2025 CVE Vulnerabilities

45,282 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-30165HIGH8vLLM is an inference and serving engine for large language models. In a multi-node vLLM deployment using the V0 engine, ...
CVE-2025-26262MEDIUM6.5An issue in the component /internals/functions of R-fx Networks Linux Malware Detect v1.6.5 allows attackers to escalate...
CVE-2025-22476HIGH8Dell Storage Center - Dell Storage Manager, version(s) 20.1.20, contain(s) an Improper Neutralization of Special Element...
CVE-2025-4384MEDIUM6The MQTT add-on of PcVue fails to verify that a remote device’s certificate has not already expired or has not yet becom...
CVE-2025-4368CRITICAL9.8A vulnerability, which was classified as critical, was found in Tenda AC8 16.03.34.06. Affected is the function formGetR...
CVE-2025-4363CRITICAL9.8A vulnerability, which was classified as critical, has been found in itsourcecode Gym Management System 1.0. This issue ...
CVE-2025-45492CRITICAL9.8Netgear EX8000 V1.0.0.126 is vulnerable to Command Injection via the Iface parameter in the action_wireless function.
CVE-2025-45491CRITICAL9.8Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.ddnsStatus DynDNS fun...
CVE-2025-45490CRITICAL9.8Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.ddnsStatus DynDNS fun...
CVE-2025-45489CRITICAL9.8Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.ddnsStatus DynDNS fun...
CVE-2025-45488CRITICAL9.8Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.ddnsStatus DynDNS fun...
CVE-2025-45487CRITICAL9.8Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.InternetConnection fu...
CVE-2025-23379MEDIUM5.2Dell Storage Center - Dell Storage Manager, version(s) 21.0.20, contain(s) an Improper Neutralization of Input During We...
CVE-2025-22479MEDIUM4.3Dell Storage Center - Dell Storage Manager, version(s) 20.0.21, contain(s) an Improper Limitation of a Pathname to a Res...
CVE-2025-22478HIGH8.1Dell Storage Center - Dell Storage Manager, version(s) 20.1.20, contain(s) an Improper Restriction of XML External Entit...
CVE-2025-22477HIGH8.8Dell Storage Center - Dell Storage Manager, version(s) 20.1.20, contain(s) an Improper Authentication vulnerability. An ...
CVE-2025-4374MEDIUM6.5A flaw was found in Quay. When an organization acts as a proxy cache, and a user or robot pulls an image that hasn't bee...
CVE-2025-4373MEDIUM4.8A flaw was found in GLib, which is vulnerable to an integer overflow in the g_string_insert_unichar() function. When the...
CVE-2025-4362CRITICAL9.8A vulnerability classified as critical was found in itsourcecode Gym Management System 1.0. This vulnerability affects u...
CVE-2025-4361CRITICAL9.8A vulnerability classified as critical has been found in PHPGurukul Company Visitor Management System 2.0. This affects ...
CVE-2025-4360CRITICAL9.8A vulnerability, which was classified as critical, has been found in itsourcecode Gym Management System 1.0. Affected by...
CVE-2025-46814HIGH7.5FastAPI Guard is a security library for FastAPI that provides middleware to control IPs, log requests, and detect penetr...
CVE-2025-2898HIGH8.8IBM Maximo Application Suite 9.0 could allow an attacker with some level of access to elevate their privileges due to a ...
CVE-2025-4359CRITICAL9.8A vulnerability classified as critical was found in itsourcecode Gym Management System 1.0. Affected by this vulnerabili...
CVE-2025-4358CRITICAL9.8A vulnerability classified as critical has been found in PHPGurukul Company Visitor Management System 2.0. Affected is a...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now