2025 CVE Vulnerabilities

45,255 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-5992LOW2.3When passing values outside of the expected range to QColorTransferGenericFunction it can cause a denial of service, for...
CVE-2025-5392CRITICAL9.8The GB Forms DB plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.0.2 ...
CVE-2025-5028MEDIUM6.8Installation file of ESET security products on Windows allow an attacker to misuse to delete an arbitrary file without...
CVE-2025-6200MEDIUM5.9The GeoDirectory WordPress plugin before 2.8.120 does not validate and escape some of its shortcode attributes before o...
CVE-2025-30026CRITICAL9.8The AXIS Camera Station Server had a flaw that allowed to bypass authentication that is normally required.
CVE-2025-30025HIGH7.8The communication protocol used between the server process and the service control had a flaw that could lead to a local...
CVE-2025-30024MEDIUM6.8The communication protocol used between client and server had a flaw that could be leveraged to execute a man in the mid...
CVE-2025-30023CRITICAL9The communication protocol used between client and server had a flaw that could lead to an authenticated user performing...
CVE-2025-2942MEDIUM4.3The Order Delivery Date WordPress plugin before 12.6.0 discloses arbitrary post title (such as from draft and private po...
CVE-2025-7401CRITICAL9.8The Premium Age Verification / Restriction for WordPress plugin for WordPress is vulnerable to arbitrary file read and w...
CVE-2025-7436CRITICAL9.8A vulnerability was found in Campcodes Online Recruitment Management System 1.0. It has been declared as critical. This ...
CVE-2025-53852Rejected reason: Not used
CVE-2025-53851Rejected reason: Not used
CVE-2025-53850Rejected reason: Not used
CVE-2025-53849Rejected reason: Not used
CVE-2025-53848Rejected reason: Not used
CVE-2025-7435LOW3.5A vulnerability was found in LiveHelperChat lhc-php-resque Extension up to ee1270b35625f552425e32a6a3061cd54b5085c4. It ...
CVE-2025-53864MEDIUM5.8Connect2id Nimbus JOSE + JWT 10.0.x before 10.0.2 and 9.37.x before 9.37.4 allows a remote attacker to cause a denial of...
CVE-2025-7434HIGH8.8A vulnerability was found in Tenda FH451 up to 1.0.0.9 and classified as critical. Affected by this issue is the functio...
CVE-2025-7423HIGH8.8A vulnerability classified as critical was found in Tenda O3V2 1.0.0.12(3880). Affected by this vulnerability is the fun...
CVE-2025-7422HIGH8.8A vulnerability classified as critical has been found in Tenda O3V2 1.0.0.12(3880). Affected is the function setAutoRebo...
CVE-2025-7421HIGH8.8A vulnerability was found in Tenda O3V2 1.0.0.12(3880). It has been rated as critical. This issue affects the function f...
CVE-2025-5241MEDIUM5.3Overly Restrictive Account Lockout Mechanism vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series allows ...
CVE-2025-7420HIGH8.8A vulnerability was found in Tenda O3V2 1.0.0.12(3880). It has been declared as critical. This vulnerability affects the...
CVE-2025-53519MEDIUM5.4A vulnerability exists in Advantech iView versions prior to 5.7.05 build 7057, which could allow a reflected cross-site...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now