2025 CVE Vulnerabilities

45,321 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-68454HIGH8.8Craft is a platform for creating digital experiences. Versions 5.0.0-RC1 through 5.8.20 and 4.0.0-RC1 through 4.16.16 ar...
CVE-2025-68428HIGH7.5jsPDF is a library to generate PDFs in JavaScript. Prior to version 4.0.0, user control of the first argument of the loa...
CVE-2025-64425HIGH8.1Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. In Coolify versions ...
CVE-2025-64424HIGH8.8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. In Coolify versions ...
CVE-2025-64423HIGH8.8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. In Coolify versions ...
CVE-2025-67419HIGH7.5A Denial of Service (DoS) vulnerability in evershop 2.1.0 and prior allows unauthenticated attackers to exhaust the appl...
CVE-2025-64421HIGH8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. In Coolify versions ...
CVE-2025-64420HIGH8.8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. In Coolify versions ...
CVE-2025-64419HIGH8.8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0...
CVE-2025-53966HIGH8.4An issue was discovered in Samsung Mobile Processor Exynos 1380, 1480, 2400, and 1580. Incorrect Handling of the NL80211...
CVE-2025-49495HIGH8.4An issue was discovered in the WiFi driver in Samsung Mobile Processor Exynos 1380, 1480, 2400, 1580. Mishandling of an ...
CVE-2025-43706HIGH7.5An issue was discovered in L2 in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 240...
CVE-2025-59158HIGH8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Coolify versions pri...
CVE-2025-59157HIGH8.8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0...
CVE-2025-59156HIGH8.8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0...
CVE-2025-57836HIGH7.8An issue was discovered in Samsung Magician 6.3.0 through 8.3.2 on Windows. The installer creates a temporary folder wit...
CVE-2025-52519HIGH7.1An issue was discovered in the Camera in Samsung Mobile Processor and Wearable Processor Exynos 1330, 1380, 1480, 2400, ...
CVE-2025-46255HIGH7.5Missing Authorization vulnerability in Marketing Fire LLC LoginWP - Pro allows Accessing Functionality Not Properly Cons...
CVE-2025-67303HIGH7.5An issue in ComfyUI-Manager prior to version 3.38 allowed remote attackers to potentially manipulate its configuration a...
CVE-2025-69087HIGH8.1Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2025-68850HIGH7.5Missing Authorization vulnerability in codepeople Sell Downloads sell-downloads allows Exploiting Incorrectly Configured...
CVE-2025-68547HIGH7.5Missing Authorization vulnerability in wpweb Follow My Blog Post follow-my-blog-post allows Exploiting Incorrectly Confi...
CVE-2025-68044HIGH8.6Authorization Bypass Through User-Controlled Key vulnerability in Rustaurius Five Star Restaurant Reservations restauran...
CVE-2025-68033HIGH7.5Insertion of Sensitive Information Into Sent Data vulnerability in Brecht Custom Related Posts custom-related-posts allo...
CVE-2025-31047HIGH8.8Deserialization of Untrusted Data vulnerability in Themify Themify Edmin allows Object Injection.This issue affects Them...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now