2025 CVE Vulnerabilities

45,251 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-36100MEDIUM5.5IBM MQ LTS 9.1.0.0 through 9.1.0.29, 9.2.0.0 through 9.2.0.36, 9.3.0.0 through 9.3.0.30 and 9.4.0.0 through 9.4.0.12 and...
CVE-2025-10066MEDIUM6.1A security vulnerability has been detected in itsourcecode POS Point of Sale System 1.0. The affected element is an unkn...
CVE-2025-10065MEDIUM6.1A weakness has been identified in itsourcecode POS Point of Sale System 1.0. Impacted is an unknown function of the file...
CVE-2025-10064MEDIUM6.1A security flaw has been discovered in itsourcecode POS Point of Sale System 1.0. This issue affects some unknown proces...
CVE-2025-10063MEDIUM6.1A vulnerability was identified in itsourcecode POS Point of Sale System 1.0. This vulnerability affects unknown code of ...
CVE-2025-10062CRITICAL9.8A vulnerability was determined in itsourcecode Student Information Management System 1.0. This affects an unknown part o...
CVE-2025-58445HIGH7.5Atlantis is a self-hosted golang application that listens for Terraform pull request events via webhooks. All versions o...
CVE-2025-58443CRITICAL9.1FOG is a free open-source cloning/imaging/rescue suite/inventory management system. Versions 1.5.10.1673 and below conta...
CVE-2025-58446HIGH7.5xgrammar is an open-source library for efficient, flexible, and portable structured generation. A grammar optimizer intr...
CVE-2025-58438CRITICAL9.4internetarchive is a Python and Command-Line Interface to Archive.org In versions 5.5.0 and below, there is a directory ...
CVE-2025-0034MEDIUM4.7Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_SRIOV_...
CVE-2025-0032HIGH7.2Improper cleanup in AMD CPU microcode patch loading could allow an attacker with local administrator privilege to load m...
CVE-2025-0011LOW3.3Improper removal of sensitive information before storage or transfer in AMD Crash Defender could allow an attacker to ob...
CVE-2025-0010MEDIUM6.1An out of bounds write in the Linux graphics driver could allow an attacker to overflow the buffer potentially resulting...
CVE-2025-0009MEDIUM5.5A NULL pointer dereference in AMD Crash Defender could allow an attacker to write a NULL output to a log file potentiall...
CVE-2025-10034CRITICAL9.8A vulnerability was found in D-Link DIR-825 1.08.01. This impacts the function get_ping6_app_stat of the file ping6_resp...
CVE-2025-10033CRITICAL9.8A vulnerability has been found in itsourcecode Online Discussion Forum 1.0. This affects an unknown function of the file...
CVE-2025-10032MEDIUM6.1A vulnerability was detected in Campcodes Grocery Sales and Inventory System 1.0. The affected element is an unknown fun...
CVE-2025-10031CRITICAL9.8A security vulnerability has been detected in Campcodes Grocery Sales and Inventory System 1.0. Impacted is an unknown f...
CVE-2025-10030CRITICAL9.8A weakness has been identified in Campcodes Grocery Sales and Inventory System 1.0. This issue affects some unknown proc...
CVE-2025-10029MEDIUM6.1A security flaw has been discovered in itsourcecode POS Point of Sale System 1.0. This vulnerability affects unknown cod...
CVE-2025-9961HIGH8.6An authenticated attacker may remotely execute arbitrary code via the CWMP binary on the devices AX10 and AX1500.  The ...
CVE-2025-10046MEDIUM4.9The ELEX WooCommerce Google Shopping (Google Product Feed) plugin for WordPress is vulnerable to SQL Injection via the '...
CVE-2025-10028MEDIUM6.1A vulnerability was identified in itsourcecode POS Point of Sale System 1.0. This affects an unknown part of the file /i...
CVE-2025-6757MEDIUM6.4The Recent Posts Widget Extended plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'rpw...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now