2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-55006 | HIGH | 8.8 | 0.2% | Aug 9, 2025 | Frappe Learning is a learning system that helps users structure their content. In versions 2.33.0 and below, the image u... |
| CVE-2025-55003 | MEDIUM | 5.7 | 0.2% | Aug 9, 2025 | OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certifi... |
| CVE-2025-55001 | MEDIUM | 6.5 | 0.2% | Aug 9, 2025 | OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certifi... |
| CVE-2025-55000 | MEDIUM | 6.5 | 0.2% | Aug 9, 2025 | OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certifi... |
| CVE-2025-54999 | LOW | 3.7 | 0.2% | Aug 9, 2025 | OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certifi... |
| CVE-2025-54998 | MEDIUM | 5.3 | 0.2% | Aug 9, 2025 | OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certifi... |
| CVE-2025-54997 | CRITICAL | 9.1 | 0.3% | Aug 9, 2025 | OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certifi... |
| CVE-2025-55152 | MEDIUM | 5.3 | 0.4% | Aug 9, 2025 | oak is a middleware framework for Deno's native HTTP server, Deno Deploy, Node.js 16.5 and later, Cloudflare Workers and... |
| CVE-2025-54996 | HIGH | 7.2 | 0.3% | Aug 9, 2025 | OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certifi... |
| CVE-2025-54888 | HIGH | 8.7 | 0.7% | Aug 9, 2025 | Fedify is a TypeScript library for building federated server apps powered by ActivityPub. In versions below 1.3.20, 1.4.... |
| CVE-2025-54417 | HIGH | 8.8 | 0.5% | Aug 9, 2025 | Craft is a platform for creating digital experiences. Versions 4.13.8 through 4.16.2 and 5.5.8 through 5.8.3 contain a v... |
| CVE-2025-8744 | HIGH | 7.3 | 0.3% | Aug 9, 2025 | A vulnerability classified as critical was found in CesiumLab Web up to 4.0. This vulnerability affects unknown code of ... |
| CVE-2025-6573 | CRITICAL | 9.8 | 0.4% | Aug 9, 2025 | Kernel software installed and running inside an untrusted/rich execution environment (REE) could leak information from t... |
| CVE-2025-46709 | HIGH | 7.5 | 0.3% | Aug 9, 2025 | Possible memory leak or kernel exceptions caused by reading kernel heap data after free or NULL pointer dereference kern... |
| CVE-2025-8743 | MEDIUM | 5.4 | 0.3% | Aug 8, 2025 | A vulnerability classified as problematic has been found in Scada-LTS up to 2.7.8.1. This affects an unknown part of the... |
| CVE-2025-8742 | MEDIUM | 6.3 | 0.6% | Aug 8, 2025 | A vulnerability was found in macrozheng mall 1.0.3. It has been rated as problematic. Affected by this issue is some unk... |
| CVE-2025-8741 | MEDIUM | 5.9 | 0.3% | Aug 8, 2025 | A vulnerability was found in macrozheng mall up to 1.0.3. It has been declared as problematic. Affected by this vulnerab... |
| CVE-2025-8740 | MEDIUM | 5.4 | 0.2% | Aug 8, 2025 | A vulnerability was found in zhenfeng13 My-Blog up to 1.0.0. It has been classified as problematic. Affected is an unkno... |
| CVE-2025-8739 | MEDIUM | 4.3 | 0.2% | Aug 8, 2025 | A vulnerability was found in zhenfeng13 My-Blog up to 1.0.0 and classified as problematic. This issue affects some unkno... |
| CVE-2025-55188 | LOW | 3.6 | 0.7% | Aug 8, 2025 | 7-Zip before 25.01 does not always properly handle symbolic links during extraction. |
| CVE-2025-8738 | MEDIUM | 5.5 | 0.3% | Aug 8, 2025 | A vulnerability has been found in zlt2000 microservices-platform up to 6.0.0 and classified as problematic. This vulnera... |
| CVE-2025-8737 | LOW | 3.5 | 0.2% | Aug 8, 2025 | A vulnerability, which was classified as problematic, was found in zlt2000 microservices-platform up to 6.0.0. This affe... |
| CVE-2025-8736 | MEDIUM | 5.3 | 0.1% | Aug 8, 2025 | A vulnerability, which was classified as critical, has been found in GNU cflow up to 1.8. Affected by this issue is the ... |
| CVE-2025-8735 | LOW | 3.3 | 0.1% | Aug 8, 2025 | A vulnerability classified as problematic was found in GNU cflow up to 1.8. Affected by this vulnerability is the functi... |
| CVE-2025-4796 | HIGH | 8.8 | 0.5% | Aug 8, 2025 | The Eventin plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and i... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now