2025 CVE Vulnerabilities

45,264 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-49482MEDIUM5.4Improper Resource Shutdown or Release vulnerability in ASR180x 、ASR190x in tr069 modules allows Resource Leak Exposure. ...
CVE-2025-49481MEDIUM5.3Improper Resource Shutdown or Release vulnerability in ASR180x 、ASR190x in router modules allows Resource Leak Exposure....
CVE-2025-49480CRITICAL9.1Out-of-bounds access in ASR180x 、ASR190x in lte-telephony, This vulnerability is associated with program files apps/lz...
CVE-2025-6224MEDIUM6.5Certificate generation in juju/utils using the cert.NewLeaf function could include private information. If this certific...
CVE-2025-49492CRITICAL9.8Out-of-bounds write in ASR180x in lte-telephony, May cause a buffer underrun.  This vulnerability is associated with pr...
CVE-2025-49491MEDIUM5.3Improper Resource Shutdown or Release vulnerability in ASR Falcon_Linux、Kestrel、Lapwing_Linux on Linux (traffic_stat mod...
CVE-2025-49488MEDIUM5.3Improper Resource Shutdown or Release vulnerability in ASR180x 、ASR190x in router components allows Resource Leak Ex...
CVE-2025-6756MEDIUM5.4The Ultra Addons for Contact Form 7 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's U...
CVE-2025-49490MEDIUM5.3Resource leak vulnerability in ASR180x in router allows Resource Leak Exposure. This vulnerability is associated with p...
CVE-2025-49489MEDIUM5.3Improper Resource Shutdown or Release vulnerability in ASR Falcon_Linux、Kestrel、Lapwing_Linux on Linux (con_mgr compon...
CVE-2025-5072MEDIUM5.3Resource leak vulnerability in ASR180x、ASR190x in con_mgr allows Resource Leak Exposure.This issue affects Falcon_Linux、...
CVE-2025-41656CRITICAL10An unauthenticated remote attacker can run arbitrary commands on the affected devices with high privileges because the a...
CVE-2025-41648CRITICAL9.8An unauthenticated remote attacker can bypass the login to the web application of the affected devices making it possibl...
CVE-2025-6934CRITICAL9.8The Opal Estate Pro – Property Management and Submission plugin for WordPress, used by the FullHouse - Real Estate Respo...
CVE-2025-6081MEDIUM6.8Insufficiently Protected Credentials in LDAP in Konica Minolta bizhub 227 Multifunction printers version GCQ-Y3 or earli...
CVE-2025-5967MEDIUM5.3A stored cross-site scripting vulnerability in ENS HX 10.0.4 allows a malicious user to inject arbitrary HTML into the E...
CVE-2025-6940HIGH8.8A vulnerability classified as critical was found in TOTOLINK A702R 4.0.0-B20230721.1521. Affected by this vulnerability ...
CVE-2025-6939HIGH8.8A vulnerability classified as critical has been found in TOTOLINK A3002RU 3.0.0-B20230809.1615. Affected is an unknown f...
CVE-2025-6938CRITICAL9.8A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been rated as critical. This issue a...
CVE-2025-53096MEDIUM6.1Sunshine is a self-hosted game stream host for Moonlight. Prior to version 2025.628.4510, the web UI of Sunshine lacks p...
CVE-2025-53095HIGH8.8Sunshine is a self-hosted game stream host for Moonlight. Prior to version 2025.628.4510, the web UI of Sunshine lacks p...
CVE-2025-53003HIGH8.2The Janssen Project is an open-source identity and access management (IAM) platform. Prior to version 1.8.0, the Config ...
CVE-2025-6937CRITICAL9.8A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been declared as critical. This vuln...
CVE-2025-53005CRITICAL9.8DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.11, there is a bypas...
CVE-2025-36056MEDIUM5.4IBM System Storage Virtualization Engine TS7700 3957 VED R5.4 8.54.2.17, R6.0 8.60.0.115, 3948 VED R5.4 8.54.2.17, R6.0 ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now