2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-55150 | CRITICAL | 9.8 | 1.6% | Aug 11, 2025 | Stirling-PDF is a locally hosted web application that performs various operations on PDF files. Prior to version 1.1.0, ... |
| CVE-2025-55012 | HIGH | 8.5 | 0.2% | Aug 11, 2025 | Zed is a multiplayer code editor. Prior to version 0.197.3, in the Zed Agent Panel allowed for an AI agent to achieve Re... |
| CVE-2025-54992 | MEDIUM | 6.9 | 0.4% | Aug 11, 2025 | OpenKilda is an open-source OpenFlow controller. Prior to version 1.164.0, an XML external entity (XXE) injection vulner... |
| CVE-2025-25235 | HIGH | 8.6 | 0.3% | Aug 11, 2025 | Server-Side Request Forgery (SSRF) in Omnissa Secure Email Gateway (SEG) in SEG prior to 2.32 running on Windows and SEG... |
| CVE-2025-54878 | HIGH | 8.6 | 0.4% | Aug 11, 2025 | CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDL... |
| CVE-2025-40920 | HIGH | 8.6 | 0.4% | Aug 11, 2025 | Catalyst::Authentication::Credential::HTTP versions 1.018 and earlier for Perl generate nonces using the Perl Data::UUID... |
| CVE-2025-8285 | MEDIUM | 5.3 | 0.2% | Aug 11, 2025 | Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the channel which allows attackers ... |
| CVE-2025-7679 | CRITICAL | 9.2 | 0.4% | Aug 11, 2025 | The ASPECT system allows users to bypass authentication. This issue affects all versions of ASPECT |
| CVE-2025-7677 | HIGH | 8.2 | 0.3% | Aug 11, 2025 | A denial-of-service (DoS) attack is possible if access to the local network is provided to unauthorized users. This is d... |
| CVE-2025-54525 | HIGH | 7.5 | 0.3% | Aug 11, 2025 | Mattermost Confluence Plugin version <1.5.0 fails to handle unexpected request body which allows attackers to crash the ... |
| CVE-2025-54478 | MEDIUM | 5.3 | 0.2% | Aug 11, 2025 | Mattermost Confluence Plugin version <1.5.0 fails to enforce authentication of the user to the Mattermost instance which... |
| CVE-2025-54463 | HIGH | 7.5 | 0.3% | Aug 11, 2025 | Mattermost Confluence Plugin version <1.5.0 fails to handle unexpected request body which allows attackers to crash the ... |
| CVE-2025-54458 | MEDIUM | 5 | 0.2% | Aug 11, 2025 | Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the Confluence space which allows a... |
| CVE-2025-53910 | MEDIUM | 4 | 0.2% | Aug 11, 2025 | Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the channel which allows attackers ... |
| CVE-2025-53857 | LOW | 3.7 | 0.2% | Aug 11, 2025 | Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the channel which allows attackers ... |
| CVE-2025-53514 | MEDIUM | 5.9 | 0.3% | Aug 11, 2025 | Mattermost Confluence Plugin version <1.5.0 fails to handle unexpected request body which allows attackers to crash the ... |
| CVE-2025-53191 | — | — | — | Aug 11, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2025-53190 | — | — | — | Aug 11, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2025-53189 | — | — | — | Aug 11, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2025-53188 | — | — | — | Aug 11, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2025-52931 | HIGH | 7.5 | 0.3% | Aug 11, 2025 | Mattermost Confluence Plugin version <1.5.0 fails to handle unexpected request body which allows attackers to crash the ... |
| CVE-2025-51824 | MEDIUM | 6.5 | 0.2% | Aug 11, 2025 | libcsp 2.0 is vulnerable to Buffer Overflow in the csp_usart_open() function at drivers/usart/zephyr.c. |
| CVE-2025-51823 | MEDIUM | 6.5 | 0.2% | Aug 11, 2025 | libcsp 2.0 is vulnerable to Buffer Overflow in the csp_eth_init() function due to improper handling of the ifname parame... |
| CVE-2025-49221 | LOW | 3.7 | 0.2% | Aug 11, 2025 | Mattermost Confluence Plugin version <1.5.0 fails to enforce authentication of the user to the Mattermost instance which... |
| CVE-2025-48731 | MEDIUM | 6.4 | 0.2% | Aug 11, 2025 | Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the Confluence space which allows a... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now