2025 CVE Vulnerabilities

45,115 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-41771MEDIUM4.3An authenticated attacker with low privileges can access an endpoint in the controller’s web interface that is vulnerabl...
CVE-2025-41770HIGH7.5An unauthenticated denial-of-service vulnerability in the device's PLCnext Engineer communication interface allow an rem...
CVE-2025-41769CRITICAL9.8The device's PROFINET service is affected by a buffer overflow vulnerability that exists in the default configuration. A...
CVE-2025-15687MEDIUM4.3A security flaw has been discovered in Open5GS up to 2.7.6. Impacted is the function smf_gx_cca_cb of the component SMF ...
CVE-2025-15686MEDIUM4.3A vulnerability has been found in Open5GS up to 2.7.6. Affected by this issue is the function fd_msg_sess_get of the com...
CVE-2025-15685MEDIUM6.3A flaw has been found in Open5GS up to 2.7.1. Affected by this vulnerability is an unknown functionality of the componen...
CVE-2025-15684MEDIUM5.3A vulnerability was detected in Open5GS up to 2.7.6. Affected is the function diam_log_func of the file lib/diameter/com...
CVE-2025-54512HIGH7A DLL hijacking vulnerability within the AMD Ryzen Master installation could allow a local user-privileged attacker to e...
CVE-2025-0046HIGH7Incorrect directory permissions could allow a local user to escalate their privileges, potentially resulting in arbitrar...
CVE-2025-8087HIGH7A DLL hijacking vulnerability in AMD Power Design Manager could allow a malicious local attacker to escalate privileges ...
CVE-2025-61970LOW1Weak permissions in the Vitis™ Unified installation path on local Windows machines could allow a low-privileged user to ...
CVE-2025-48506MEDIUM4.6Uncontrolled search paths in Vitis™ Unified installation path on local Windows machines could allow DLL injection into t...
CVE-2025-48505LOW1Weak permissions in the Vitis™ Unified installation path on local Windows machines could allow a low-privileged user to ...
CVE-2025-35987MEDIUM4.3Omission of security-relevant information for some Intel(R) Software Guard Extensions Data Center Attestation Primitives...
CVE-2025-35973MEDIUM4.5Improper handling of values for some Intel(R) Processors within Ring 0: Kernel, Hypervisor and Bare Metal OS may allow a...
CVE-2025-31938MEDIUM4.3Insufficient granularity of access control in some subsystem for some Intel(R) Xeon(R) 6 Scalable processors with Intel(...
CVE-2025-31936HIGH7Improper handling of overlap between protected memory ranges for some Intel(R) Xeon(R) 6 processors when using Intel(R) ...
CVE-2025-31356MEDIUM5.6Insufficient verification of data authenticity for some Intel(R) Trust Domain Extensions (Intel(R) TDX) within Ring 0: H...
CVE-2025-0041MEDIUM4.6Uncontrolled search paths in the Vitis™ Embedded Single File Download (SFD) for local Windows installation could allow a...
CVE-2025-31114CRITICAL9.3Fooocus is an image generating software. In versions 2.5.5 and prior, the Fooocus web UI is vulnerable to remote code ex...
CVE-2025-30241HIGH8.6Certain web interface components in affected TP-Link Aginet devices do not validate and sanitize user-supplied input pro...
CVE-2025-30240MEDIUM5.1The affected TP-Link Aginet devices do not properly validate symbolic links created on external USB storage devices. By ...
CVE-2025-30239HIGH8.5In affected TP-Link Aginet devices, use of hardcoded cryptographic keys embedded in the firmware to protect sensitive co...
CVE-2025-30238HIGH8.6In affected TP-Link Aginet devices, insufficient authorization validation allows authenticated low-privileged users to e...
CVE-2025-30237HIGH8.7The affected TP-Link Aginet devices contain a flaw in the web management interface where authentication checks are not c...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now