2025 CVE Vulnerabilities
45,264 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-49482 | MEDIUM | 5.4 | 0.2% | Jul 1, 2025 | Improper Resource Shutdown or Release vulnerability in ASR180x 、ASR190x in tr069 modules allows Resource Leak Exposure. ... |
| CVE-2025-49481 | MEDIUM | 5.3 | 0.2% | Jul 1, 2025 | Improper Resource Shutdown or Release vulnerability in ASR180x 、ASR190x in router modules allows Resource Leak Exposure.... |
| CVE-2025-49480 | CRITICAL | 9.1 | 0.2% | Jul 1, 2025 | Out-of-bounds access in ASR180x 、ASR190x in lte-telephony, This vulnerability is associated with program files apps/lz... |
| CVE-2025-6224 | MEDIUM | 6.5 | 0.1% | Jul 1, 2025 | Certificate generation in juju/utils using the cert.NewLeaf function could include private information. If this certific... |
| CVE-2025-49492 | CRITICAL | 9.8 | 0.3% | Jul 1, 2025 | Out-of-bounds write in ASR180x in lte-telephony, May cause a buffer underrun. This vulnerability is associated with pr... |
| CVE-2025-49491 | MEDIUM | 5.3 | 0.2% | Jul 1, 2025 | Improper Resource Shutdown or Release vulnerability in ASR Falcon_Linux、Kestrel、Lapwing_Linux on Linux (traffic_stat mod... |
| CVE-2025-49488 | MEDIUM | 5.3 | 0.2% | Jul 1, 2025 | Improper Resource Shutdown or Release vulnerability in ASR180x 、ASR190x in router components allows Resource Leak Ex... |
| CVE-2025-6756 | MEDIUM | 5.4 | 0.2% | Jul 1, 2025 | The Ultra Addons for Contact Form 7 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's U... |
| CVE-2025-49490 | MEDIUM | 5.3 | 0.2% | Jul 1, 2025 | Resource leak vulnerability in ASR180x in router allows Resource Leak Exposure. This vulnerability is associated with p... |
| CVE-2025-49489 | MEDIUM | 5.3 | 0.2% | Jul 1, 2025 | Improper Resource Shutdown or Release vulnerability in ASR Falcon_Linux、Kestrel、Lapwing_Linux on Linux (con_mgr compon... |
| CVE-2025-5072 | MEDIUM | 5.3 | 0.2% | Jul 1, 2025 | Resource leak vulnerability in ASR180x、ASR190x in con_mgr allows Resource Leak Exposure.This issue affects Falcon_Linux、... |
| CVE-2025-41656 | CRITICAL | 10 | 10.0% | Jul 1, 2025 | An unauthenticated remote attacker can run arbitrary commands on the affected devices with high privileges because the a... |
| CVE-2025-41648 | CRITICAL | 9.8 | 0.7% | Jul 1, 2025 | An unauthenticated remote attacker can bypass the login to the web application of the affected devices making it possibl... |
| CVE-2025-6934 | CRITICAL | 9.8 | 22.3% | Jul 1, 2025 | The Opal Estate Pro – Property Management and Submission plugin for WordPress, used by the FullHouse - Real Estate Respo... |
| CVE-2025-6081 | MEDIUM | 6.8 | 0.3% | Jul 1, 2025 | Insufficiently Protected Credentials in LDAP in Konica Minolta bizhub 227 Multifunction printers version GCQ-Y3 or earli... |
| CVE-2025-5967 | MEDIUM | 5.3 | 0.2% | Jul 1, 2025 | A stored cross-site scripting vulnerability in ENS HX 10.0.4 allows a malicious user to inject arbitrary HTML into the E... |
| CVE-2025-6940 | HIGH | 8.8 | 0.8% | Jul 1, 2025 | A vulnerability classified as critical was found in TOTOLINK A702R 4.0.0-B20230721.1521. Affected by this vulnerability ... |
| CVE-2025-6939 | HIGH | 8.8 | 0.8% | Jul 1, 2025 | A vulnerability classified as critical has been found in TOTOLINK A3002RU 3.0.0-B20230809.1615. Affected is an unknown f... |
| CVE-2025-6938 | CRITICAL | 9.8 | 0.4% | Jul 1, 2025 | A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been rated as critical. This issue a... |
| CVE-2025-53096 | MEDIUM | 6.1 | 0.2% | Jul 1, 2025 | Sunshine is a self-hosted game stream host for Moonlight. Prior to version 2025.628.4510, the web UI of Sunshine lacks p... |
| CVE-2025-53095 | HIGH | 8.8 | 0.2% | Jul 1, 2025 | Sunshine is a self-hosted game stream host for Moonlight. Prior to version 2025.628.4510, the web UI of Sunshine lacks p... |
| CVE-2025-53003 | HIGH | 8.2 | 0.3% | Jul 1, 2025 | The Janssen Project is an open-source identity and access management (IAM) platform. Prior to version 1.8.0, the Config ... |
| CVE-2025-6937 | CRITICAL | 9.8 | 0.4% | Jul 1, 2025 | A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been declared as critical. This vuln... |
| CVE-2025-53005 | CRITICAL | 9.8 | 0.5% | Jul 1, 2025 | DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.11, there is a bypas... |
| CVE-2025-36056 | MEDIUM | 5.4 | 0.2% | Jul 1, 2025 | IBM System Storage Virtualization Engine TS7700 3957 VED R5.4 8.54.2.17, R6.0 8.60.0.115, 3948 VED R5.4 8.54.2.17, R6.0 ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now