2025 CVE Vulnerabilities

45,321 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-61976HIGH8.7CHOCO TEI WATCHER mini (IB-MCT001) contains an issue with improper check for unusual or exceptional conditions. If a rem...
CVE-2025-62848HIGH7.5A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. The remote ...
CVE-2025-62847HIGH7.5An improper neutralization of argument delimiters in a command vulnerability has been reported to affect several QNAP op...
CVE-2025-14749HIGH8.8A vulnerability was identified in Ningyuanda TC155 57.0.2.0. This impacts an unknown function of the file /onvif/device_...
CVE-2025-67751HIGH7.2ChurchCRM is an open-source church management system. Prior to version 6.5.0, a SQL injection vulnerability exists in th...
CVE-2025-67748HIGH7.8Fickling is a Python pickling decompiler and static analyzer. Versions prior to 0.1.6 had a bypass caused by `pty` missi...
CVE-2025-67747HIGH7.8Fickling is a Python pickling decompiler and static analyzer. Versions prior to 0.1.6 are missing `marshal` and `types` ...
CVE-2025-67736HIGH7.2The FreePBX module tts (Text to Speech) for FreePBX, an open-source web-based graphical user interface (GUI) that manage...
CVE-2025-67722HIGH7.8FreePBX is an open-source web-based graphical user interface (GUI) that manages Asterisk. Prior to versions 16.0.45 and ...
CVE-2025-66449HIGH8.8ConvertXis a self-hosted online file converter. In versions prior to 0.16.0, the endpoint `/upload` allows an authentica...
CVE-2025-9460HIGH7.8A maliciously crafted SLDPRT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulner...
CVE-2025-9459HIGH7.8A maliciously crafted SLDPRT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulner...
CVE-2025-9457HIGH7.8A maliciously crafted PRT file, when parsed through certain Autodesk products, can force a Memory corruption vulnerabili...
CVE-2025-9456HIGH7.8A maliciously crafted SLDPRT file, when parsed through certain Autodesk products, can force a Memory corruption vulnerab...
CVE-2025-9455HIGH7.8A maliciously crafted CATPRODUCT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vu...
CVE-2025-9454HIGH7.8A maliciously crafted PRT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulnerabi...
CVE-2025-9453HIGH7.8A maliciously crafted PRT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulnerabi...
CVE-2025-9452HIGH7.8A maliciously crafted SLDPRT file, when parsed through certain Autodesk products, can force a Memory corruption vulnerab...
CVE-2025-58173HIGH8.8FreshRSS is a self-hosted RSS feed aggregator. In versions 1.23.0 through 1.27.0, using a path traversal inside the `lan...
CVE-2025-14731HIGH7.2A weakness has been identified in CTCMS Content Management System up to 2.1.2. This affects an unknown function in the l...
CVE-2025-14593HIGH7.8A maliciously crafted CATPART file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulne...
CVE-2025-10900HIGH7.8AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulne...
CVE-2025-10899HIGH7.8AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulne...
CVE-2025-10898HIGH7.8AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulne...
CVE-2025-10889HIGH7.8A maliciously crafted CATPART file, when parsed through certain Autodesk products, can force a Memory corruption vulnera...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now