2025 CVE Vulnerabilities

45,142 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-34151CRITICAL9.4A command injection vulnerability exists in the 'passwd' parameter of the PPPoE setup process on the Shenzhen Aitemi M30...
CVE-2025-34150CRITICAL9.4The PPPoE configuration interface of the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02) is vulnerable to comm...
CVE-2025-34149CRITICAL9.4A command injection vulnerability affects the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02) during WPA2 conf...
CVE-2025-34148CRITICAL9.4An unauthenticated OS command injection vulnerability exists in the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model ...
CVE-2025-7768CRITICAL9.3Tigo Energy's Cloud Connect Advanced (CCA) device contains hard-coded credentials that allow unauthorized users to gain ...
CVE-2025-30127CRITICAL9.8An issue was discovered on Marbella KR8s Dashcam FF 2.0.8 devices. Once access is gained either by default, common, or c...
CVE-2025-3354CRITICAL9.8IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 20 is vulnerable to a heap-based buffer overflow, caused by i...
CVE-2025-3320CRITICAL9.8IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 20 is vulnerable to a heap-based buffer overflow, caused by i...
CVE-2025-23327CRITICAL9.1NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause an integer o...
CVE-2025-23319CRITICAL9.8NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker c...
CVE-2025-23318CRITICAL9.8NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker c...
CVE-2025-23317CRITICAL9.8NVIDIA Triton Inference Server contains a vulnerability in the HTTP server, where an attacker could start a reverse shel...
CVE-2025-23311CRITICAL9.8NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a stack overflow through specially...
CVE-2025-23310CRITICAL9.8NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause stack buffer...
CVE-2025-22470CRITICAL9.8CL4/6NX Plus and CL4/6NX-J Plus (Japan model) with the firmware versions prior to 1.15.5-r1 allow crafted dangerous file...
CVE-2025-27071CRITICAL9.8Memory corruption while processing specific files in Powerline Communication Firmware.
CVE-2025-6994CRITICAL9.8The Reveal Listing plugin by smartdatasoft for WordPress is vulnerable to privilege escalation in versions up to, and in...
CVE-2025-54617CRITICAL9.8Stack-based buffer overflow vulnerability in the dms_fwk module. Impact: Successful exploitation of this vulnerability c...
CVE-2025-54883CRITICAL9.3Vision UI is a collection of enterprise-grade, dependency-free modules for modern web projects. In versions 1.4.0 and be...
CVE-2025-54594CRITICAL9.1react-native-bottom-tabs is a library of Native Bottom Tabs for React Native. In versions 0.9.2 and below, the github/wo...
CVE-2025-54253CRITICAL10Adobe Experience Manager versions 6.5.23 and earlier are affected by a Misconfiguration vulnerability that could result ...
CVE-2025-46658CRITICAL9.8An issue was discovered in ExonautWeb in 4C Strategies Exonaut 21.6. There are verbose error messages.
CVE-2025-54874CRITICAL9.8OpenJPEG is an open-source JPEG 2000 codec. In OpenJPEG from 2.5.1 through 2.5.3, a call to opj_jp2_read_header may lead...
CVE-2025-50707CRITICAL9.8An issue in thinkphp3 v.3.2.5 allows a remote attacker to execute arbitrary code via the index.php component
CVE-2025-50706CRITICAL9.8An issue in thinkphp v.5.1 allows a remote attacker to execute arbitrary code via the routecheck function

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now