2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-53417 | CRITICAL | 9.3 | 10.9% | Aug 5, 2025 | DIAView (v4.2.0 and prior) - Directory Traversal Information Disclosure Vulnerability |
| CVE-2025-8539 | MEDIUM | 4.8 | 0.3% | Aug 5, 2025 | A vulnerability was found in Portabilis i-Educar 2.10 and classified as problematic. Affected by this issue is some unkn... |
| CVE-2025-8538 | MEDIUM | 4.8 | 0.3% | Aug 5, 2025 | A vulnerability has been found in Portabilis i-Educar 2.10 and classified as problematic. Affected by this vulnerability... |
| CVE-2025-8537 | MEDIUM | 5.9 | 0.6% | Aug 5, 2025 | A vulnerability, which was classified as problematic, was found in Axiomatic Bento4 up to 1.6.0-641. Affected is the fun... |
| CVE-2025-8535 | CRITICAL | 9 | 0.4% | Aug 5, 2025 | A vulnerability, which was classified as problematic, has been found in cronoh NanoVault up to 1.2.1. This issue affects... |
| CVE-2025-54871 | HIGH | 7.8 | 0.2% | Aug 5, 2025 | Electron Capture facilitates video playback for screen-sharing and capture. In versions 2.19.1 and below, the elecap app... |
| CVE-2025-54870 | HIGH | 8.7 | 0.2% | Aug 5, 2025 | VTun-ng is a Virtual Tunnel over TCP/IP network. In versions 3.0.17 and below, failure to initialize encryption modules ... |
| CVE-2025-54865 | CRITICAL | 9.8 | 0.4% | Aug 5, 2025 | Tilesheets MediaWiki Extension adds a table lookup parser function for an item and returns the requested image. A missin... |
| CVE-2025-54804 | MEDIUM | 6.5 | 0.4% | Aug 5, 2025 | Russh is a Rust SSH client & server library. In versions 0.54.0 and below, the channel window adjust message of the SSH ... |
| CVE-2025-54803 | HIGH | 7.5 | 0.5% | Aug 5, 2025 | js-toml is a TOML parser for JavaScript, fully compliant with the TOML 1.0.0 Spec. In versions below 1.0.2, a prototype ... |
| CVE-2025-54802 | CRITICAL | 9.8 | 1.1% | Aug 5, 2025 | pyLoad is the free and open-source Download Manager written in pure Python. In versions 0.5.0b3.dev89 and below, there i... |
| CVE-2025-54795 | CRITICAL | 9.8 | 0.9% | Aug 5, 2025 | Claude Code is an agentic coding tool. In versions below 1.0.20, an error in command parsing makes it possible to bypass... |
| CVE-2025-54794 | CRITICAL | 9.1 | 0.9% | Aug 5, 2025 | Claude Code is an agentic coding tool. In versions below 0.2.111, a path validation flaw using prefix matching instead o... |
| CVE-2025-54780 | HIGH | 7.7 | 0.3% | Aug 5, 2025 | The glpi-screenshot-plugin allows users to take screenshots or screens recording directly from GLPI. In versions below 2... |
| CVE-2025-54387 | CRITICAL | 9.8 | 0.6% | Aug 5, 2025 | IPX is an image optimizer powered by sharp and svgo. In versions 1.3.1 and below, 2.0.0-0 through 2.1.0, and 3.0.0 throu... |
| CVE-2025-54135 | CRITICAL | 9.8 | 1.7% | Aug 5, 2025 | Cursor is a code editor built for programming with AI. Cursor allows writing in-workspace files with no user approval in... |
| CVE-2025-54130 | CRITICAL | 9.8 | 0.3% | Aug 5, 2025 | Cursor is a code editor built for programming with AI. Cursor allows writing in-workspace files with no user approval in... |
| CVE-2025-54119 | CRITICAL | 10 | 0.5% | Aug 5, 2025 | ADOdb is a PHP database class library that provides abstractions for performing queries and managing databases. In versi... |
| CVE-2025-53544 | HIGH | 7.5 | 0.3% | Aug 5, 2025 | Trilium Notes is an open-source, cross-platform hierarchical note taking application with focus on building large person... |
| CVE-2025-52892 | MEDIUM | 6.5 | 0.2% | Aug 5, 2025 | EspoCRM is a web application with a frontend designed as a single-page application and a REST API backend written in PHP... |
| CVE-2025-8534 | LOW | 2.5 | 0.2% | Aug 5, 2025 | A vulnerability classified as problematic was found in libtiff 4.6.0. This vulnerability affects the function PS_Lvl2pag... |
| CVE-2025-54797 | — | — | — | Aug 5, 2025 | Rejected reason: This CVE is a duplicate of CVE-2025-52464. |
| CVE-2025-8530 | HIGH | 7.5 | 0.4% | Aug 4, 2025 | A vulnerability, which was classified as problematic, has been found in elunez eladmin up to 2.7. Affected by this issue... |
| CVE-2025-8529 | MEDIUM | 6.3 | 0.3% | Aug 4, 2025 | A vulnerability classified as critical was found in cloudfavorites favorites-web up to 1.3.0. Affected by this vulnerabi... |
| CVE-2025-46094 | LOW | 3.8 | 0.5% | Aug 4, 2025 | LiquidFiles before 4.1.2 allows directory traversal by configuring the pathname of a local executable file as an Actions... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now