2025 CVE Vulnerabilities
45,262 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-53373 | HIGH | 8.9 | 0.3% | Jul 7, 2025 | Natours is a Tour Booking API. The attacker can easily take over any victim account by injecting an attacker-controlled ... |
| CVE-2025-52492 | HIGH | 7.5 | 0.4% | Jul 7, 2025 | A vulnerability has been discovered in the firmware of Paxton Paxton10 before 4.6 SR6. The firmware file, rootfs.tar.gz,... |
| CVE-2025-48367 | HIGH | 7.5 | 0.7% | Jul 7, 2025 | Redis is an open source, in-memory database that persists on disk. An unauthenticated connection can cause repeated IP p... |
| CVE-2025-47202 | CRITICAL | 9.1 | 0.4% | Jul 7, 2025 | In RRC in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 13... |
| CVE-2025-45479 | CRITICAL | 9.8 | 0.7% | Jul 7, 2025 | Insufficient security mechanisms for created containers in educoder challenges v1.0 allow attackers to execute arbitrary... |
| CVE-2025-45065 | CRITICAL | 9.8 | 0.4% | Jul 7, 2025 | employee record management system in php and mysql v1 was discovered to contain a SQL injection vulnerability via the lo... |
| CVE-2025-43933 | CRITICAL | 9.8 | 0.4% | Jul 7, 2025 | fblog through 983bede allows account takeover via the password reset feature because SERVER_NAME is not configured and t... |
| CVE-2025-43932 | CRITICAL | 9.8 | 0.3% | Jul 7, 2025 | JobCenter through 7e7b0b2 allows account takeover via the password reset feature because SERVER_NAME is not configured a... |
| CVE-2025-43931 | CRITICAL | 9.8 | 0.3% | Jul 7, 2025 | flask-boilerplate through a170e7c allows account takeover via the password reset feature because SERVER_NAME is not conf... |
| CVE-2025-32023 | HIGH | 7.8 | 3.9% | Jul 7, 2025 | Redis is an open source, in-memory database that persists on disk. From 2.8 to before 8.0.3, 7.4.5, 7.2.10, and 6.2.19, ... |
| CVE-2025-26780 | HIGH | 7.5 | 0.3% | Jul 7, 2025 | An issue was discovered in L2 in Samsung Mobile Processor and Modem Exynos 2400 and Modem 5400. The lack of a length che... |
| CVE-2025-7133 | MEDIUM | 5.4 | 0.2% | Jul 7, 2025 | A vulnerability classified as problematic has been found in CodeAstro Online Movie Ticket Booking System 1.0. This affec... |
| CVE-2025-7132 | CRITICAL | 9.8 | 0.5% | Jul 7, 2025 | A vulnerability was found in Campcodes Payroll Management System 1.0. It has been rated as critical. Affected by this is... |
| CVE-2025-6811 | CRITICAL | 9.8 | 0.7% | Jul 7, 2025 | Mescius ActiveReports.NET TypeResolutionService Deserialization of Untrusted Data Remote Code Execution Vulnerability. T... |
| CVE-2025-6810 | CRITICAL | 9.8 | 0.7% | Jul 7, 2025 | Mescius ActiveReports.NET ReadValue Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerab... |
| CVE-2025-6807 | HIGH | 7.5 | 1.1% | Jul 7, 2025 | Marvell QConvergeConsole getDriverTmpPath Directory Traversal Information Disclosure Vulnerability. This vulnerability a... |
| CVE-2025-6806 | HIGH | 7.5 | 1.2% | Jul 7, 2025 | Marvell QConvergeConsole decryptFile Directory Traversal Arbitrary File Write Vulnerability. This vulnerability allows r... |
| CVE-2025-6805 | CRITICAL | 9.1 | 1.1% | Jul 7, 2025 | Marvell QConvergeConsole deleteEventLogFile Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerabilit... |
| CVE-2025-6804 | HIGH | 7.5 | 1.3% | Jul 7, 2025 | Marvell QConvergeConsole compressFirmwareDumpFiles Directory Traversal Information Disclosure Vulnerability. This vulner... |
| CVE-2025-6803 | HIGH | 7.5 | 1.3% | Jul 7, 2025 | Marvell QConvergeConsole compressDriverFiles Directory Traversal Information Disclosure Vulnerability. This vulnerabilit... |
| CVE-2025-6802 | CRITICAL | 9.8 | 0.6% | Jul 7, 2025 | Marvell QConvergeConsole getFileFromURL Unrestricted File Upload Remote Code Execution Vulnerability. This vulnerability... |
| CVE-2025-6801 | HIGH | 7.5 | 1.2% | Jul 7, 2025 | Marvell QConvergeConsole saveNICParamsToFile Directory Traversal Arbitrary File Write Vulnerability. This vulnerability ... |
| CVE-2025-6800 | HIGH | 7.5 | 1.3% | Jul 7, 2025 | Marvell QConvergeConsole restoreESwitchConfig Directory Traversal Information Disclosure Vulnerability. This vulnerabili... |
| CVE-2025-6799 | HIGH | 7.5 | 1.3% | Jul 7, 2025 | Marvell QConvergeConsole getFileUploadBytes Directory Traversal Information Disclosure Vulnerability. This vulnerability... |
| CVE-2025-6798 | CRITICAL | 9.1 | 1.3% | Jul 7, 2025 | Marvell QConvergeConsole deleteAppFile Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability all... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now