2025 CVE Vulnerabilities

45,266 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-47819MEDIUM6.8Flock Safety Gunshot Detection devices before 1.3 have an on-chip debug interface with improper access control.
CVE-2025-47818MEDIUM4.6Flock Safety Gunshot Detection devices before 1.3 have a hard-coded password for a connection.
CVE-2025-6738MEDIUM6.3A vulnerability, which was classified as critical, has been found in huija bicycleSharingServer up to 7b8a3ba48ad618604a...
CVE-2025-6736HIGH8.8A vulnerability classified as critical was found in juzaweb CMS 3.4.2. Affected by this vulnerability is an unknown func...
CVE-2025-6735HIGH8.8A vulnerability classified as critical has been found in juzaweb CMS 3.4.2. Affected is an unknown function of the file ...
CVE-2025-6734HIGH8.8A vulnerability was found in UTT HiPER 840G up to 3.1.1-190328. It has been rated as critical. This issue affects the fu...
CVE-2025-6733HIGH8.8A vulnerability was found in UTT HiPER 840G up to 3.1.1-190328. It has been declared as critical. This vulnerability aff...
CVE-2025-3699CRITICAL9.8Missing Authentication for Critical Function vulnerability in Mitsubishi Electric Corporation G-50 all versions, G-50-W ...
CVE-2025-6732HIGH8.8A vulnerability was found in UTT HiPER 840G up to 3.1.1-190328. It has been classified as critical. This affects the fun...
CVE-2025-6731MEDIUM6.3A vulnerability was found in yzcheng90 X-SpringBoot up to 5.0 and classified as critical. Affected by this issue is the ...
CVE-2025-5731MEDIUM5.5A flaw was found in Infinispan CLI. A sensitive password, decoded from a Base64-encoded Kubernetes secret, is processed ...
CVE-2025-52555MEDIUM6.5Ceph is a distributed object, block, and file storage platform. In versions 17.2.7, 18.2.1 through 18.2.4, and 19.0.0 th...
CVE-2025-5995MEDIUM4.6Canon EOS Webcam Utility Pro for MAC OS version 2.3d (2.3.29) and earlier contains an improper directory permissions vul...
CVE-2025-53122MEDIUM6.9Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in OpenNMS Horizon an...
CVE-2025-49592MEDIUM5.4n8n is a workflow automation platform. Versions prior to 1.98.0 have an Open Redirect vulnerability in the login flow. A...
CVE-2025-53121MEDIUM6.9Multiple stored XSS were found on different nodes with unsanitized parameters in OpenMNS Horizon 33.0.8 and versions ear...
CVE-2025-52904HIGH8File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, previ...
CVE-2025-52903HIGH8File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, previ...
CVE-2025-53013MEDIUM5.2Himmelblau is an interoperability suite for Microsoft Azure Entra ID and Intune. A vulnerability present in versions 0.9...
CVE-2025-49603CRITICAL9.1Northern.tech Mender Server before 3.7.11 and 4.x before 4.0.1 has Incorrect Access Control.
CVE-2025-52477HIGH8.6Octo-STS is a GitHub App that acts like a Security Token Service (STS) for the GitHub API. Octo-STS versions before v0.5...
CVE-2025-30131CRITICAL9.8An issue was discovered on IROAD Dashcam FX2 devices. An unauthenticated file upload endpoint can be leveraged to execut...
CVE-2025-6702MEDIUM5.3A vulnerability, which was classified as problematic, was found in linlinjava litemall 1.8.0. Affected is an unknown fun...
CVE-2025-6701MEDIUM6.1A vulnerability, which was classified as problematic, has been found in Xuxueli xxl-sso 1.1.0. This issue affects some u...
CVE-2025-6700MEDIUM6.1A vulnerability classified as problematic was found in Xuxueli xxl-sso 1.1.0. This vulnerability affects unknown code of...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now