2025 CVE Vulnerabilities
45,282 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-30165 | HIGH | 8 | 0.5% | May 6, 2025 | vLLM is an inference and serving engine for large language models. In a multi-node vLLM deployment using the V0 engine, ... |
| CVE-2025-26262 | MEDIUM | 6.5 | 0.3% | May 6, 2025 | An issue in the component /internals/functions of R-fx Networks Linux Malware Detect v1.6.5 allows attackers to escalate... |
| CVE-2025-22476 | HIGH | 8 | 0.6% | May 6, 2025 | Dell Storage Center - Dell Storage Manager, version(s) 20.1.20, contain(s) an Improper Neutralization of Special Element... |
| CVE-2025-4384 | MEDIUM | 6 | 0.1% | May 6, 2025 | The MQTT add-on of PcVue fails to verify that a remote device’s certificate has not already expired or has not yet becom... |
| CVE-2025-4368 | CRITICAL | 9.8 | 0.7% | May 6, 2025 | A vulnerability, which was classified as critical, was found in Tenda AC8 16.03.34.06. Affected is the function formGetR... |
| CVE-2025-4363 | CRITICAL | 9.8 | 0.4% | May 6, 2025 | A vulnerability, which was classified as critical, has been found in itsourcecode Gym Management System 1.0. This issue ... |
| CVE-2025-45492 | CRITICAL | 9.8 | 1.4% | May 6, 2025 | Netgear EX8000 V1.0.0.126 is vulnerable to Command Injection via the Iface parameter in the action_wireless function. |
| CVE-2025-45491 | CRITICAL | 9.8 | 2.1% | May 6, 2025 | Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.ddnsStatus DynDNS fun... |
| CVE-2025-45490 | CRITICAL | 9.8 | 1.7% | May 6, 2025 | Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.ddnsStatus DynDNS fun... |
| CVE-2025-45489 | CRITICAL | 9.8 | 1.9% | May 6, 2025 | Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.ddnsStatus DynDNS fun... |
| CVE-2025-45488 | CRITICAL | 9.8 | 8.8% | May 6, 2025 | Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.ddnsStatus DynDNS fun... |
| CVE-2025-45487 | CRITICAL | 9.8 | 8.8% | May 6, 2025 | Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.InternetConnection fu... |
| CVE-2025-23379 | MEDIUM | 5.2 | 0.2% | May 6, 2025 | Dell Storage Center - Dell Storage Manager, version(s) 21.0.20, contain(s) an Improper Neutralization of Input During We... |
| CVE-2025-22479 | MEDIUM | 4.3 | 0.2% | May 6, 2025 | Dell Storage Center - Dell Storage Manager, version(s) 20.0.21, contain(s) an Improper Limitation of a Pathname to a Res... |
| CVE-2025-22478 | HIGH | 8.1 | 0.2% | May 6, 2025 | Dell Storage Center - Dell Storage Manager, version(s) 20.1.20, contain(s) an Improper Restriction of XML External Entit... |
| CVE-2025-22477 | HIGH | 8.8 | 0.3% | May 6, 2025 | Dell Storage Center - Dell Storage Manager, version(s) 20.1.20, contain(s) an Improper Authentication vulnerability. An ... |
| CVE-2025-4374 | MEDIUM | 6.5 | 0.3% | May 6, 2025 | A flaw was found in Quay. When an organization acts as a proxy cache, and a user or robot pulls an image that hasn't bee... |
| CVE-2025-4373 | MEDIUM | 4.8 | 0.5% | May 6, 2025 | A flaw was found in GLib, which is vulnerable to an integer overflow in the g_string_insert_unichar() function. When the... |
| CVE-2025-4362 | CRITICAL | 9.8 | 0.4% | May 6, 2025 | A vulnerability classified as critical was found in itsourcecode Gym Management System 1.0. This vulnerability affects u... |
| CVE-2025-4361 | CRITICAL | 9.8 | 0.5% | May 6, 2025 | A vulnerability classified as critical has been found in PHPGurukul Company Visitor Management System 2.0. This affects ... |
| CVE-2025-4360 | CRITICAL | 9.8 | 0.4% | May 6, 2025 | A vulnerability, which was classified as critical, has been found in itsourcecode Gym Management System 1.0. Affected by... |
| CVE-2025-46814 | HIGH | 7.5 | 0.3% | May 6, 2025 | FastAPI Guard is a security library for FastAPI that provides middleware to control IPs, log requests, and detect penetr... |
| CVE-2025-2898 | HIGH | 8.8 | 0.3% | May 6, 2025 | IBM Maximo Application Suite 9.0 could allow an attacker with some level of access to elevate their privileges due to a ... |
| CVE-2025-4359 | CRITICAL | 9.8 | 0.4% | May 6, 2025 | A vulnerability classified as critical was found in itsourcecode Gym Management System 1.0. Affected by this vulnerabili... |
| CVE-2025-4358 | CRITICAL | 9.8 | 0.4% | May 6, 2025 | A vulnerability classified as critical has been found in PHPGurukul Company Visitor Management System 2.0. Affected is a... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now