2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-8136 | HIGH | 7.5 | 1.0% | Jul 25, 2025 | A vulnerability, which was classified as critical, was found in TOTOLINK A702R 4.0.0-B20230721.1521. Affected is an unkn... |
| CVE-2025-8135 | HIGH | 8.8 | 0.4% | Jul 25, 2025 | A vulnerability, which was classified as critical, has been found in itsourcecode Insurance Management System 1.0. This ... |
| CVE-2025-5835 | HIGH | 8.8 | 0.4% | Jul 25, 2025 | The Droip plugin for WordPress is vulnerable to unauthorized modification and access of data due to a missing capability... |
| CVE-2025-5831 | HIGH | 8.8 | 0.6% | Jul 25, 2025 | The Droip plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the make_g... |
| CVE-2025-8134 | HIGH | 8.8 | 0.4% | Jul 25, 2025 | A vulnerability classified as critical was found in PHPGurukul BP Monitoring Management System 1.0. This vulnerability a... |
| CVE-2025-8133 | MEDIUM | 6.3 | 0.3% | Jul 25, 2025 | A vulnerability classified as critical has been found in yanyutao0402 ChanCMS up to 3.1.2. This affects the function get... |
| CVE-2025-7022 | MEDIUM | 6.1 | 0.3% | Jul 25, 2025 | The My Reservation System WordPress plugin through 2.3 does not sanitise and escape a parameter before outputting it bac... |
| CVE-2025-8132 | MEDIUM | 5.4 | 0.5% | Jul 25, 2025 | A vulnerability was found in yanyutao0402 ChanCMS up to 3.1.2. It has been rated as critical. Affected by this issue is ... |
| CVE-2025-8131 | HIGH | 8.8 | 1.0% | Jul 25, 2025 | A vulnerability was found in Tenda AC20 16.03.08.05. It has been declared as critical. Affected by this vulnerability is... |
| CVE-2025-8129 | MEDIUM | 6.1 | 0.2% | Jul 25, 2025 | A vulnerability, which was classified as problematic, was found in KoaJS Koa up to 3.0.0. Affected is the function back ... |
| CVE-2025-8128 | MEDIUM | 6.3 | 0.3% | Jul 25, 2025 | A vulnerability, which was classified as critical, has been found in zhousg letao up to 7d8df0386a65228476290949e0413de4... |
| CVE-2025-8127 | HIGH | 8.8 | 0.4% | Jul 25, 2025 | A vulnerability classified as critical was found in deerwms deer-wms-2 up to 3.3. This vulnerability affects unknown cod... |
| CVE-2025-54568 | LOW | 3.7 | 0.3% | Jul 25, 2025 | Akamai Rate Control alpha before 2025 allows attackers to send requests above the stipulated thresholds because the rate... |
| CVE-2025-8126 | HIGH | 8.8 | 0.4% | Jul 25, 2025 | A vulnerability classified as critical has been found in deerwms deer-wms-2 up to 3.3. This affects an unknown part of t... |
| CVE-2025-54567 | MEDIUM | 5.4 | 0.2% | Jul 25, 2025 | hw/pci/pcie_sriov.c in QEMU through 10.0.3 mishandles the VF Enable bit write mask, a related issue to CVE-2024-26327. |
| CVE-2025-54566 | MEDIUM | 5.4 | 0.2% | Jul 25, 2025 | hw/pci/pcie_sriov.c in QEMU through 10.0.3 has a migration state inconsistency, a related issue to CVE-2024-26327. |
| CVE-2025-8125 | CRITICAL | 9.8 | 0.4% | Jul 25, 2025 | A vulnerability was found in deerwms deer-wms-2 up to 3.3. It has been rated as critical. Affected by this issue is some... |
| CVE-2025-54558 | MEDIUM | 4.1 | 0.2% | Jul 25, 2025 | OpenAI Codex CLI before 0.9.0 auto-approves ripgrep (aka rg) execution even with the --pre or --hostname-bin or --search... |
| CVE-2025-0253 | LOW | 2.4 | 0.2% | Jul 25, 2025 | HCL IEM is affected by a cookie attribute not set vulnerability due to inconsistency of certain security-related configu... |
| CVE-2025-0252 | MEDIUM | 4.8 | 0.1% | Jul 25, 2025 | HCL IEM is affected by a password in cleartext vulnerability. Sensitive information is transmitted without adequate pro... |
| CVE-2025-0251 | MEDIUM | 5.7 | 0.2% | Jul 25, 2025 | HCL IEM is affected by a concurrent login vulnerability. The application allows multiple concurrent sessions using the ... |
| CVE-2025-8124 | HIGH | 8.8 | 0.4% | Jul 25, 2025 | A vulnerability was found in deerwms deer-wms-2 up to 3.3. It has been declared as critical. Affected by this vulnerabil... |
| CVE-2025-7742 | HIGH | 8.3 | 0.6% | Jul 25, 2025 | An authentication vulnerability exists in the LG Innotek camera model LNV5110R firmware that allows a malicious actor to... |
| CVE-2025-0250 | MEDIUM | 4.9 | 0.2% | Jul 25, 2025 | HCL IEM is affected by an authorization token sent in cookie vulnerability. A token used for authentication and authori... |
| CVE-2025-0249 | MEDIUM | 5.9 | 0.2% | Jul 25, 2025 | HCL IEM is affected by an improper invalidation of access or JWT token vulnerability. A token was not invalidated which... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now