2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-46121 | CRITICAL | 9.8 | 1.2% | Jul 21, 2025 | An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139, where the functions `... |
| CVE-2025-46120 | CRITICAL | 9.8 | 1.0% | Jul 21, 2025 | An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.27 and 200.18.7.1.323, and in Ruckus ZoneDir... |
| CVE-2025-46119 | MEDIUM | 6.3 | 0.3% | Jul 21, 2025 | An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.27 and 200.18.7.1.323, and in Ruckus ZoneDir... |
| CVE-2025-46118 | MEDIUM | 5.3 | 0.5% | Jul 21, 2025 | An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139 and in Ruckus ZoneDire... |
| CVE-2025-46117 | CRITICAL | 9.1 | 0.8% | Jul 21, 2025 | An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139, and in Ruckus ZoneDir... |
| CVE-2025-46116 | HIGH | 8.8 | 0.5% | Jul 21, 2025 | An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139, and in Ruckus ZoneDir... |
| CVE-2025-43977 | MEDIUM | 5.5 | 0.1% | Jul 21, 2025 | The com.skt.prod.dialer application through 12.5.0 for Android enables any installed application (with no permissions) t... |
| CVE-2025-43976 | MEDIUM | 5.5 | 0.2% | Jul 21, 2025 | The com.enflick.android.tn2ndLine application through 24.17.1.0 for Android enables any installed application (with no p... |
| CVE-2025-7926 | MEDIUM | 5.4 | 0.3% | Jul 21, 2025 | A vulnerability, which was classified as problematic, was found in PHPGurukul Online Banquet Booking System 1.0. This af... |
| CVE-2025-7624 | CRITICAL | 9.8 | 7.2% | Jul 21, 2025 | An SQL injection vulnerability in the legacy (transparent) SMTP proxy of Sophos Firewall versions older than 21.0 MR2 (2... |
| CVE-2025-7382 | HIGH | 8.8 | 3.8% | Jul 21, 2025 | A command injection vulnerability in WebAdmin of Sophos Firewall versions older than 21.0 MR2 (21.0.2) can lead to adjac... |
| CVE-2025-6704 | CRITICAL | 9.8 | 8.2% | Jul 21, 2025 | An arbitrary file writing vulnerability in the Secure PDF eXchange (SPX) feature of Sophos Firewall versions older than ... |
| CVE-2025-6235 | MEDIUM | 6.1 | 0.2% | Jul 21, 2025 | In ExtremeControl before 25.5.12, a cross-site scripting (XSS) vulnerability was discovered in a login interface of the ... |
| CVE-2025-4130 | HIGH | 7.5 | 0.4% | Jul 21, 2025 | Use of Hard-coded Credentials vulnerability in PAVO Inc. PAVO Pay allows Read Sensitive Constants Within an Executable. ... |
| CVE-2025-4129 | HIGH | 7.5 | 0.4% | Jul 21, 2025 | Authorization Bypass Through User-Controlled Key vulnerability in PAVO Inc. PAVO Pay allows Exploitation of Trusted Iden... |
| CVE-2025-7925 | MEDIUM | 6.1 | 0.5% | Jul 21, 2025 | A vulnerability, which was classified as problematic, has been found in PHPGurukul Online Banquet Booking System 1.0. Af... |
| CVE-2025-4040 | HIGH | 7.1 | 0.3% | Jul 21, 2025 | Authorization Bypass Through User-Controlled Key vulnerability in Turpak Automatic Station Monitoring System allows Priv... |
| CVE-2025-41100 | MEDIUM | 5.9 | 0.2% | Jul 21, 2025 | Incorrect authentication vulnerability in ParkingDoor. Through this vulnerability it is possible to operate the device w... |
| CVE-2025-30192 | HIGH | 7.5 | 0.2% | Jul 21, 2025 | An attacker spoofing answers to ECS enabled requests sent out by the Recursor has a chance of success higher than non-EC... |
| CVE-2025-2301 | MEDIUM | 4.4 | 0.3% | Jul 21, 2025 | Authorization Bypass Through User-Controlled Key vulnerability in Akbim Software Online Exam Registration allows Exploit... |
| CVE-2025-7924 | MEDIUM | 5.4 | 0.3% | Jul 21, 2025 | A vulnerability classified as problematic was found in PHPGurukul Online Banquet Booking System 1.0. Affected by this vu... |
| CVE-2025-5681 | MEDIUM | 6.5 | 0.3% | Jul 21, 2025 | Authorization Bypass Through User-Controlled Key vulnerability in Turtek Software Eyotek allows Exploitation of Trusted ... |
| CVE-2025-41459 | HIGH | 7.8 | 0.2% | Jul 21, 2025 | Insufficient protection against brute-force and runtime manipulation in the local authentication component in Two App St... |
| CVE-2025-41458 | MEDIUM | 5.5 | 0.1% | Jul 21, 2025 | Unencrypted storage in the database in Two App Studio Journey v5.5.9 for iOS allows local attackers to extract sensitive... |
| CVE-2025-50151 | HIGH | 8.8 | 0.9% | Jul 21, 2025 | File access paths in configuration files uploaded by users with administrator access are not validated. This issue affe... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now