2025 CVE Vulnerabilities
45,266 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-34041 | CRITICAL | 10 | 7.0% | Jun 24, 2025 | An OS command injection vulnerability exists in the Chinese versions of Sangfor Endpoint Detection and Response (EDR) ma... |
| CVE-2025-34040 | CRITICAL | 10 | 14.4% | Jun 24, 2025 | An arbitrary file upload vulnerability exists in the Zhiyuan OA platform via the wpsAssistServlet interface. The realFil... |
| CVE-2025-34039 | CRITICAL | 10 | 0.5% | Jun 24, 2025 | A code injection vulnerability exists in Yonyou UFIDA NC v6.5 and prior due to the exposure of the BeanShell testing ser... |
| CVE-2025-34038 | HIGH | 7.5 | 1.8% | Jun 24, 2025 | A SQL injection vulnerability exists in Weaver E-cology 8.0 via the getdata.jsp endpoint. The application directly passe... |
| CVE-2025-6535 | HIGH | 8.8 | 0.4% | Jun 24, 2025 | A vulnerability has been found in xxyopen/201206030 novel-plus up to 5.1.3 and classified as critical. This vulnerabilit... |
| CVE-2025-6534 | MEDIUM | 6.8 | 0.4% | Jun 24, 2025 | A vulnerability, which was classified as problematic, was found in xxyopen/201206030 novel-plus up to 5.1.3. This affect... |
| CVE-2025-34037 | CRITICAL | 10 | 86.1% | Jun 24, 2025 | An OS command injection vulnerability exists in various models of E-Series Linksys routers via the /tmUnblock.cgi and /h... |
| CVE-2025-34036 | CRITICAL | 9.8 | 25.3% | Jun 24, 2025 | An OS command injection vulnerability exists in white-labeled DVRs manufactured by TVT, affecting a custom HTTP service ... |
| CVE-2025-34035 | CRITICAL | 9.8 | 12.3% | Jun 24, 2025 | An OS command injection vulnerability exists in EnGenius EnShare Cloud Service version 1.4.11 and earlier. The usbintera... |
| CVE-2025-34034 | HIGH | 8.8 | 0.6% | Jun 24, 2025 | A hardcoded credential vulnerability exists in the Blue Angel Software Suite deployed on embedded Linux systems. The app... |
| CVE-2025-34033 | HIGH | 8.8 | 3.9% | Jun 24, 2025 | An OS command injection vulnerability exists in the Blue Angel Software Suite running on embedded Linux devices via the ... |
| CVE-2025-34032 | MEDIUM | 6.1 | 0.6% | Jun 24, 2025 | A reflected cross-site scripting (XSS) vulnerability exists in the Moodle LMS Jmol plugin version 6.1 and prior via the ... |
| CVE-2025-34031 | HIGH | 7.5 | 3.0% | Jun 24, 2025 | A path traversal vulnerability exists in the Moodle LMS Jmol plugin version 6.1 and prior via the query parameter in jsm... |
| CVE-2025-6533 | MEDIUM | 5.9 | 0.5% | Jun 24, 2025 | A vulnerability, which was classified as critical, has been found in xxyopen/201206030 novel-plus up to 5.1.3. Affected ... |
| CVE-2025-6532 | MEDIUM | 4.3 | 0.4% | Jun 24, 2025 | A vulnerability classified as problematic was found in NOYAFA/Xiami LF9 Pro up to 20250611. Affected by this vulnerabili... |
| CVE-2025-6531 | MEDIUM | 4.3 | 0.2% | Jun 24, 2025 | A vulnerability was found in SIFUSM/MZZYG BD S1 up to 20250611. It has been declared as problematic. This vulnerability ... |
| CVE-2025-6530 | MEDIUM | 4.8 | 0.5% | Jun 23, 2025 | A vulnerability was found in 70mai M300 up to 20250611. It has been classified as problematic. This affects an unknown p... |
| CVE-2025-6529 | HIGH | 8.8 | 0.7% | Jun 23, 2025 | A vulnerability was found in 70mai M300 up to 20250611 and classified as critical. Affected by this issue is some unknow... |
| CVE-2025-6528 | MEDIUM | 4.3 | 0.6% | Jun 23, 2025 | A vulnerability has been found in 70mai M300 up to 20250611 and classified as problematic. Affected by this vulnerabilit... |
| CVE-2025-6527 | LOW | 3.1 | 0.5% | Jun 23, 2025 | A vulnerability, which was classified as problematic, was found in 70mai M300 up to 20250611. Affected is an unknown fun... |
| CVE-2025-6526 | MEDIUM | 5.3 | 0.5% | Jun 23, 2025 | A vulnerability, which was classified as problematic, has been found in 70mai M300 up to 20250611. This issue affects so... |
| CVE-2025-6525 | MEDIUM | 4.3 | 0.2% | Jun 23, 2025 | A vulnerability classified as problematic was found in 70mai 1S up to 20250611. This vulnerability affects unknown code ... |
| CVE-2025-6524 | LOW | 3.1 | 0.3% | Jun 23, 2025 | A vulnerability classified as problematic has been found in 70mai 1S up to 20250611. This affects an unknown part of the... |
| CVE-2025-52562 | CRITICAL | 10 | 1.7% | Jun 23, 2025 | Convoy is a KVM server management panel for hosting businesses. In versions 3.9.0-rc3 to before 4.4.1, there is a direct... |
| CVE-2025-52561 | MEDIUM | 6.9 | 0.7% | Jun 23, 2025 | HTMLSanitizer.jl is a Whitelist-based HTML sanitizer. Prior to version 0.2.1, when adding the style tag to the whitelist... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now