2025 CVE Vulnerabilities
45,254 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-55212 | HIGH | 7.5 | 0.9% | Aug 26, 2025 | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-... |
| CVE-2025-52184 | MEDIUM | 6.1 | 0.3% | Aug 26, 2025 | Cross Site Scripting vulnerability in Helpy.io v.2.8.0 allows a remote attacker to escalate privileges via the New Topic... |
| CVE-2025-50974 | MEDIUM | 6.5 | 0.4% | Aug 26, 2025 | The Calamaris log exporter CGI (/cgi-bin/logs.cgi/calamaris.dat) in IPFire 2.29 does not properly sanitize user-supplied... |
| CVE-2025-36729 | HIGH | 7.2 | 0.4% | Aug 26, 2025 | A non-primary administrator user with admin rights to the web interface but without shell access permissions can display... |
| CVE-2025-2697 | CRITICAL | 9.3 | 0.3% | Aug 26, 2025 | IBM Cognos Command Center 10.2.4.1 and 10.2.5 could allow a remote attacker to conduct phishing attacks, using an open... |
| CVE-2025-1994 | HIGH | 7.8 | 0.1% | Aug 26, 2025 | IBM Cognos Command Center 10.2.4.1 and 10.2.5 could allow a local user to execute arbitrary code on the system due t... |
| CVE-2025-1494 | MEDIUM | 6.1 | 0.3% | Aug 26, 2025 | IBM Cognos Command Center 10.2.4.1 and 10.2.5 could allow a remote attacker to hijack the clicking action of the victim.... |
| CVE-2025-57813 | MEDIUM | 5.9 | 0.4% | Aug 26, 2025 | traQ is a messenger application built for Digital Creators Club traP. Prior to version 3.25.0, a vulnerability exists wh... |
| CVE-2025-57810 | HIGH | 7.5 | 0.7% | Aug 26, 2025 | jsPDF is a library to generate PDFs in JavaScript. Prior to 3.0.2, user control of the first argument of the addImage me... |
| CVE-2025-56432 | MEDIUM | 6.1 | 0.7% | Aug 26, 2025 | A cross-site scripting (XSS) vulnerability exists in Nagios XI 2024R2. The vulnerability allows remote attackers to exec... |
| CVE-2025-6366 | HIGH | 8.8 | 0.3% | Aug 26, 2025 | The Event List plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 2.0.4. T... |
| CVE-2025-52219 | MEDIUM | 6.5 | 0.2% | Aug 26, 2025 | SelectZero SelectZero Data Observability Platform before 2025.5.2 contains an Open Redirect vulnerability. Legacy UI fie... |
| CVE-2025-52218 | HIGH | 7.5 | 0.3% | Aug 26, 2025 | SelectZero Data Observability Platform before 2025.5.2 is vulnerable to Content Spoofing / Text Injection. Improper sani... |
| CVE-2025-52217 | MEDIUM | 5.4 | 0.2% | Aug 26, 2025 | SelectZero Data Observability Platform before 2025.5.2 is vulnerable to HTML Injection. Legacy UI fields improperly hand... |
| CVE-2025-52037 | MEDIUM | 6.1 | 0.2% | Aug 26, 2025 | A vulnerability has been found in NotesCMS and classified as medium. Affected by this vulnerability is the page /index.p... |
| CVE-2025-52036 | MEDIUM | 6.1 | 0.2% | Aug 26, 2025 | A vulnerability has been found in NotesCMS and classified as medium. Affected by this vulnerability is the page /index.p... |
| CVE-2025-52035 | MEDIUM | 6.1 | 0.2% | Aug 26, 2025 | A vulnerability in NotesCMS and specifically in the page /index.php?route=notes. The manipulation of the title of the se... |
| CVE-2025-25737 | MEDIUM | 6.8 | 0.4% | Aug 26, 2025 | Kapsch TrafficCom RIS-9160 & RIS-9260 Roadside Units (RSUs) v3.2.0.829.23, v3.8.0.1119.42, and v4.6.0.1211.28 were disco... |
| CVE-2025-25736 | MEDIUM | 6.8 | 0.3% | Aug 26, 2025 | Kapsch TrafficCom RIS-9260 RSU LEO v3.2.0.829.23, v3.8.0.1119.42, and v4.6.0.1211.28 were discovered to contain Android ... |
| CVE-2025-25735 | MEDIUM | 4.6 | 0.2% | Aug 26, 2025 | Kapsch TrafficCom RIS-9160 & RIS-9260 Roadside Units (RSUs) v3.2.0.829.23, v3.8.0.1119.42, and v4.6.0.1211.28 were disco... |
| CVE-2025-25734 | MEDIUM | 6.8 | 0.3% | Aug 26, 2025 | Kapsch TrafficCom RIS-9160 & RIS-9260 Roadside Units (RSUs) v3.2.0.829.23, v3.8.0.1119.42, and v4.6.0.1211.28 was discov... |
| CVE-2025-25733 | LOW | 3.5 | 0.2% | Aug 26, 2025 | Incorrect access control in the SPI Flash Chip of Kapsch TrafficCom RIS-9160 & RIS-9260 Roadside Units (RSUs) v3.2.0.829... |
| CVE-2025-25732 | MEDIUM | 6.8 | 0.3% | Aug 26, 2025 | Incorrect access control in the EEPROM component of Kapsch TrafficCom RIS-9160 & RIS-9260 Roadside Units (RSUs) v3.2.0.8... |
| CVE-2025-9483 | HIGH | 8.8 | 0.9% | Aug 26, 2025 | A flaw has been found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1... |
| CVE-2025-9482 | HIGH | 8.8 | 7.5% | Aug 26, 2025 | A vulnerability was detected in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now