2025 CVE Vulnerabilities

45,279 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-40556HIGH7.1A vulnerability has been identified in BACnet ATEC 550-440 (All versions), BACnet ATEC 550-441 (All versions), BACnet AT...
CVE-2025-40555MEDIUM5.3A vulnerability has been identified in APOGEE PXC+TALON TC Series (BACnet) (All versions). Affected devices start sendin...
CVE-2025-33025CRITICAL9.9A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.5), RUGGEDCOM ROX MX5000RE (All versio...
CVE-2025-33024CRITICAL9.9A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.5), RUGGEDCOM ROX MX5000RE (All versio...
CVE-2025-32469CRITICAL9.9A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.5), RUGGEDCOM ROX MX5000RE (All versio...
CVE-2025-32454HIGH7.8A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.14), Teamcenter Visualizat...
CVE-2025-31930HIGH8.8A vulnerability has been identified in IEC 1Ph 7.4kW Child socket (8EM1310-2EH04-0GA0) (All versions < V2.135), IEC 1Ph ...
CVE-2025-31929MEDIUM4.2A vulnerability has been identified in IEC 1Ph 7.4kW Child socket (8EM1310-2EH04-0GA0) (All versions), IEC 1Ph 7.4kW Chi...
CVE-2025-30176HIGH8.7A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions), SIMATIC PCS neo V5.0 (All versions), SINEC N...
CVE-2025-30175HIGH8.7A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions), SIMATIC PCS neo V5.0 (All versions), SINEC N...
CVE-2025-30174HIGH8.7A vulnerability has been identified in SIMATIC PCS neo V4.1 (All versions), SIMATIC PCS neo V5.0 (All versions), SINEC N...
CVE-2025-26390CRITICAL9.8A vulnerability has been identified in OZW672 (All versions < V6.0), OZW772 (All versions < V6.0). The web service of af...
CVE-2025-26389CRITICAL9.8A vulnerability has been identified in OZW672 (All versions < V8.0), OZW772 (All versions < V8.0). The web service in af...
CVE-2025-24510HIGH7.1A vulnerability has been identified in MS/TP Point Pickup Module (All versions). Affected devices improperly handle spec...
CVE-2025-24009HIGH8.2A vulnerability has been identified in SIRIUS 3RK3 Modular Safety System (MSS) (All versions), SIRIUS Safety Relays 3SK2...
CVE-2025-24008HIGH8.7A vulnerability has been identified in SIRIUS 3RK3 Modular Safety System (MSS) (All versions), SIRIUS Safety Relays 3SK2...
CVE-2025-24007HIGH8.7A vulnerability has been identified in SIRIUS 3RK3 Modular Safety System (MSS) (All versions), SIRIUS Safety Relays 3SK2...
CVE-2025-22248HIGH7.5The bitnami/pgpool Docker image, and the bitnami/postgres-ha k8s chart, under default configurations, comes with an 'rep...
CVE-2025-41645HIGH8.6An unauthenticated remote attacker could use a demo account of the portal to hijack devices that were created in that ac...
CVE-2025-3916MEDIUM4.6CWE-121: Stack-based Buffer Overflow vulnerability exists that could cause local attackers being able to exploit these i...
CVE-2025-27696HIGH8.8Incorrect Authorization vulnerability in Apache Superset allows ownership takeover of dashboards, charts or datasets by ...
CVE-2025-4474HIGH8.8The Frontend Dashboard plugin for WordPress is vulnerable to Privilege Escalation due to a missing capability check on t...
CVE-2025-4473HIGH8.8The Frontend Dashboard plugin for WordPress is vulnerable to Privilege Escalation due to a missing capability check on t...
CVE-2025-4339MEDIUM4.3The TheGem theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on t...
CVE-2025-4317HIGH8.8The TheGem theme for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the thegem...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now