2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-5992 | LOW | 2.3 | 0.3% | Jul 11, 2025 | When passing values outside of the expected range to QColorTransferGenericFunction it can cause a denial of service, for... |
| CVE-2025-5392 | CRITICAL | 9.8 | 0.8% | Jul 11, 2025 | The GB Forms DB plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.0.2 ... |
| CVE-2025-5028 | MEDIUM | 6.8 | 0.1% | Jul 11, 2025 | Installation file of ESET security products on Windows allow an attacker to misuse to delete an arbitrary file without... |
| CVE-2025-6200 | MEDIUM | 5.9 | 0.2% | Jul 11, 2025 | The GeoDirectory WordPress plugin before 2.8.120 does not validate and escape some of its shortcode attributes before o... |
| CVE-2025-30026 | CRITICAL | 9.8 | 0.6% | Jul 11, 2025 | The AXIS Camera Station Server had a flaw that allowed to bypass authentication that is normally required. |
| CVE-2025-30025 | HIGH | 7.8 | 0.2% | Jul 11, 2025 | The communication protocol used between the server process and the service control had a flaw that could lead to a local... |
| CVE-2025-30024 | MEDIUM | 6.8 | 0.3% | Jul 11, 2025 | The communication protocol used between client and server had a flaw that could be leveraged to execute a man in the mid... |
| CVE-2025-30023 | CRITICAL | 9 | 0.5% | Jul 11, 2025 | The communication protocol used between client and server had a flaw that could lead to an authenticated user performing... |
| CVE-2025-2942 | MEDIUM | 4.3 | 0.3% | Jul 11, 2025 | The Order Delivery Date WordPress plugin before 12.6.0 discloses arbitrary post title (such as from draft and private po... |
| CVE-2025-7401 | CRITICAL | 9.8 | 0.5% | Jul 11, 2025 | The Premium Age Verification / Restriction for WordPress plugin for WordPress is vulnerable to arbitrary file read and w... |
| CVE-2025-7436 | CRITICAL | 9.8 | 0.4% | Jul 11, 2025 | A vulnerability was found in Campcodes Online Recruitment Management System 1.0. It has been declared as critical. This ... |
| CVE-2025-53852 | — | — | — | Jul 11, 2025 | Rejected reason: Not used |
| CVE-2025-53851 | — | — | — | Jul 11, 2025 | Rejected reason: Not used |
| CVE-2025-53850 | — | — | — | Jul 11, 2025 | Rejected reason: Not used |
| CVE-2025-53849 | — | — | — | Jul 11, 2025 | Rejected reason: Not used |
| CVE-2025-53848 | — | — | — | Jul 11, 2025 | Rejected reason: Not used |
| CVE-2025-7435 | LOW | 3.5 | 0.2% | Jul 11, 2025 | A vulnerability was found in LiveHelperChat lhc-php-resque Extension up to ee1270b35625f552425e32a6a3061cd54b5085c4. It ... |
| CVE-2025-53864 | MEDIUM | 5.8 | 0.8% | Jul 11, 2025 | Connect2id Nimbus JOSE + JWT 10.0.x before 10.0.2 and 9.37.x before 9.37.4 allows a remote attacker to cause a denial of... |
| CVE-2025-7434 | HIGH | 8.8 | 0.8% | Jul 11, 2025 | A vulnerability was found in Tenda FH451 up to 1.0.0.9 and classified as critical. Affected by this issue is the functio... |
| CVE-2025-7423 | HIGH | 8.8 | 0.8% | Jul 11, 2025 | A vulnerability classified as critical was found in Tenda O3V2 1.0.0.12(3880). Affected by this vulnerability is the fun... |
| CVE-2025-7422 | HIGH | 8.8 | 0.8% | Jul 11, 2025 | A vulnerability classified as critical has been found in Tenda O3V2 1.0.0.12(3880). Affected is the function setAutoRebo... |
| CVE-2025-7421 | HIGH | 8.8 | 0.8% | Jul 11, 2025 | A vulnerability was found in Tenda O3V2 1.0.0.12(3880). It has been rated as critical. This issue affects the function f... |
| CVE-2025-5241 | MEDIUM | 5.3 | 0.4% | Jul 11, 2025 | Overly Restrictive Account Lockout Mechanism vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series allows ... |
| CVE-2025-7420 | HIGH | 8.8 | 0.8% | Jul 11, 2025 | A vulnerability was found in Tenda O3V2 1.0.0.12(3880). It has been declared as critical. This vulnerability affects the... |
| CVE-2025-53519 | MEDIUM | 5.4 | 0.2% | Jul 11, 2025 | A vulnerability exists in Advantech iView versions prior to 5.7.05 build 7057, which could allow a reflected cross-site... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now