2025 CVE Vulnerabilities
45,321 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-61976 | HIGH | 8.7 | 0.4% | Dec 16, 2025 | CHOCO TEI WATCHER mini (IB-MCT001) contains an issue with improper check for unusual or exceptional conditions. If a rem... |
| CVE-2025-62848 | HIGH | 7.5 | 0.8% | Dec 16, 2025 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. The remote ... |
| CVE-2025-62847 | HIGH | 7.5 | 0.8% | Dec 16, 2025 | An improper neutralization of argument delimiters in a command vulnerability has been reported to affect several QNAP op... |
| CVE-2025-14749 | HIGH | 8.8 | 0.7% | Dec 16, 2025 | A vulnerability was identified in Ningyuanda TC155 57.0.2.0. This impacts an unknown function of the file /onvif/device_... |
| CVE-2025-67751 | HIGH | 7.2 | 0.3% | Dec 16, 2025 | ChurchCRM is an open-source church management system. Prior to version 6.5.0, a SQL injection vulnerability exists in th... |
| CVE-2025-67748 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | Fickling is a Python pickling decompiler and static analyzer. Versions prior to 0.1.6 had a bypass caused by `pty` missi... |
| CVE-2025-67747 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | Fickling is a Python pickling decompiler and static analyzer. Versions prior to 0.1.6 are missing `marshal` and `types` ... |
| CVE-2025-67736 | HIGH | 7.2 | 6.1% | Dec 16, 2025 | The FreePBX module tts (Text to Speech) for FreePBX, an open-source web-based graphical user interface (GUI) that manage... |
| CVE-2025-67722 | HIGH | 7.8 | 0.1% | Dec 16, 2025 | FreePBX is an open-source web-based graphical user interface (GUI) that manages Asterisk. Prior to versions 16.0.45 and ... |
| CVE-2025-66449 | HIGH | 8.8 | 0.7% | Dec 16, 2025 | ConvertXis a self-hosted online file converter. In versions prior to 0.16.0, the endpoint `/upload` allows an authentica... |
| CVE-2025-9460 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted SLDPRT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulner... |
| CVE-2025-9459 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted SLDPRT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulner... |
| CVE-2025-9457 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted PRT file, when parsed through certain Autodesk products, can force a Memory corruption vulnerabili... |
| CVE-2025-9456 | HIGH | 7.8 | 0.3% | Dec 16, 2025 | A maliciously crafted SLDPRT file, when parsed through certain Autodesk products, can force a Memory corruption vulnerab... |
| CVE-2025-9455 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted CATPRODUCT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vu... |
| CVE-2025-9454 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted PRT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulnerabi... |
| CVE-2025-9453 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted PRT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulnerabi... |
| CVE-2025-9452 | HIGH | 7.8 | 0.3% | Dec 16, 2025 | A maliciously crafted SLDPRT file, when parsed through certain Autodesk products, can force a Memory corruption vulnerab... |
| CVE-2025-58173 | HIGH | 8.8 | 0.6% | Dec 16, 2025 | FreshRSS is a self-hosted RSS feed aggregator. In versions 1.23.0 through 1.27.0, using a path traversal inside the `lan... |
| CVE-2025-14731 | HIGH | 7.2 | 0.4% | Dec 16, 2025 | A weakness has been identified in CTCMS Content Management System up to 2.1.2. This affects an unknown function in the l... |
| CVE-2025-14593 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted CATPART file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulne... |
| CVE-2025-10900 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulne... |
| CVE-2025-10899 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulne... |
| CVE-2025-10898 | HIGH | 7.8 | 0.3% | Dec 16, 2025 | AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulne... |
| CVE-2025-10889 | HIGH | 7.8 | 0.3% | Dec 16, 2025 | A maliciously crafted CATPART file, when parsed through certain Autodesk products, can force a Memory corruption vulnera... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now