2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-6758 | CRITICAL | 9.8 | 0.4% | Aug 19, 2025 | The Real Spaces - WordPress Properties Directory Theme theme for WordPress is vulnerable to privilege escalation via the... |
| CVE-2025-38553 | — | — | — | Aug 19, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2025-8357 | MEDIUM | 4.3 | 0.3% | Aug 19, 2025 | The Media Library Assistant plugin for WordPress is vulnerable to arbitrary file deletion in the /wp-content/uploads dir... |
| CVE-2025-5417 | MEDIUM | 6.1 | 0.2% | Aug 19, 2025 | An insufficient access control vulnerability was found in the Red Hat Developer Hub rhdh/rhdh-hub-rhel9 container image.... |
| CVE-2025-7496 | MEDIUM | 6.4 | 0.2% | Aug 19, 2025 | The WPC Smart Compare for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via DOM elements... |
| CVE-2025-57725 | — | — | — | Aug 19, 2025 | Rejected reason: Not used |
| CVE-2025-57724 | — | — | — | Aug 19, 2025 | Rejected reason: Not used |
| CVE-2025-57723 | — | — | — | Aug 19, 2025 | Rejected reason: Not used |
| CVE-2025-57722 | — | — | — | Aug 19, 2025 | Rejected reason: Not used |
| CVE-2025-57721 | — | — | — | Aug 19, 2025 | Rejected reason: Not used |
| CVE-2025-57720 | — | — | — | Aug 19, 2025 | Rejected reason: Not used |
| CVE-2025-57719 | — | — | — | Aug 19, 2025 | Rejected reason: Not used |
| CVE-2025-57718 | — | — | — | Aug 19, 2025 | Rejected reason: Not used |
| CVE-2025-57717 | — | — | — | Aug 19, 2025 | Rejected reason: Not used |
| CVE-2025-54862 | MEDIUM | 5.4 | 0.2% | Aug 18, 2025 | Sante PACS Server web portal is vulnerable to stored cross-site scripting. An attacker could inject malicious HTML codes... |
| CVE-2025-54759 | MEDIUM | 6.1 | 0.2% | Aug 18, 2025 | Sante PACS Server is vulnerable to stored cross-site scripting. An attacker could inject malicious HTML codes redirectin... |
| CVE-2025-54156 | HIGH | 7.5 | 0.2% | Aug 18, 2025 | The Sante PACS Server Web Portal sends credential information without encryption. |
| CVE-2025-53948 | HIGH | 8.7 | 0.7% | Aug 18, 2025 | The Sante PACS Server allows a remote attacker to crash the main thread by sending a crafted HL7 message, causing a deni... |
| CVE-2025-52584 | HIGH | 8.4 | 0.2% | Aug 18, 2025 | In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions prior to 12.6.1204.204, the affected applicati... |
| CVE-2025-46269 | HIGH | 8.4 | 0.2% | Aug 18, 2025 | In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions prior to 12.6.1204.204, the affected applicati... |
| CVE-2025-9119 | LOW | 2.4 | 0.2% | Aug 18, 2025 | A vulnerability was determined in Netis WF2419 1.2.29433. This vulnerability affects unknown code of the file /index.htm... |
| CVE-2025-53705 | HIGH | 8.4 | 0.2% | Aug 18, 2025 | In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions prior to 12.6.1204.204, the affected applicati... |
| CVE-2025-41392 | HIGH | 8.4 | 0.2% | Aug 18, 2025 | In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions prior to 12.6.1204.204, the affected applicati... |
| CVE-2025-8098 | HIGH | 8.5 | 0.1% | Aug 18, 2025 | An improper permission vulnerability was reported in Lenovo PC Manager that could allow a local attacker to escalate pri... |
| CVE-2025-55591 | CRITICAL | 9.8 | 7.2% | Aug 18, 2025 | TOTOLINK-A3002R v4.0.0-B20230531.1404 was discovered to contain a command injection vulnerability in the devicemac param... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now