2025 CVE Vulnerabilities
45,266 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-47819 | MEDIUM | 6.8 | 0.2% | Jun 27, 2025 | Flock Safety Gunshot Detection devices before 1.3 have an on-chip debug interface with improper access control. |
| CVE-2025-47818 | MEDIUM | 4.6 | 0.2% | Jun 27, 2025 | Flock Safety Gunshot Detection devices before 1.3 have a hard-coded password for a connection. |
| CVE-2025-6738 | MEDIUM | 6.3 | 0.2% | Jun 27, 2025 | A vulnerability, which was classified as critical, has been found in huija bicycleSharingServer up to 7b8a3ba48ad618604a... |
| CVE-2025-6736 | HIGH | 8.8 | 0.4% | Jun 27, 2025 | A vulnerability classified as critical was found in juzaweb CMS 3.4.2. Affected by this vulnerability is an unknown func... |
| CVE-2025-6735 | HIGH | 8.8 | 0.4% | Jun 27, 2025 | A vulnerability classified as critical has been found in juzaweb CMS 3.4.2. Affected is an unknown function of the file ... |
| CVE-2025-6734 | HIGH | 8.8 | 0.8% | Jun 26, 2025 | A vulnerability was found in UTT HiPER 840G up to 3.1.1-190328. It has been rated as critical. This issue affects the fu... |
| CVE-2025-6733 | HIGH | 8.8 | 0.8% | Jun 26, 2025 | A vulnerability was found in UTT HiPER 840G up to 3.1.1-190328. It has been declared as critical. This vulnerability aff... |
| CVE-2025-3699 | CRITICAL | 9.8 | 1.1% | Jun 26, 2025 | Missing Authentication for Critical Function vulnerability in Mitsubishi Electric Corporation G-50 all versions, G-50-W ... |
| CVE-2025-6732 | HIGH | 8.8 | 0.8% | Jun 26, 2025 | A vulnerability was found in UTT HiPER 840G up to 3.1.1-190328. It has been classified as critical. This affects the fun... |
| CVE-2025-6731 | MEDIUM | 6.3 | 0.3% | Jun 26, 2025 | A vulnerability was found in yzcheng90 X-SpringBoot up to 5.0 and classified as critical. Affected by this issue is the ... |
| CVE-2025-5731 | MEDIUM | 5.5 | 0.1% | Jun 26, 2025 | A flaw was found in Infinispan CLI. A sensitive password, decoded from a Base64-encoded Kubernetes secret, is processed ... |
| CVE-2025-52555 | MEDIUM | 6.5 | 0.2% | Jun 26, 2025 | Ceph is a distributed object, block, and file storage platform. In versions 17.2.7, 18.2.1 through 18.2.4, and 19.0.0 th... |
| CVE-2025-5995 | MEDIUM | 4.6 | 0.2% | Jun 26, 2025 | Canon EOS Webcam Utility Pro for MAC OS version 2.3d (2.3.29) and earlier contains an improper directory permissions vul... |
| CVE-2025-53122 | MEDIUM | 6.9 | 0.2% | Jun 26, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in OpenNMS Horizon an... |
| CVE-2025-49592 | MEDIUM | 5.4 | 0.2% | Jun 26, 2025 | n8n is a workflow automation platform. Versions prior to 1.98.0 have an Open Redirect vulnerability in the login flow. A... |
| CVE-2025-53121 | MEDIUM | 6.9 | 0.2% | Jun 26, 2025 | Multiple stored XSS were found on different nodes with unsanitized parameters in OpenMNS Horizon 33.0.8 and versions ear... |
| CVE-2025-52904 | HIGH | 8 | 0.9% | Jun 26, 2025 | File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, previ... |
| CVE-2025-52903 | HIGH | 8 | 1.0% | Jun 26, 2025 | File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, previ... |
| CVE-2025-53013 | MEDIUM | 5.2 | 0.2% | Jun 26, 2025 | Himmelblau is an interoperability suite for Microsoft Azure Entra ID and Intune. A vulnerability present in versions 0.9... |
| CVE-2025-49603 | CRITICAL | 9.1 | 0.3% | Jun 26, 2025 | Northern.tech Mender Server before 3.7.11 and 4.x before 4.0.1 has Incorrect Access Control. |
| CVE-2025-52477 | HIGH | 8.6 | 0.4% | Jun 26, 2025 | Octo-STS is a GitHub App that acts like a Security Token Service (STS) for the GitHub API. Octo-STS versions before v0.5... |
| CVE-2025-30131 | CRITICAL | 9.8 | 0.6% | Jun 26, 2025 | An issue was discovered on IROAD Dashcam FX2 devices. An unauthenticated file upload endpoint can be leveraged to execut... |
| CVE-2025-6702 | MEDIUM | 5.3 | 0.3% | Jun 26, 2025 | A vulnerability, which was classified as problematic, was found in linlinjava litemall 1.8.0. Affected is an unknown fun... |
| CVE-2025-6701 | MEDIUM | 6.1 | 0.3% | Jun 26, 2025 | A vulnerability, which was classified as problematic, has been found in Xuxueli xxl-sso 1.1.0. This issue affects some u... |
| CVE-2025-6700 | MEDIUM | 6.1 | 0.4% | Jun 26, 2025 | A vulnerability classified as problematic was found in Xuxueli xxl-sso 1.1.0. This vulnerability affects unknown code of... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now