2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-68428 | HIGH | 7.5 | 2.1% | Jan 5, 2026 | jsPDF is a library to generate PDFs in JavaScript. Prior to version 4.0.0, user control of the first argument of the loa... |
| CVE-2025-64425 | HIGH | 8.1 | 0.4% | Jan 5, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. In Coolify versions ... |
| CVE-2025-64424 | HIGH | 8.8 | 1.9% | Jan 5, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. In Coolify versions ... |
| CVE-2025-64423 | HIGH | 8.8 | 0.3% | Jan 5, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. In Coolify versions ... |
| CVE-2025-67419 | HIGH | 7.5 | 0.3% | Jan 5, 2026 | A Denial of Service (DoS) vulnerability in evershop 2.1.0 and prior allows unauthenticated attackers to exhaust the appl... |
| CVE-2025-64421 | HIGH | 8 | 0.3% | Jan 5, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. In Coolify versions ... |
| CVE-2025-64420 | HIGH | 8.8 | 0.5% | Jan 5, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. In Coolify versions ... |
| CVE-2025-64419 | HIGH | 8.8 | 0.6% | Jan 5, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0... |
| CVE-2025-53966 | HIGH | 8.4 | 0.1% | Jan 5, 2026 | An issue was discovered in Samsung Mobile Processor Exynos 1380, 1480, 2400, and 1580. Incorrect Handling of the NL80211... |
| CVE-2025-49495 | HIGH | 8.4 | 0.1% | Jan 5, 2026 | An issue was discovered in the WiFi driver in Samsung Mobile Processor Exynos 1380, 1480, 2400, 1580. Mishandling of an ... |
| CVE-2025-43706 | HIGH | 7.5 | 0.3% | Jan 5, 2026 | An issue was discovered in L2 in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 240... |
| CVE-2025-59158 | HIGH | 8 | 0.5% | Jan 5, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Coolify versions pri... |
| CVE-2025-59157 | HIGH | 8.8 | 1.8% | Jan 5, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0... |
| CVE-2025-59156 | HIGH | 8.8 | 0.9% | Jan 5, 2026 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0... |
| CVE-2025-57836 | HIGH | 7.8 | 0.1% | Jan 5, 2026 | An issue was discovered in Samsung Magician 6.3.0 through 8.3.2 on Windows. The installer creates a temporary folder wit... |
| CVE-2025-52519 | HIGH | 7.1 | 0.1% | Jan 5, 2026 | An issue was discovered in the Camera in Samsung Mobile Processor and Wearable Processor Exynos 1330, 1380, 1480, 2400, ... |
| CVE-2025-46255 | HIGH | 7.5 | 0.2% | Jan 5, 2026 | Missing Authorization vulnerability in Marketing Fire LLC LoginWP - Pro allows Accessing Functionality Not Properly Cons... |
| CVE-2025-67303 | HIGH | 7.5 | 1.4% | Jan 5, 2026 | An issue in ComfyUI-Manager prior to version 3.38 allowed remote attackers to potentially manipulate its configuration a... |
| CVE-2025-69087 | HIGH | 8.1 | 0.3% | Jan 5, 2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-68850 | HIGH | 7.5 | 0.2% | Jan 5, 2026 | Missing Authorization vulnerability in codepeople Sell Downloads sell-downloads allows Exploiting Incorrectly Configured... |
| CVE-2025-68547 | HIGH | 7.5 | 0.2% | Jan 5, 2026 | Missing Authorization vulnerability in wpweb Follow My Blog Post follow-my-blog-post allows Exploiting Incorrectly Confi... |
| CVE-2025-68044 | HIGH | 8.6 | 0.2% | Jan 5, 2026 | Authorization Bypass Through User-Controlled Key vulnerability in Rustaurius Five Star Restaurant Reservations restauran... |
| CVE-2025-68033 | HIGH | 7.5 | 0.3% | Jan 5, 2026 | Insertion of Sensitive Information Into Sent Data vulnerability in Brecht Custom Related Posts custom-related-posts allo... |
| CVE-2025-31047 | HIGH | 8.8 | 0.3% | Jan 5, 2026 | Deserialization of Untrusted Data vulnerability in Themify Themify Edmin allows Object Injection.This issue affects Them... |
| CVE-2025-31044 | HIGH | 8.5 | 0.2% | Jan 5, 2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AA-Team Premium SE... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now