2025 CVE Vulnerabilities
45,142 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-34151 | CRITICAL | 9.4 | 3.8% | Aug 7, 2025 | A command injection vulnerability exists in the 'passwd' parameter of the PPPoE setup process on the Shenzhen Aitemi M30... |
| CVE-2025-34150 | CRITICAL | 9.4 | 1.4% | Aug 7, 2025 | The PPPoE configuration interface of the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02) is vulnerable to comm... |
| CVE-2025-34149 | CRITICAL | 9.4 | 1.5% | Aug 7, 2025 | A command injection vulnerability affects the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02) during WPA2 conf... |
| CVE-2025-34148 | CRITICAL | 9.4 | 1.3% | Aug 7, 2025 | An unauthenticated OS command injection vulnerability exists in the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model ... |
| CVE-2025-7768 | CRITICAL | 9.3 | 0.5% | Aug 6, 2025 | Tigo Energy's Cloud Connect Advanced (CCA) device contains hard-coded credentials that allow unauthorized users to gain ... |
| CVE-2025-30127 | CRITICAL | 9.8 | 0.4% | Aug 6, 2025 | An issue was discovered on Marbella KR8s Dashcam FF 2.0.8 devices. Once access is gained either by default, common, or c... |
| CVE-2025-3354 | CRITICAL | 9.8 | 0.5% | Aug 6, 2025 | IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 20 is vulnerable to a heap-based buffer overflow, caused by i... |
| CVE-2025-3320 | CRITICAL | 9.8 | 0.5% | Aug 6, 2025 | IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 20 is vulnerable to a heap-based buffer overflow, caused by i... |
| CVE-2025-23327 | CRITICAL | 9.1 | 0.5% | Aug 6, 2025 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause an integer o... |
| CVE-2025-23319 | CRITICAL | 9.8 | 1.5% | Aug 6, 2025 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker c... |
| CVE-2025-23318 | CRITICAL | 9.8 | 0.6% | Aug 6, 2025 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker c... |
| CVE-2025-23317 | CRITICAL | 9.8 | 1.8% | Aug 6, 2025 | NVIDIA Triton Inference Server contains a vulnerability in the HTTP server, where an attacker could start a reverse shel... |
| CVE-2025-23311 | CRITICAL | 9.8 | 2.5% | Aug 6, 2025 | NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a stack overflow through specially... |
| CVE-2025-23310 | CRITICAL | 9.8 | 1.8% | Aug 6, 2025 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause stack buffer... |
| CVE-2025-22470 | CRITICAL | 9.8 | 0.7% | Aug 6, 2025 | CL4/6NX Plus and CL4/6NX-J Plus (Japan model) with the firmware versions prior to 1.15.5-r1 allow crafted dangerous file... |
| CVE-2025-27071 | CRITICAL | 9.8 | 0.2% | Aug 6, 2025 | Memory corruption while processing specific files in Powerline Communication Firmware. |
| CVE-2025-6994 | CRITICAL | 9.8 | 0.4% | Aug 6, 2025 | The Reveal Listing plugin by smartdatasoft for WordPress is vulnerable to privilege escalation in versions up to, and in... |
| CVE-2025-54617 | CRITICAL | 9.8 | 0.3% | Aug 6, 2025 | Stack-based buffer overflow vulnerability in the dms_fwk module. Impact: Successful exploitation of this vulnerability c... |
| CVE-2025-54883 | CRITICAL | 9.3 | 0.3% | Aug 6, 2025 | Vision UI is a collection of enterprise-grade, dependency-free modules for modern web projects. In versions 1.4.0 and be... |
| CVE-2025-54594 | CRITICAL | 9.1 | 0.4% | Aug 6, 2025 | react-native-bottom-tabs is a library of Native Bottom Tabs for React Native. In versions 0.9.2 and below, the github/wo... |
| CVE-2025-54253 | CRITICAL | 10 | 89.8% | Aug 5, 2025 | Adobe Experience Manager versions 6.5.23 and earlier are affected by a Misconfiguration vulnerability that could result ... |
| CVE-2025-46658 | CRITICAL | 9.8 | 0.4% | Aug 5, 2025 | An issue was discovered in ExonautWeb in 4C Strategies Exonaut 21.6. There are verbose error messages. |
| CVE-2025-54874 | CRITICAL | 9.8 | 0.6% | Aug 5, 2025 | OpenJPEG is an open-source JPEG 2000 codec. In OpenJPEG from 2.5.1 through 2.5.3, a call to opj_jp2_read_header may lead... |
| CVE-2025-50707 | CRITICAL | 9.8 | 1.0% | Aug 5, 2025 | An issue in thinkphp3 v.3.2.5 allows a remote attacker to execute arbitrary code via the index.php component |
| CVE-2025-50706 | CRITICAL | 9.8 | 1.0% | Aug 5, 2025 | An issue in thinkphp v.5.1 allows a remote attacker to execute arbitrary code via the routecheck function |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now