2025 CVE Vulnerabilities

45,233 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-2404MEDIUM4.3Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Ubit Inform...
CVE-2025-10316LOW2.3The extension "Form to Database" is susceptible to Cross-Site Scripting. This issue affects the following versions: befo...
CVE-2025-5519MEDIUM6.5Insertion of Sensitive Information Into Sent Data vulnerability in ArgusTech BILGER allows Choosing Message Identifier. ...
CVE-2025-5518MEDIUM6.5Authorization Bypass Through User-Controlled Key vulnerability with user privileges in ArgusTech BILGER allows Exploitat...
CVE-2025-9808MEDIUM5.3The The Events Calendar plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including,...
CVE-2025-59453LOW3.2Click Studios Passwordstate before 9.9 Build 9972 has a potential authentication bypass for Passwordstate emergency acce...
CVE-2025-59437LOW3.2The ip (aka node-ip) package through 2.0.1 (in NPM) might allow SSRF because the IP address value 0 is improperly catego...
CVE-2025-59436LOW3.2The ip (aka node-ip) package through 2.0.1 (in NPM) might allow SSRF because the IP address value 017700000001 is improp...
CVE-2025-43375MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in Xcode 26. Processing an overly large path value may...
CVE-2025-43372HIGH7.8The issue was addressed with improved input validation. This issue is fixed in iOS 26 and iPadOS 26, macOS Sonoma 14.8.2...
CVE-2025-43371HIGH8.2This issue was addressed with improved checks. This issue is fixed in Xcode 26. An app may be able to break out of its s...
CVE-2025-43370MEDIUM4A path handling issue was addressed with improved validation. This issue is fixed in Xcode 26. Processing an overly larg...
CVE-2025-43369MEDIUM5.5This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Tahoe 26. An app may be able t...
CVE-2025-43368MEDIUM4.3A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26, iOS 26 and iPadO...
CVE-2025-43367MEDIUM5.5A privacy issue was addressed by moving sensitive data. This issue is fixed in macOS Sonoma 14.8, macOS Tahoe 26. An app...
CVE-2025-43366MEDIUM5.5An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Tahoe 26. An app may be ...
CVE-2025-43362CRITICAL9.8The issue was addressed with improved checks. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26. An ...
CVE-2025-43359CRITICAL9.8A logic issue was addressed with improved state management. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS 26 and ...
CVE-2025-43358HIGH8.8A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 18.7 and iPadOS 18.7,...
CVE-2025-43357LOW3.3This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 18.7 and iPadOS 18...
CVE-2025-43356MEDIUM6.5The issue was addressed with improved handling of caches. This issue is fixed in Safari 26, iOS 18.7 and iPadOS 18.7, iO...
CVE-2025-43355MEDIUM5.5A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS...
CVE-2025-43354MEDIUM5.5A logging issue was addressed with improved data redaction. This issue is fixed in iOS 26 and iPadOS 26, macOS Tahoe 26,...
CVE-2025-43353MEDIUM5.5The issue was addressed with improved bounds checks. This issue is fixed in macOS Sequoia 15.7, macOS Sonoma 14.8, macOS...
CVE-2025-43349LOW2.8An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 18.7 and iPadOS 18...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now