2025 CVE Vulnerabilities

45,137 CVEs published in 2025.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2025-14266LOW0.6CSRF in Ercom Cryptobox administration console allows attacker to trigger some actions on behalf of a Cryptobox administ...
CVE-2025-13352LOW3Mattermost versions 10.11.x <= 10.11.6 and Mattermost GitHub plugin versions <=2.4.0 fail to validate plugin bot identit...
CVE-2025-68164LOW2.7In JetBrains TeamCity before 2025.11 port enumeration was possible via the Perforce connection test
CVE-2025-68162LOW2.7In JetBrains TeamCity before 2025.11 maven embedder allowed loading extensions via project configuration
CVE-2025-54004LOW2.7Missing Authorization vulnerability in WC Lovers WCFM – Frontend Manager for WooCommerce wc-frontend-manager allows Expl...
CVE-2025-49300LOW2.7Insertion of Sensitive Information Into Sent Data vulnerability in shinetheme Traveler Option Tree custom-option-tree al...
CVE-2025-14722LOW2.4A vulnerability was determined in vion707 DMadmin up to 3403cafdb42537a648c30bf8cbc8148ec60437d1. This impacts the funct...
CVE-2025-55703LOW3.3An error-based SQL injection vulnerability exists in the Sunbird Power IQ 9.2.0 API. The vulnerability is due to an outd...
CVE-2025-14697LOW3.7A security flaw has been discovered in Shenzhen Sixun Software Sixun Shanghui Group Business Management System 4.10.24.3...
CVE-2025-67899LOW2.9uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with...
CVE-2025-14651LOW3.7A vulnerability has been found in MartialBE one-hub up to 0.14.27. This vulnerability affects unknown code of the file d...
CVE-2025-14636LOW3.7A security flaw has been discovered in Tenda AX9 22.03.01.46. This affects the function image_check of the component htt...
CVE-2025-9218LOW3.7The rtMedia for WordPress, BuddyPress and bbPress plugin for WordPress is vulnerable to to Information Disclosure due to...
CVE-2025-43532LOW2.8A memory corruption issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.3 and iPadOS 18.7...
CVE-2025-43522LOW3.3A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions. This issu...
CVE-2025-43518LOW3.3A logic issue was addressed with improved checks. This issue is fixed in iOS 26.2 and iPadOS 26.2, macOS Sequoia 15.7.3,...
CVE-2025-43517LOW3.3A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia...
CVE-2025-43516LOW3.3A session management issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.3, macOS Sonoma...
CVE-2025-43437LOW3.3An information disclosure issue was addressed with improved privacy controls. This issue is fixed in iOS 26.1 and iPadOS...
CVE-2025-43410LOW2.4The issue was addressed with improved handling of caches. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonoma 14.8...
CVE-2025-43404LOW3.3A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Tahoe 26.1. An app ...
CVE-2025-36755LOW2.4The CleverDisplay BlueOne hardware player is designed with its USB interfaces physically enclosed and inaccessible under...
CVE-2025-36744LOW2.4SolarEdge SE3680H has unauthenticated disclosure of sensitive information during the bootloader loop. While the device r...
CVE-2025-10583LOW3.5The WP Fastest Cache Premium plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, an...
CVE-2025-67737LOW3.7AzuraCast is a self-hosted, all-in-one web radio management suite. Versions 0.23.1 mistakenly include an API endpoint th...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now