2025 CVE Vulnerabilities
45,279 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-40556 | HIGH | 7.1 | 0.2% | May 13, 2025 | A vulnerability has been identified in BACnet ATEC 550-440 (All versions), BACnet ATEC 550-441 (All versions), BACnet AT... |
| CVE-2025-40555 | MEDIUM | 5.3 | 0.2% | May 13, 2025 | A vulnerability has been identified in APOGEE PXC+TALON TC Series (BACnet) (All versions). Affected devices start sendin... |
| CVE-2025-33025 | CRITICAL | 9.9 | 1.2% | May 13, 2025 | A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.5), RUGGEDCOM ROX MX5000RE (All versio... |
| CVE-2025-33024 | CRITICAL | 9.9 | 1.2% | May 13, 2025 | A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.5), RUGGEDCOM ROX MX5000RE (All versio... |
| CVE-2025-32469 | CRITICAL | 9.9 | 1.2% | May 13, 2025 | A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.5), RUGGEDCOM ROX MX5000RE (All versio... |
| CVE-2025-32454 | HIGH | 7.8 | 0.2% | May 13, 2025 | A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.14), Teamcenter Visualizat... |
| CVE-2025-31930 | HIGH | 8.8 | 0.2% | May 13, 2025 | A vulnerability has been identified in IEC 1Ph 7.4kW Child socket (8EM1310-2EH04-0GA0) (All versions < V2.135), IEC 1Ph ... |
| CVE-2025-31929 | MEDIUM | 4.2 | 0.2% | May 13, 2025 | A vulnerability has been identified in IEC 1Ph 7.4kW Child socket (8EM1310-2EH04-0GA0) (All versions), IEC 1Ph 7.4kW Chi... |
| CVE-2025-30176 | HIGH | 8.7 | 0.5% | May 13, 2025 | A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions), SIMATIC PCS neo V5.0 (All versions), SINEC N... |
| CVE-2025-30175 | HIGH | 8.7 | 0.5% | May 13, 2025 | A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions), SIMATIC PCS neo V5.0 (All versions), SINEC N... |
| CVE-2025-30174 | HIGH | 8.7 | 0.5% | May 13, 2025 | A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions), SIMATIC PCS neo V5.0 (All versions), SINEC N... |
| CVE-2025-26390 | CRITICAL | 9.8 | 0.6% | May 13, 2025 | A vulnerability has been identified in OZW672 (All versions < V6.0), OZW772 (All versions < V6.0). The web service of af... |
| CVE-2025-26389 | CRITICAL | 9.8 | 0.8% | May 13, 2025 | A vulnerability has been identified in OZW672 (All versions < V8.0), OZW772 (All versions < V8.0). The web service in af... |
| CVE-2025-24510 | HIGH | 7.1 | 0.2% | May 13, 2025 | A vulnerability has been identified in MS/TP Point Pickup Module (All versions). Affected devices improperly handle spec... |
| CVE-2025-24009 | HIGH | 8.2 | 0.4% | May 13, 2025 | A vulnerability has been identified in SIRIUS 3RK3 Modular Safety System (MSS) (All versions), SIRIUS Safety Relays 3SK2... |
| CVE-2025-24008 | HIGH | 8.7 | 0.2% | May 13, 2025 | A vulnerability has been identified in SIRIUS 3RK3 Modular Safety System (MSS) (All versions), SIRIUS Safety Relays 3SK2... |
| CVE-2025-24007 | HIGH | 8.7 | 0.2% | May 13, 2025 | A vulnerability has been identified in SIRIUS 3RK3 Modular Safety System (MSS) (All versions), SIRIUS Safety Relays 3SK2... |
| CVE-2025-22248 | HIGH | 7.5 | 0.4% | May 13, 2025 | The bitnami/pgpool Docker image, and the bitnami/postgres-ha k8s chart, under default configurations, comes with an 'rep... |
| CVE-2025-41645 | HIGH | 8.6 | 0.3% | May 13, 2025 | An unauthenticated remote attacker could use a demo account of the portal to hijack devices that were created in that ac... |
| CVE-2025-3916 | MEDIUM | 4.6 | 0.2% | May 13, 2025 | CWE-121: Stack-based Buffer Overflow vulnerability exists that could cause local attackers being able to exploit these i... |
| CVE-2025-27696 | HIGH | 8.8 | 1.0% | May 13, 2025 | Incorrect Authorization vulnerability in Apache Superset allows ownership takeover of dashboards, charts or datasets by ... |
| CVE-2025-4474 | HIGH | 8.8 | 0.4% | May 13, 2025 | The Frontend Dashboard plugin for WordPress is vulnerable to Privilege Escalation due to a missing capability check on t... |
| CVE-2025-4473 | HIGH | 8.8 | 0.4% | May 13, 2025 | The Frontend Dashboard plugin for WordPress is vulnerable to Privilege Escalation due to a missing capability check on t... |
| CVE-2025-4339 | MEDIUM | 4.3 | 0.4% | May 13, 2025 | The TheGem theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on t... |
| CVE-2025-4317 | HIGH | 8.8 | 1.1% | May 13, 2025 | The TheGem theme for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the thegem... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now