2025 CVE Vulnerabilities
45,280 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-47423 | MEDIUM | 5.8 | 2.1% | May 7, 2025 | Personal Weather Station Dashboard 12_lts allows unauthenticated remote attackers to read arbitrary files via ../ direct... |
| CVE-2025-47203 | MEDIUM | 4.5 | 0.6% | May 7, 2025 | dbclient in Dropbear SSH before 2025.88 allows command injection via an untrusted hostname argument, because a shell is ... |
| CVE-2025-46828 | CRITICAL | 9.8 | 0.5% | May 7, 2025 | WeGIA is a web manager for charitable institutions. An unauthenticated SQL Injection vulnerability was identified in ve... |
| CVE-2025-46824 | LOW | 3.1 | 0.3% | May 7, 2025 | The Discourse Code Review Plugin allows users to review GitHub commits on Discourse. Prior to commit eed3a80, an attacke... |
| CVE-2025-32821 | HIGH | 7.2 | 29.4% | May 7, 2025 | A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN admin privileges can with admin privileges ... |
| CVE-2025-32820 | HIGH | 8.8 | 3.0% | May 7, 2025 | A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges can inject a path traversal... |
| CVE-2025-32819 | HIGH | 8.8 | 6.8% | May 7, 2025 | A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges to bypass the path traversa... |
| CVE-2025-20223 | MEDIUM | 4.7 | 0.2% | May 7, 2025 | A vulnerability in Cisco Catalyst Center, formerly Cisco DNA Center, could allow an authenticated, remote attacker to re... |
| CVE-2025-20221 | CRITICAL | 9.1 | 0.4% | May 7, 2025 | A vulnerability in the packet filtering features of Cisco IOS XE SD-WAN Software could allow an unauthenticated, remote ... |
| CVE-2025-20216 | MEDIUM | 4.3 | 0.3% | May 7, 2025 | A vulnerability in the web interface of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an una... |
| CVE-2025-20214 | MEDIUM | 4.3 | 0.3% | May 7, 2025 | A vulnerability in the Network Configuration Access Control Module (NACM) of Cisco IOS XE Software could allow an authen... |
| CVE-2025-20213 | MEDIUM | 5.5 | 0.1% | May 7, 2025 | A vulnerability in the CLI of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated... |
| CVE-2025-20210 | HIGH | 7.3 | 0.3% | May 7, 2025 | A vulnerability in the management API of Cisco Catalyst Center, formerly Cisco DNA Center, could allow an unauthenticate... |
| CVE-2025-20202 | HIGH | 7.4 | 0.2% | May 7, 2025 | A vulnerability in Cisco IOS XE Wireless Controller Software could allow an unauthenticated, adjacent attacker to cause ... |
| CVE-2025-20201 | MEDIUM | 6.7 | 0.1% | May 7, 2025 | A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15... |
| CVE-2025-20200 | HIGH | 8.2 | 0.1% | May 7, 2025 | A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15... |
| CVE-2025-20199 | HIGH | 8.2 | 0.1% | May 7, 2025 | A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15... |
| CVE-2025-20198 | HIGH | 8.2 | 0.1% | May 7, 2025 | A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15... |
| CVE-2025-20197 | HIGH | 8.2 | 0.1% | May 7, 2025 | A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15... |
| CVE-2025-20196 | MEDIUM | 5.3 | 0.4% | May 7, 2025 | A vulnerability in the Cisco IOx application hosting environment of Cisco IOS Software and Cisco IOS XE Software could a... |
| CVE-2025-20195 | MEDIUM | 4.3 | 0.2% | May 7, 2025 | A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an unauthenticated, remote at... |
| CVE-2025-20194 | MEDIUM | 5.4 | 0.3% | May 7, 2025 | A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, low-privile... |
| CVE-2025-20193 | MEDIUM | 6.5 | 0.4% | May 7, 2025 | A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, low-privile... |
| CVE-2025-20192 | HIGH | 7.7 | 0.4% | May 7, 2025 | A vulnerability in the Internet Key Exchange version 1 (IKEv1) implementation of Cisco IOS XE Software could allow an au... |
| CVE-2025-20191 | HIGH | 7.4 | 0.2% | May 7, 2025 | A vulnerability in the Switch Integrated Security Features (SISF) of Cisco IOS Software, Cisco IOS XE Software, Cisco NX... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now