-2025-43369 | MEDIUM | 5.5 | 0.2% | Sep 15, 2025 | This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Tahoe 26. An app may be able t... |
| CVE-2025-43368 | MEDIUM | 4.3 | 0.7% | Sep 15, 2025 | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26, iOS 26 and iPadO... |
| CVE-2025-43367 | MEDIUM | 5.5 | 0.2% | Sep 15, 2025 | A privacy issue was addressed by moving sensitive data. This issue is fixed in macOS Sonoma 14.8, macOS Tahoe 26. An app... |
| CVE-2025-43366 | MEDIUM | 5.5 | 0.2% | Sep 15, 2025 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Tahoe 26. An app may be ... |
| CVE-2025-43362 | CRITICAL | 9.8 | 1.0% | Sep 15, 2025 | The issue was addressed with improved checks. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26. An ... |
| CVE-2025-43359 | CRITICAL | 9.8 | 0.9% | Sep 15, 2025 | A logic issue was addressed with improved state management. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS 26 and ... |
| CVE-2025-43358 | HIGH | 8.8 | 0.3% | Sep 15, 2025 | A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 18.7 and iPadOS 18.7,... |
| CVE-2025-43357 | LOW | 3.3 | 0.2% | Sep 15, 2025 | This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 18.7 and iPadOS 18... |
| CVE-2025-43356 | MEDIUM | 6.5 | 0.6% | Sep 15, 2025 | The issue was addressed with improved handling of caches. This issue is fixed in Safari 26, iOS 18.7 and iPadOS 18.7, iO... |
| CVE-2025-43355 | MEDIUM | 5.5 | 0.2% | Sep 15, 2025 | A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS... |
| CVE-2025-43354 | MEDIUM | 5.5 | 0.2% | Sep 15, 2025 | A logging issue was addressed with improved data redaction. This issue is fixed in iOS 26 and iPadOS 26, macOS Tahoe 26,... |
| CVE-2025-43353 | MEDIUM | 5.5 | 0.2% | Sep 15, 2025 | The issue was addressed with improved bounds checks. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS... |
| CVE-2025-43349 | LOW | 2.8 | 0.5% | Sep 15, 2025 | An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 18.7 and iPadOS 18... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now