2025 CVE Vulnerabilities
45,267 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-36632 | HIGH | 7.8 | 0.2% | Jun 16, 2025 | In Tenable Agent versions prior to 10.8.5 on a Windows host, it was found that a non-administrative user could execute c... |
| CVE-2025-6123 | CRITICAL | 9.8 | 0.4% | Jun 16, 2025 | A vulnerability has been found in code-projects Restaurant Order System 1.0 and classified as critical. This vulnerabili... |
| CVE-2025-6122 | HIGH | 8.8 | 0.3% | Jun 16, 2025 | A vulnerability, which was classified as critical, was found in code-projects Restaurant Order System 1.0. This affects ... |
| CVE-2025-6121 | CRITICAL | 9.8 | 1.9% | Jun 16, 2025 | A vulnerability, which was classified as critical, has been found in D-Link DIR-632 FW103B08. Affected by this issue is ... |
| CVE-2025-6120 | MEDIUM | 5.3 | 0.2% | Jun 16, 2025 | A vulnerability classified as critical was found in Open Asset Import Library Assimp up to 5.4.3. Affected by this vulne... |
| CVE-2025-5689 | HIGH | 8.5 | 0.3% | Jun 16, 2025 | A flaw was found in the temporary user record that authd uses in the pre-auth NSS. As a result, a user login for the fir... |
| CVE-2025-46710 | MEDIUM | 5.7 | 0.2% | Jun 16, 2025 | Possible kernel exceptions caused by reading and writing kernel heap data after free. |
| CVE-2025-24388 | LOW | 3.8 | 0.2% | Jun 16, 2025 | A vulnerability in the OTRS Admin Interface and Agent Interface (versions before OTRS 8) allow parameter injection due t... |
| CVE-2025-6119 | MEDIUM | 5.3 | 0.2% | Jun 16, 2025 | A vulnerability classified as critical has been found in Open Asset Import Library Assimp up to 5.4.3. Affected is the f... |
| CVE-2025-6118 | CRITICAL | 9.8 | 0.4% | Jun 16, 2025 | A vulnerability was found in Das Parking Management System 停车场管理系统 6.2.0. It has been rated as critical. This issue affe... |
| CVE-2025-4748 | MEDIUM | 4.8 | 0.2% | Jun 16, 2025 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Erlang OTP (stdlib modul... |
| CVE-2025-47869 | CRITICAL | 9.8 | 0.6% | Jun 16, 2025 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability was discovered in Apache NuttX RTO... |
| CVE-2025-47868 | CRITICAL | 9.8 | 0.6% | Jun 16, 2025 | Out-of-bounds Write resulting in possible Heap-based Buffer Overflow vulnerability was discovered in tools/bdf-converter... |
| CVE-2025-40916 | CRITICAL | 9.1 | 0.3% | Jun 16, 2025 | Mojolicious::Plugin::CaptchaPNG version 1.05 for Perl uses a weak random number source for generating the captcha. That... |
| CVE-2025-6117 | CRITICAL | 9.8 | 0.4% | Jun 16, 2025 | A vulnerability was found in Das Parking Management System 停车场管理系统 6.2.0. It has been declared as critical. This vulnera... |
| CVE-2025-6116 | CRITICAL | 9.8 | 0.4% | Jun 16, 2025 | A vulnerability was found in Das Parking Management System 停车场管理系统 6.2.0. It has been classified as critical. This affec... |
| CVE-2025-25265 | MEDIUM | 4.9 | 0.4% | Jun 16, 2025 | A web application for configuring the controller is accessible at a specific path. It contains an endpoint that allows a... |
| CVE-2025-25264 | MEDIUM | 6.5 | 0.4% | Jun 16, 2025 | An unauthenticated remote attacker can trick an admin to visit a website containing malicious java script code. The curr... |
| CVE-2025-6172 | CRITICAL | 9.8 | 0.5% | Jun 16, 2025 | Permission vulnerability in the mobile application (com.afmobi.boomplayer) may lead to the risk of unauthorized operatio... |
| CVE-2025-6115 | HIGH | 8.8 | 1.1% | Jun 16, 2025 | A vulnerability was found in D-Link DIR-619L 2.06B01 and classified as critical. Affected by this issue is the function ... |
| CVE-2025-6114 | HIGH | 8.8 | 1.1% | Jun 16, 2025 | A vulnerability has been found in D-Link DIR-619L 2.06B01 and classified as critical. Affected by this vulnerability is ... |
| CVE-2025-40729 | MEDIUM | 6.1 | 0.3% | Jun 16, 2025 | Reflected Cross-Site Scripting (XSS) in /customer_support/index.php in Customer Support System v1.0, which allows remote... |
| CVE-2025-40728 | HIGH | 8.8 | 0.4% | Jun 16, 2025 | SQL injection vulnerability in Customer Support System v1.0. This vulnerability allows an authenticated attacker to retr... |
| CVE-2025-40727 | MEDIUM | 5.1 | 0.7% | Jun 16, 2025 | A Reflected Cross Site Scripting (XSS) vulnerability was found in '/search' in Phoenix Site CMS from Phoenix, which allo... |
| CVE-2025-40726 | MEDIUM | 5.1 | 0.7% | Jun 16, 2025 | Reflected Cross-Site Scripting (XSS) vulnerability in /pages/search-results-page in Nosto, which allows remote attackers... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now