2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-53515 | HIGH | 8.8 | 0.5% | Jul 11, 2025 | A vulnerability exists in Advantech iView that allows for SQL injection and remote code execution through NetworkServle... |
| CVE-2025-53509 | HIGH | 7.1 | 0.3% | Jul 11, 2025 | A vulnerability exists in Advantech iView that allows for argument injection in the NetworkServlet.restoreDatabase(). T... |
| CVE-2025-53475 | HIGH | 8.8 | 4.3% | Jul 11, 2025 | A vulnerability exists in Advantech iView that could allow for SQL injection and remote code execution through Network... |
| CVE-2025-53471 | MEDIUM | 5.9 | 0.2% | Jul 11, 2025 | Emerson ValveLink products receive input or data, but does not validate or incorrectly validates that the input has th... |
| CVE-2025-53397 | MEDIUM | 6.1 | 0.2% | Jul 11, 2025 | A vulnerability exists in Advantech iView versions prior to 5.7.05 build 7057, which could allow a reflected cross-site... |
| CVE-2025-52579 | CRITICAL | 9.4 | 0.4% | Jul 11, 2025 | Emerson ValveLink Products store sensitive information in cleartext in memory. The sensitive memory might be saved to d... |
| CVE-2025-52577 | HIGH | 8.8 | 0.5% | Jul 11, 2025 | A vulnerability exists in Advantech iView that could allow SQL injection and remote code execution through NetworkServl... |
| CVE-2025-52459 | HIGH | 7.1 | 0.3% | Jul 11, 2025 | A vulnerability exists in Advantech iView that allows for argument injection in NetworkServlet.backupDatabase(). This i... |
| CVE-2025-50109 | HIGH | 8.5 | 0.1% | Jul 11, 2025 | Emerson ValveLink Products store sensitive information in cleartext within a resource that might be accessible to anothe... |
| CVE-2025-48891 | HIGH | 7.6 | 0.3% | Jul 11, 2025 | A vulnerability exists in Advantech iView that could allow for SQL injection through the CUtils.checkSQLInjection() fun... |
| CVE-2025-48496 | MEDIUM | 5.9 | 0.2% | Jul 11, 2025 | Emerson ValveLink products use a fixed or controlled search path to find resources, but one or more locations in that ... |
| CVE-2025-46704 | MEDIUM | 5.3 | 3.3% | Jul 11, 2025 | A vulnerability exists in Advantech iView in NetworkServlet.processImportRequest() that could allow for a directory tr... |
| CVE-2025-46358 | HIGH | 8.5 | 0.2% | Jul 11, 2025 | Emerson ValveLink products do not use or incorrectly uses a protection mechanism that provides sufficient defense agai... |
| CVE-2025-41442 | MEDIUM | 5.4 | 0.2% | Jul 11, 2025 | A vulnerability exists in Advantech iView versions prior to 5.7.05 build 7057, which could allow a reflected cross-site... |
| CVE-2025-7419 | HIGH | 8.8 | 0.8% | Jul 10, 2025 | A vulnerability was found in Tenda O3V2 1.0.0.12(3880). It has been classified as critical. This affects the function fr... |
| CVE-2025-7418 | HIGH | 8.8 | 0.8% | Jul 10, 2025 | A vulnerability was found in Tenda O3V2 1.0.0.12(3880) and classified as critical. Affected by this issue is the functio... |
| CVE-2025-31267 | MEDIUM | 4.6 | 0.2% | Jul 10, 2025 | An authentication issue was addressed with improved state management. This issue is fixed in App Store Connect 3.0. An a... |
| CVE-2025-1727 | HIGH | 8.1 | 0.5% | Jul 10, 2025 | The protocol used for remote linking over RF for End-of-Train and Head-of-Train (also known as a FRED) relies on a BCH ... |
| CVE-2025-7417 | HIGH | 8.8 | 0.8% | Jul 10, 2025 | A vulnerability has been found in Tenda O3V2 1.0.0.12(3880) and classified as critical. Affected by this vulnerability i... |
| CVE-2025-7416 | HIGH | 8.8 | 0.8% | Jul 10, 2025 | A vulnerability, which was classified as critical, was found in Tenda O3V2 1.0.0.12(3880). Affected is the function from... |
| CVE-2025-6392 | MEDIUM | 4.4 | 0.1% | Jul 10, 2025 | Brocade SANnav before Brocade SANnav 2.4.0a could log database passwords in clear text in audit logs when the daily data... |
| CVE-2025-53637 | HIGH | 8 | 0.3% | Jul 10, 2025 | Meshtastic is an open source mesh networking solution. The main_matrix.yml GitHub Action is triggered by the pull_reques... |
| CVE-2025-24798 | MEDIUM | 6.5 | 0.4% | Jul 10, 2025 | Meshtastic is an open source mesh networking solution. From 1.2.1 until 2.6.2, a packet sent to the routing module that ... |
| CVE-2025-7415 | HIGH | 8.8 | 3.7% | Jul 10, 2025 | A vulnerability, which was classified as critical, has been found in Tenda O3V2 1.0.0.12(3880). This issue affects the f... |
| CVE-2025-7414 | HIGH | 8.8 | 12.7% | Jul 10, 2025 | A vulnerability classified as critical was found in Tenda O3V2 1.0.0.12(3880). This vulnerability affects the function f... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now