2025 CVE Vulnerabilities

45,277 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-5434HIGH7.3A vulnerability was found in Aem Solutions CMS up to 1.0. It has been classified as critical. This affects an unknown pa...
CVE-2025-5433MEDIUM6.3A vulnerability was found in Fengoffice Feng Office 3.5.1.5 and classified as critical. Affected by this issue is some u...
CVE-2025-4010HIGH8.6The Netcom NTC 6200 and NWL 222 series expose a web interface to be configured and set up by operators. Multiple endpoin...
CVE-2025-1235MEDIUM4.3A low privileged attacker can set the date of the devices to the 19th of January 2038 an therefore exceed the 32-Bit tim...
CVE-2025-5432CRITICAL9.8A vulnerability has been found in AssamLook CMS 1.0 and classified as critical. Affected by this vulnerability is an unk...
CVE-2025-5431HIGH8.8A vulnerability, which was classified as critical, was found in AssamLook CMS 1.0. Affected is an unknown function of th...
CVE-2025-3951MEDIUM4.1The WP-Optimize WordPress plugin before 4.2.0 does not properly escape user input when checking image compression statu...
CVE-2025-1485MEDIUM4.8The Real Cookie Banner: GDPR & ePrivacy Cookie Consent WordPress plugin before 5.1.6, real-cookie-banner-pro WordPress p...
CVE-2025-5430CRITICAL9.8A vulnerability, which was classified as critical, has been found in AssamLook CMS 1.0. This issue affects some unknown ...
CVE-2025-5429MEDIUM6.3A vulnerability classified as critical was found in juzaweb CMS up to 3.4.2. This vulnerability affects unknown code of ...
CVE-2025-49113HIGH8.8Roundcube Webmail before 1.5.10 and 1.6.x before 1.6.11 allows remote code execution by authenticated users because the ...
CVE-2025-49112LOW3.1setDeferredReply in networking.c in Valkey through 8.1.1 has an integer underflow for prev->size - prev->used.
CVE-2025-25179HIGH7.8Software installed and run as a non-privileged user may conduct improper GPU system calls to subvert GPU HW to write to ...
CVE-2025-5428MEDIUM6.3A vulnerability classified as critical has been found in juzaweb CMS up to 3.4.2. This affects an unknown part of the fi...
CVE-2025-5427MEDIUM6.3A vulnerability was found in juzaweb CMS up to 3.4.2. It has been rated as critical. Affected by this issue is some unkn...
CVE-2025-5426MEDIUM6.3A vulnerability was found in juzaweb CMS up to 3.4.2. It has been declared as critical. Affected by this vulnerability i...
CVE-2025-5425MEDIUM6.3A vulnerability was found in juzaweb CMS up to 3.4.2. It has been classified as critical. Affected is an unknown functio...
CVE-2025-5424MEDIUM6.3A vulnerability was found in juzaweb CMS up to 3.4.2 and classified as critical. This issue affects some unknown process...
CVE-2025-20678MEDIUM6.5In ims service, there is a possible system crash due to incorrect error handling. This could lead to remote denial of se...
CVE-2025-20677MEDIUM5.5In Bluetooth driver, there is a possible system crash due to an uncaught exception. This could lead to local denial of s...
CVE-2025-20676MEDIUM5.5In wlan STA driver, there is a possible system crash due to an uncaught exception. This could lead to local denial of se...
CVE-2025-20675MEDIUM5.5In wlan STA driver, there is a possible system crash due to an uncaught exception. This could lead to local denial of se...
CVE-2025-20674CRITICAL9.8In wlan AP driver, there is a possible way to inject arbitrary packet due to a missing permission check. This could lead...
CVE-2025-20673MEDIUM5.5In wlan STA driver, there is a possible system crash due to an uncaught exception. This could lead to local denial of se...
CVE-2025-20672CRITICAL9.8In Bluetooth driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now