2025 CVE Vulnerabilities
45,282 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-4357 | CRITICAL | 9.8 | 11.7% | May 6, 2025 | A vulnerability was found in Tenda RX3 16.03.13.11_multi. It has been rated as critical. This issue affects some unknown... |
| CVE-2025-4356 | CRITICAL | 9.8 | 1.2% | May 6, 2025 | A vulnerability was found in Tenda DAP-1520 1.10B04_BETA02. It has been declared as critical. This vulnerability affects... |
| CVE-2025-4355 | CRITICAL | 9.8 | 0.9% | May 6, 2025 | A vulnerability was found in Tenda DAP-1520 1.10B04_BETA02. It has been classified as critical. This affects the functio... |
| CVE-2025-4354 | CRITICAL | 9.8 | 0.9% | May 6, 2025 | A vulnerability was found in Tenda DAP-1520 1.10B04_BETA02 and classified as critical. Affected by this issue is the fun... |
| CVE-2025-4353 | CRITICAL | 9.8 | 0.4% | May 6, 2025 | A vulnerability, which was classified as critical, was found in Brilliance Golden Link Secondary System up to 20250424. ... |
| CVE-2025-4352 | CRITICAL | 9.8 | 0.4% | May 6, 2025 | A vulnerability, which was classified as critical, has been found in Brilliance Golden Link Secondary System up to 20250... |
| CVE-2025-4350 | CRITICAL | 9.8 | 3.3% | May 6, 2025 | A vulnerability classified as critical was found in D-Link DIR-600L up to 2.07B01. This vulnerability affects the functi... |
| CVE-2025-4349 | CRITICAL | 9.8 | 3.3% | May 6, 2025 | A vulnerability classified as critical has been found in D-Link DIR-600L up to 2.07B01. This affects the function formSy... |
| CVE-2025-0984 | HIGH | 8.2 | 0.3% | May 6, 2025 | Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Input During Web Page Generation (XSS or 'Cr... |
| CVE-2025-4348 | CRITICAL | 9.8 | 1.5% | May 6, 2025 | A vulnerability was found in D-Link DIR-600L up to 2.07B01. It has been rated as critical. Affected by this issue is the... |
| CVE-2025-4347 | CRITICAL | 9.8 | 1.5% | May 6, 2025 | A vulnerability was found in D-Link DIR-600L up to 2.07B01. It has been declared as critical. Affected by this vulnerabi... |
| CVE-2025-40625 | CRITICAL | 9.8 | 0.6% | May 6, 2025 | Unrestricted file upload in TCMAN's GIM v11. This vulnerability allows an unauthenticated attacker to upload any file wi... |
| CVE-2025-40624 | CRITICAL | 9.8 | 0.4% | May 6, 2025 | SQL injection in TCMAN's GIM v11. This vulnerability allows an unauthenticated attacker to inject an SQL statement to ob... |
| CVE-2025-40623 | CRITICAL | 9.8 | 0.4% | May 6, 2025 | SQL injection in TCMAN's GIM v11. This vulnerability allows an unauthenticated attacker to inject an SQL statement to ob... |
| CVE-2025-40622 | CRITICAL | 9.8 | 0.4% | May 6, 2025 | SQL injection in TCMAN's GIM v11. This vulnerability allows an unauthenticated attacker to inject an SQL statement to ob... |
| CVE-2025-40621 | CRITICAL | 9.8 | 0.4% | May 6, 2025 | SQL injection in TCMAN's GIM v11. This vulnerability allows an unauthenticated attacker to inject an SQL statement to ob... |
| CVE-2025-40620 | CRITICAL | 9.8 | 0.4% | May 6, 2025 | SQL injection in TCMAN's GIM v11. This vulnerability allows an unauthenticated attacker to inject an SQL statement to ob... |
| CVE-2025-4346 | CRITICAL | 9.8 | 1.0% | May 6, 2025 | A vulnerability was found in D-Link DIR-600L up to 2.07B01. It has been classified as critical. Affected is the function... |
| CVE-2025-4345 | CRITICAL | 9.8 | 1.0% | May 6, 2025 | A vulnerability was found in D-Link DIR-600L up to 2.07B01 and classified as critical. This issue affects the function f... |
| CVE-2025-4344 | CRITICAL | 9.8 | 1.0% | May 6, 2025 | A vulnerability, which was classified as critical, was found in D-Link DIR-600L up to 2.07B01. This affects the function... |
| CVE-2025-46762 | HIGH | 8.1 | 1.4% | May 6, 2025 | Schema parsing in the parquet-avro module of Apache Parquet 1.15.0 and previous versions allows bad actors to execute ar... |
| CVE-2025-3782 | MEDIUM | 6.4 | 0.2% | May 6, 2025 | The Cision Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘id’ parameter in all version... |
| CVE-2025-2011 | HIGH | 7.5 | 46.7% | May 6, 2025 | The Slider & Popup Builder by Depicter plugin for WordPress is vulnerable to generic SQL Injection via the ‘s' parameter... |
| CVE-2025-4343 | CRITICAL | 9.8 | 1.0% | May 6, 2025 | A vulnerability has been found in D-Link DIR-600L up to 2.07B01 and classified as critical. This vulnerability affects t... |
| CVE-2025-4342 | CRITICAL | 9.8 | 1.0% | May 6, 2025 | A vulnerability, which was classified as critical, has been found in D-Link DIR-600L up to 2.07B01. Affected by this iss... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now