2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-24469 | — | — | — | Aug 23, 2025 | Rejected reason: Not used |
| CVE-2025-24468 | — | — | — | Aug 23, 2025 | Rejected reason: Not used |
| CVE-2025-22864 | — | — | — | Aug 23, 2025 | Rejected reason: Not used |
| CVE-2025-22863 | — | — | — | Aug 23, 2025 | Rejected reason: Not used |
| CVE-2025-22861 | — | — | — | Aug 23, 2025 | Rejected reason: Not used |
| CVE-2025-22860 | — | — | — | Aug 23, 2025 | Rejected reason: Not used |
| CVE-2025-43770 | MEDIUM | 6.1 | 0.2% | Aug 23, 2025 | A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.131, and Liferay DXP 2024... |
| CVE-2025-8193 | — | — | — | Aug 22, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2025-9356 | HIGH | 8.8 | 0.9% | Aug 22, 2025 | A vulnerability was determined in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.0... |
| CVE-2025-9355 | HIGH | 8.8 | 0.9% | Aug 22, 2025 | A vulnerability was found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002... |
| CVE-2025-55455 | LOW | 3.5 | 0.3% | Aug 22, 2025 | DooTask v1.0.51 was dicovered to contain an authenticated arbitrary download vulnerability via the component /msg/sendte... |
| CVE-2025-52451 | HIGH | 8.5 | 0.2% | Aug 22, 2025 | Improper Input Validation vulnerability in Salesforce Tableau Server on Windows, Linux (tabdoc api - create-data-source-... |
| CVE-2025-52450 | MEDIUM | 6.5 | 0.4% | Aug 22, 2025 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Salesforce Tableau Serve... |
| CVE-2025-4609 | CRITICAL | 9.6 | 0.4% | Aug 22, 2025 | Incorrect handle provided in unspecified circumstances in Mojo in Google Chrome on Windows prior to 136.0.7103.113 allow... |
| CVE-2025-43761 | MEDIUM | 6.1 | 0.2% | Aug 22, 2025 | A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.131, and Liferay DXP 2024... |
| CVE-2025-26498 | HIGH | 7.3 | 0.3% | Aug 22, 2025 | Unrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (establish-... |
| CVE-2025-26497 | HIGH | 7.3 | 0.3% | Aug 22, 2025 | Unrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (Flow Edito... |
| CVE-2025-26496 | CRITICAL | 9.3 | 0.2% | Aug 22, 2025 | Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Salesforce Tableau Server, Tableau Deskto... |
| CVE-2025-57801 | CRITICAL | 9.1 | 0.2% | Aug 22, 2025 | gnark is a zero-knowledge proof system framework. In versions prior to 0.14.0, the Verify function in eddsa.go and ecdsa... |
| CVE-2025-6791 | HIGH | 8.8 | 0.3% | Aug 22, 2025 | In the monitoring event logs page, it is possible to alter the http request to insert a reflect payload in the DB. Cause... |
| CVE-2025-55454 | HIGH | 8.8 | 0.6% | Aug 22, 2025 | An authenticated arbitrary file upload vulnerability in the component /msg/sendfiles of DooTask v1.0.51 allows attackers... |
| CVE-2025-54813 | HIGH | 7.5 | 1.2% | Aug 22, 2025 | Improper Output Neutralization for Logs vulnerability in Apache Log4cxx. When using JSONLayout, not all payload bytes a... |
| CVE-2025-54812 | MEDIUM | 5.4 | 1.1% | Aug 22, 2025 | Improper Output Neutralization for Logs vulnerability in Apache Log4cxx. When using HTMLLayout, logger names are not p... |
| CVE-2025-51092 | CRITICAL | 9.8 | 0.4% | Aug 22, 2025 | The LogIn-SignUp project by VishnuSivadasVS is vulnerable to SQL Injection due to unsafe construction of SQL queries in ... |
| CVE-2025-50859 | MEDIUM | 6.1 | 0.3% | Aug 22, 2025 | Reflected Cross-Site Scripting in the Change Template function in Easy Hosting Control Panel (EHCP) 20.04.1.b allows aut... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now