2025 CVE Vulnerabilities
45,233 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-59358 | HIGH | 7.5 | 1.0% | Sep 15, 2025 | The Chaos Controller Manager in Chaos Mesh exposes a GraphQL debugging server without authentication to the entire Kuber... |
| CVE-2025-43794 | MEDIUM | 4.8 | 0.2% | Sep 15, 2025 | Stored cross-site scripting (XSS) vulnerability in Liferay Portal 7.4.0 through 7.4.3.111, and older unsupported version... |
| CVE-2025-10444 | CRITICAL | 9.8 | 0.5% | Sep 15, 2025 | A security flaw has been discovered in Campcodes Online Job Finder System 1.0. This issue affects some unknown processin... |
| CVE-2025-10443 | HIGH | 8.8 | 3.7% | Sep 15, 2025 | A vulnerability was identified in Tenda AC9 and AC15 15.03.05.14/15.03.05.18. This vulnerability affects the function fo... |
| CVE-2025-9826 | MEDIUM | 5.4 | 0.2% | Sep 15, 2025 | Stored cross-site scripting vulnerability in M-Files Hubshare before version 25.8 allows authenticated attackers to caus... |
| CVE-2025-9084 | MEDIUM | 6.1 | 0.2% | Sep 15, 2025 | Mattermost versions 10.5.x <= 10.5.9 fail to properly validate redirect URLs which allows attackers to redirect users to... |
| CVE-2025-9072 | MEDIUM | 5.4 | 0.2% | Sep 15, 2025 | Mattermost versions 10.10.x <= 10.10.1, 10.5.x <= 10.5.9, 10.9.x <= 10.9.4 fail to validate the redirect_to parameter, a... |
| CVE-2025-10442 | HIGH | 8.8 | 8.3% | Sep 15, 2025 | A vulnerability was determined in Tenda AC9 and AC15 15.03.05.14. This affects the function formexeCommand of the file /... |
| CVE-2025-10441 | MEDIUM | 6.3 | 12.1% | Sep 15, 2025 | A vulnerability was found in D-Link DI-8100G, DI-8200G and DI-8003G 17.12.20A1/19.12.10A1. Affected by this issue is the... |
| CVE-2025-9078 | MEDIUM | 4.3 | 0.1% | Sep 15, 2025 | Mattermost versions 10.8.x <= 10.8.3, 10.5.x <= 10.5.8, 9.11.x <= 9.11.17, 10.10.x <= 10.10.1, 10.9.x <= 10.9.3 fail to ... |
| CVE-2025-9076 | MEDIUM | 6.5 | 0.2% | Sep 15, 2025 | Mattermost versions 10.10.x <= 10.10.1 fail to properly sanitize user data during shared channel membership synchronizat... |
| CVE-2025-10440 | MEDIUM | 6.3 | 12.1% | Sep 15, 2025 | A vulnerability has been found in D-Link DI-8100, DI-8100G, DI-8200, DI-8200G, DI-8003 and DI-8003G 16.07.26A1/17.12.20A... |
| CVE-2025-10436 | CRITICAL | 9.8 | 0.4% | Sep 15, 2025 | A weakness has been identified in Campcodes Computer Sales and Inventory System 1.0. The impacted element is an unknown ... |
| CVE-2025-10435 | CRITICAL | 9.8 | 0.4% | Sep 15, 2025 | A security flaw has been discovered in Campcodes Computer Sales and Inventory System 1.0. The affected element is an unk... |
| CVE-2025-10434 | LOW | 2.4 | 0.2% | Sep 15, 2025 | A vulnerability was identified in IbuyuCMS up to 2.6.3. Impacted is an unknown function of the file /admin/article.php?a... |
| CVE-2025-41713 | MEDIUM | 6.5 | 0.3% | Sep 15, 2025 | During a short time frame while the device is booting an unauthenticated remote attacker can send traffic to unauthorize... |
| CVE-2025-10433 | MEDIUM | 6.3 | 0.3% | Sep 15, 2025 | A vulnerability was determined in 1Panel-dev MaxKB up to 2.0.2/2.1.0. This issue affects some unknown processing of the ... |
| CVE-2025-10432 | CRITICAL | 9.8 | 1.5% | Sep 15, 2025 | A vulnerability was found in Tenda AC1206 15.03.06.23. This vulnerability affects the function check_param_changed of th... |
| CVE-2025-10431 | HIGH | 8.8 | 0.4% | Sep 15, 2025 | A vulnerability has been found in SourceCodester Pet Grooming Management Software 1.0. This affects an unknown part of t... |
| CVE-2025-10430 | HIGH | 8.8 | 0.4% | Sep 15, 2025 | A flaw has been found in SourceCodester Pet Grooming Management Software 1.0. Affected by this issue is some unknown fun... |
| CVE-2025-59378 | MEDIUM | 5.7 | 0.1% | Sep 15, 2025 | In guix-daemon in GNU Guix before 1618ca7, a content-addressed-mirrors file can be written to create a setuid program th... |
| CVE-2025-10453 | MEDIUM | 6.9 | 0.3% | Sep 15, 2025 | O'View MapServer developed by PilotGaea Technologies has a Server-Side Request Forgery vulnerability, allowing unauthent... |
| CVE-2025-10429 | HIGH | 8.8 | 0.4% | Sep 15, 2025 | A vulnerability was detected in SourceCodester Pet Grooming Management Software 1.0. Affected by this vulnerability is a... |
| CVE-2025-10428 | HIGH | 8.8 | 0.4% | Sep 15, 2025 | A security vulnerability has been detected in SourceCodester Pet Grooming Management Software 1.0. Affected is an unknow... |
| CVE-2025-10427 | HIGH | 8.8 | 0.4% | Sep 15, 2025 | A weakness has been identified in SourceCodester Pet Grooming Management Software 1.0. This impacts an unknown function ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now