2025 CVE Vulnerabilities
45,251 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-36100 | MEDIUM | 5.5 | 0.1% | Sep 7, 2025 | IBM MQ LTS 9.1.0.0 through 9.1.0.29, 9.2.0.0 through 9.2.0.36, 9.3.0.0 through 9.3.0.30 and 9.4.0.0 through 9.4.0.12 and... |
| CVE-2025-10066 | MEDIUM | 6.1 | 0.4% | Sep 7, 2025 | A security vulnerability has been detected in itsourcecode POS Point of Sale System 1.0. The affected element is an unkn... |
| CVE-2025-10065 | MEDIUM | 6.1 | 0.4% | Sep 7, 2025 | A weakness has been identified in itsourcecode POS Point of Sale System 1.0. Impacted is an unknown function of the file... |
| CVE-2025-10064 | MEDIUM | 6.1 | 0.4% | Sep 7, 2025 | A security flaw has been discovered in itsourcecode POS Point of Sale System 1.0. This issue affects some unknown proces... |
| CVE-2025-10063 | MEDIUM | 6.1 | 0.4% | Sep 6, 2025 | A vulnerability was identified in itsourcecode POS Point of Sale System 1.0. This vulnerability affects unknown code of ... |
| CVE-2025-10062 | CRITICAL | 9.8 | 0.4% | Sep 6, 2025 | A vulnerability was determined in itsourcecode Student Information Management System 1.0. This affects an unknown part o... |
| CVE-2025-58445 | HIGH | 7.5 | 0.4% | Sep 6, 2025 | Atlantis is a self-hosted golang application that listens for Terraform pull request events via webhooks. All versions o... |
| CVE-2025-58443 | CRITICAL | 9.1 | 17.6% | Sep 6, 2025 | FOG is a free open-source cloning/imaging/rescue suite/inventory management system. Versions 1.5.10.1673 and below conta... |
| CVE-2025-58446 | HIGH | 7.5 | 0.5% | Sep 6, 2025 | xgrammar is an open-source library for efficient, flexible, and portable structured generation. A grammar optimizer intr... |
| CVE-2025-58438 | CRITICAL | 9.4 | 1.4% | Sep 6, 2025 | internetarchive is a Python and Command-Line Interface to Archive.org In versions 5.5.0 and below, there is a directory ... |
| CVE-2025-0034 | MEDIUM | 4.7 | 0.1% | Sep 6, 2025 | Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_SRIOV_... |
| CVE-2025-0032 | HIGH | 7.2 | 0.1% | Sep 6, 2025 | Improper cleanup in AMD CPU microcode patch loading could allow an attacker with local administrator privilege to load m... |
| CVE-2025-0011 | LOW | 3.3 | 0.2% | Sep 6, 2025 | Improper removal of sensitive information before storage or transfer in AMD Crash Defender could allow an attacker to ob... |
| CVE-2025-0010 | MEDIUM | 6.1 | 0.1% | Sep 6, 2025 | An out of bounds write in the Linux graphics driver could allow an attacker to overflow the buffer potentially resulting... |
| CVE-2025-0009 | MEDIUM | 5.5 | 0.1% | Sep 6, 2025 | A NULL pointer dereference in AMD Crash Defender could allow an attacker to write a NULL output to a log file potentiall... |
| CVE-2025-10034 | CRITICAL | 9.8 | 0.9% | Sep 6, 2025 | A vulnerability was found in D-Link DIR-825 1.08.01. This impacts the function get_ping6_app_stat of the file ping6_resp... |
| CVE-2025-10033 | CRITICAL | 9.8 | 0.4% | Sep 6, 2025 | A vulnerability has been found in itsourcecode Online Discussion Forum 1.0. This affects an unknown function of the file... |
| CVE-2025-10032 | MEDIUM | 6.1 | 0.4% | Sep 6, 2025 | A vulnerability was detected in Campcodes Grocery Sales and Inventory System 1.0. The affected element is an unknown fun... |
| CVE-2025-10031 | CRITICAL | 9.8 | 0.4% | Sep 6, 2025 | A security vulnerability has been detected in Campcodes Grocery Sales and Inventory System 1.0. Impacted is an unknown f... |
| CVE-2025-10030 | CRITICAL | 9.8 | 0.4% | Sep 6, 2025 | A weakness has been identified in Campcodes Grocery Sales and Inventory System 1.0. This issue affects some unknown proc... |
| CVE-2025-10029 | MEDIUM | 6.1 | 0.3% | Sep 6, 2025 | A security flaw has been discovered in itsourcecode POS Point of Sale System 1.0. This vulnerability affects unknown cod... |
| CVE-2025-9961 | HIGH | 8.6 | 9.8% | Sep 6, 2025 | An authenticated attacker may remotely execute arbitrary code via the CWMP binary on the devices AX10 and AX1500. The ... |
| CVE-2025-10046 | MEDIUM | 4.9 | 0.7% | Sep 6, 2025 | The ELEX WooCommerce Google Shopping (Google Product Feed) plugin for WordPress is vulnerable to SQL Injection via the '... |
| CVE-2025-10028 | MEDIUM | 6.1 | 0.3% | Sep 6, 2025 | A vulnerability was identified in itsourcecode POS Point of Sale System 1.0. This affects an unknown part of the file /i... |
| CVE-2025-6757 | MEDIUM | 6.4 | 0.2% | Sep 6, 2025 | The Recent Posts Widget Extended plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'rpw... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now