2025 CVE Vulnerabilities
45,266 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-6400 | HIGH | 8.8 | 0.8% | Jun 21, 2025 | A vulnerability was found in TOTOLINK N300RH 6.1c.1390_B20191101 and classified as critical. Affected by this issue is s... |
| CVE-2025-5034 | HIGH | 7.1 | 0.2% | Jun 21, 2025 | The wp-file-download WordPress plugin before 6.2.6 does not sanitise and escape a parameter before outputting it back in... |
| CVE-2025-6399 | HIGH | 8.8 | 0.8% | Jun 21, 2025 | A vulnerability, which was classified as critical, was found in TOTOLINK X15 1.0.0-B20230714.1105. Affected is an unknow... |
| CVE-2025-52552 | MEDIUM | 6.1 | 0.2% | Jun 21, 2025 | FastGPT is an AI Agent building platform. Prior to version 4.9.12, the LastRoute Parameter on login page is vulnerable t... |
| CVE-2025-52488 | HIGH | 8.6 | 29.3% | Jun 21, 2025 | DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. In version... |
| CVE-2025-52487 | HIGH | 7.5 | 0.3% | Jun 21, 2025 | DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. In version... |
| CVE-2025-52486 | MEDIUM | 6.1 | 0.2% | Jun 21, 2025 | DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. In version... |
| CVE-2025-52485 | MEDIUM | 5.4 | 0.2% | Jun 21, 2025 | DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. In version... |
| CVE-2025-6394 | CRITICAL | 9.8 | 0.4% | Jun 21, 2025 | A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been declared as critical.... |
| CVE-2025-52557 | HIGH | 8.6 | 0.4% | Jun 21, 2025 | Mail-0's Zero is an open-source email solution. In version 0.8 it's possible for an attacker to craft an email that exec... |
| CVE-2025-52556 | CRITICAL | 9.3 | 0.1% | Jun 21, 2025 | rfc3161-client is a Python library implementing the Time-Stamp Protocol (TSP) described in RFC 3161. Prior to version 1.... |
| CVE-2025-6393 | HIGH | 7.5 | 0.8% | Jun 21, 2025 | A vulnerability was found in TOTOLINK A702R, A3002R, A3002RU and EX1200T 3.0.0-B20230809.1615/4.0.0-B20230531.1404/4.0.0... |
| CVE-2025-6375 | MEDIUM | 5.5 | 0.2% | Jun 21, 2025 | A vulnerability was found in poco up to 1.14.1. It has been rated as problematic. Affected by this issue is the function... |
| CVE-2025-6374 | HIGH | 8.8 | 0.8% | Jun 21, 2025 | A vulnerability was found in D-Link DIR-619L 2.06B01 and classified as critical. This issue affects the function formSet... |
| CVE-2025-6218 | HIGH | 7.8 | 86.2% | Jun 21, 2025 | RARLAB WinRAR Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to exe... |
| CVE-2025-6217 | LOW | 2.5 | 0.1% | Jun 21, 2025 | PEAK-System Driver PCANFD_ADD_FILTERS Time-Of-Check Time-Of-Use Information Disclosure Vulnerability. This vulnerability... |
| CVE-2025-6216 | CRITICAL | 9.8 | 29.4% | Jun 21, 2025 | Allegra calculateTokenExpDate Password Recovery Authentication Bypass Vulnerability. This vulnerability allows remote at... |
| CVE-2025-5820 | HIGH | 8.8 | 0.3% | Jun 21, 2025 | Sony XAV-AX8500 Bluetooth ERTM Channel Authentication Bypass Vulnerability. This vulnerability allows network-adjacent a... |
| CVE-2025-5479 | HIGH | 7.5 | 0.3% | Jun 21, 2025 | Sony XAV-AX8500 Bluetooth AVCTP Protocol Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabil... |
| CVE-2025-5478 | HIGH | 8.8 | 0.4% | Jun 21, 2025 | Sony XAV-AX8500 Bluetooth SDP Protocol Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows n... |
| CVE-2025-5477 | HIGH | 7.5 | 0.3% | Jun 21, 2025 | Sony XAV-AX8500 Bluetooth L2CAP Protocol Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabil... |
| CVE-2025-5476 | HIGH | 8.8 | 0.3% | Jun 21, 2025 | Sony XAV-AX8500 Bluetooth Improper Isolation Authentication Bypass Vulnerability. This vulnerability allows network-adja... |
| CVE-2025-5475 | HIGH | 7.5 | 0.3% | Jun 21, 2025 | Sony XAV-AX8500 Bluetooth Packet Handling Integer Overflow Remote Code Execution Vulnerability. This vulnerability allow... |
| CVE-2025-6373 | HIGH | 8.8 | 0.7% | Jun 21, 2025 | A vulnerability has been found in D-Link DIR-619L 2.06B01 and classified as critical. This vulnerability affects the fun... |
| CVE-2025-6372 | HIGH | 8.8 | 0.8% | Jun 20, 2025 | A vulnerability, which was classified as critical, was found in D-Link DIR-619L 2.06B01. This affects the function formS... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now