2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-54388 | MEDIUM | 4.6 | 0.2% | Jul 30, 2025 | Moby is an open source container framework developed by Docker Inc. that is distributed as Docker Engine, Mirantis Conta... |
| CVE-2025-53008 | MEDIUM | 6.5 | 0.2% | Jul 30, 2025 | GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provide... |
| CVE-2025-52897 | MEDIUM | 6.1 | 0.2% | Jul 30, 2025 | GLPI is a Free Asset and IT Management Software package. In versions 9.1.0 through 10.0.18, an unauthenticated user can ... |
| CVE-2025-52567 | MEDIUM | 5 | 0.2% | Jul 30, 2025 | GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an... |
| CVE-2025-8326 | CRITICAL | 9.8 | 0.4% | Jul 30, 2025 | A vulnerability classified as critical has been found in code-projects Exam Form Submission 1.0. Affected is an unknown ... |
| CVE-2025-47001 | MEDIUM | 5.4 | 0.3% | Jul 30, 2025 | Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2025-6348 | MEDIUM | 4.9 | 0.4% | Jul 30, 2025 | The Smart Slider 3 plugin for WordPress is vulnerable to time-based SQL Injection via the ‘sliderid’ parameter in all ve... |
| CVE-2025-1394 | MEDIUM | 5.9 | 0.2% | Jul 30, 2025 | The Ember ZNet stack’s packet buffer manager may read out of bound memory leading to an assert, causing a Denial of Serv... |
| CVE-2025-1221 | MEDIUM | 5.9 | 0.2% | Jul 30, 2025 | A Zigbee Radio Co-Processor (RCP), which is using SiLabs EmberZNet Zigbee stack, was unable to send messages to the host... |
| CVE-2025-38498 | MEDIUM | 5.5 | 0.2% | Jul 30, 2025 | In the Linux kernel, the following vulnerability has been resolved: do_change_type(): refuse to operate on unmounted/no... |
| CVE-2025-8323 | HIGH | 8.8 | 0.5% | Jul 30, 2025 | The e-School from Ventem has a Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload ... |
| CVE-2025-8322 | HIGH | 8.8 | 0.3% | Jul 30, 2025 | The e-School from Ventem has a Missing Authorization vulnerability, allowing remote attackers with regular privilege to ... |
| CVE-2025-8292 | HIGH | 8.8 | 0.3% | Jul 30, 2025 | Use after free in Media Stream in Google Chrome prior to 138.0.7204.183 allowed a remote attacker to potentially exploit... |
| CVE-2025-8321 | MEDIUM | 6.8 | 0.4% | Jul 30, 2025 | Tesla Wall Connector Firmware Downgrade Vulnerability. This vulnerability allows physically present attackers to execute... |
| CVE-2025-8320 | HIGH | 8.8 | 0.4% | Jul 30, 2025 | Tesla Wall Connector Content-Length Header Improper Input Validation Remote Code Execution Vulnerability. This vulnerabi... |
| CVE-2025-8217 | MEDIUM | 5.1 | 0.2% | Jul 30, 2025 | The Amazon Q Developer Visual Studio Code (VS Code) extension v1.84.0 contains inert, injected code designed to call the... |
| CVE-2025-4426 | MEDIUM | 6 | 0.2% | Jul 30, 2025 | The vulnerability was identified in the code developed specifically for Lenovo. Please visit "Lenovo Product Security Ad... |
| CVE-2025-4425 | HIGH | 8.2 | 0.2% | Jul 30, 2025 | The vulnerability was identified in the code developed specifically for Lenovo. Please visit "Lenovo Product Security Ad... |
| CVE-2025-4424 | MEDIUM | 6 | 0.2% | Jul 30, 2025 | The vulnerability was identified in the code developed specifically for Lenovo. Please visit "Lenovo Product Security Ad... |
| CVE-2025-4423 | HIGH | 8.2 | 0.2% | Jul 30, 2025 | The vulnerability was identified in the code developed specifically for Lenovo. Please visit "Lenovo Product Security Ad... |
| CVE-2025-4422 | HIGH | 8.2 | 0.2% | Jul 30, 2025 | The vulnerability was identified in the code developed specifically for Lenovo. Please visit "Lenovo Product Security Ad... |
| CVE-2025-4421 | HIGH | 8.2 | 0.2% | Jul 30, 2025 | The vulnerability was identified in the code developed specifically for Lenovo. Please visit "Lenovo Product Security Ad... |
| CVE-2025-25011 | HIGH | 7 | 0.1% | Jul 30, 2025 | An uncontrolled search path element vulnerability can lead to local privilege Escalation (LPE) via Insecure Directory Pe... |
| CVE-2025-0712 | HIGH | 7 | 0.1% | Jul 30, 2025 | An uncontrolled search path element vulnerability can lead to local privilege Escalation (LPE) via Insecure Directory Pe... |
| CVE-2025-8319 | MEDIUM | 6.1 | 0.2% | Jul 30, 2025 | the BMA login interface allows arbitrary JavaScript or HTML to be written straight into the page’s Document Object Model... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now