2025 CVE Vulnerabilities
45,268 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-5303 | HIGH | 7.2 | 0.3% | Jun 7, 2025 | The LTL Freight Quotes – Freightview Edition, LTL Freight Quotes – Daylight Edition and LTL Freight Quotes – Day & Ross ... |
| CVE-2025-5399 | HIGH | 7.5 | 1.2% | Jun 7, 2025 | Due to a mistake in libcurl's WebSocket code, a malicious server can send a particularly crafted packet which makes libc... |
| CVE-2025-5814 | MEDIUM | 5.3 | 0.2% | Jun 7, 2025 | The Profiler – What Slowing Down Your WP plugin for WordPress is vulnerable to unauthorized modification of data due to ... |
| CVE-2025-47601 | HIGH | 8.8 | 0.3% | Jun 7, 2025 | Missing Authorization vulnerability in Christiaan Pieterse MaxiBlocks maxi-blocks allows Privilege Escalation.This issue... |
| CVE-2025-49128 | MEDIUM | 4 | 0.3% | Jun 6, 2025 | Jackson-core contains core low-level incremental ("streaming") parser and generator abstractions used by Jackson Data Pr... |
| CVE-2025-49127 | HIGH | 8.9 | 0.5% | Jun 6, 2025 | Kafbat UI is a web user interface for managing Apache Kafka clusters. An unsafe deserialization vulnerability in version... |
| CVE-2025-5799 | HIGH | 8.8 | 1.0% | Jun 6, 2025 | A vulnerability was found in Tenda AC8 16.03.34.09. It has been declared as critical. Affected by this vulnerability is ... |
| CVE-2025-5798 | HIGH | 8.8 | 1.0% | Jun 6, 2025 | A vulnerability was found in Tenda AC8 16.03.34.09. It has been classified as critical. Affected is the function fromSet... |
| CVE-2025-5797 | MEDIUM | 5.4 | 0.2% | Jun 6, 2025 | A vulnerability was found in code-projects Laundry System 1.0 and classified as problematic. This issue affects some unk... |
| CVE-2025-5796 | MEDIUM | 5.4 | 0.2% | Jun 6, 2025 | A vulnerability has been found in code-projects Laundry System 1.0 and classified as problematic. This vulnerability aff... |
| CVE-2025-5795 | HIGH | 8.8 | 0.8% | Jun 6, 2025 | A vulnerability, which was classified as critical, was found in Tenda AC5 1.0/15.03.06.47. This affects the function fro... |
| CVE-2025-5794 | HIGH | 8.8 | 0.8% | Jun 6, 2025 | A vulnerability, which was classified as critical, has been found in Tenda AC5 15.03.06.47. Affected by this issue is th... |
| CVE-2025-5481 | HIGH | 7.8 | 0.2% | Jun 6, 2025 | Sante DICOM Viewer Pro DCM File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allo... |
| CVE-2025-5480 | HIGH | 7.8 | 0.3% | Jun 6, 2025 | Action1 Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attac... |
| CVE-2025-5474 | HIGH | 7.3 | 0.3% | Jun 6, 2025 | 2BrightSparks SyncBackFree Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local atta... |
| CVE-2025-5473 | HIGH | 8.8 | 10.6% | Jun 6, 2025 | GIMP ICO File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers t... |
| CVE-2025-3485 | HIGH | 8.8 | 1.8% | Jun 6, 2025 | Allegra extractFileFromZip Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote att... |
| CVE-2025-2766 | HIGH | 8.8 | 0.3% | Jun 6, 2025 | 70mai A510 Use of Default Password Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attac... |
| CVE-2025-5793 | MEDIUM | 6.5 | 0.7% | Jun 6, 2025 | A vulnerability, which was classified as critical, was found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. Affected is an ... |
| CVE-2025-5792 | MEDIUM | 6.5 | 3.8% | Jun 6, 2025 | A vulnerability, which was classified as critical, has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. This issue... |
| CVE-2025-5790 | MEDIUM | 6.5 | 4.1% | Jun 6, 2025 | A vulnerability classified as critical was found in TOTOLINK X15 1.0.0-B20230714.1105. This vulnerability affects unknow... |
| CVE-2025-5789 | MEDIUM | 6.5 | 0.6% | Jun 6, 2025 | A vulnerability classified as critical has been found in TOTOLINK X15 1.0.0-B20230714.1105. This affects an unknown part... |
| CVE-2025-49011 | MEDIUM | 5.3 | 0.3% | Jun 6, 2025 | SpiceDB is an open source database for storing and querying fine-grained authorization data. Prior to version 1.44.2, on... |
| CVE-2025-47950 | HIGH | 7.5 | 1.1% | Jun 6, 2025 | CoreDNS is a DNS server that chains plugins. In versions prior to 1.12.2, a Denial of Service (DoS) vulnerability exists... |
| CVE-2025-5788 | MEDIUM | 6.5 | 4.1% | Jun 6, 2025 | A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105. It has been rated as critical. Affected by this issue is... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now