2025 CVE Vulnerabilities
45,295 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-28237 | HIGH | 8.8 | 0.3% | Apr 18, 2025 | An issue in WorldCast Systems ECRESO FM/DAB/TV Transmitter v1.10.1 allows authenticated attackers to escalate privileges... |
| CVE-2025-28236 | CRITICAL | 9.8 | 0.3% | Apr 18, 2025 | Nautel VX Series transmitters VX SW v6.4.0 and below was discovered to contain a remote code execution (RCE) vulnerabili... |
| CVE-2025-28235 | HIGH | 7.5 | 0.3% | Apr 18, 2025 | An information disclosure vulnerability in the component /socket.io/1/websocket/ of Soundcraft Ui Series Model(s) Ui12 a... |
| CVE-2025-28233 | CRITICAL | 9.1 | 0.3% | Apr 18, 2025 | Incorrect access control in BW Broadcast TX600 (14980), TX300 (32990) (31448), TX150, TX1000, TX30, and TX50 Hardware Ve... |
| CVE-2025-28231 | CRITICAL | 9.1 | 0.4% | Apr 18, 2025 | Incorrect access control in Itel Electronics IP Stream v1.7.0.6 allows unauthorized attackers to execute arbitrary comma... |
| CVE-2025-1697 | HIGH | 7.8 | 0.2% | Apr 18, 2025 | A potential security vulnerability has been identified in the HP Touchpoint Analytics Service for certain HP PC products... |
| CVE-2025-28059 | HIGH | 7.5 | 0.7% | Apr 18, 2025 | An access control vulnerability in Nagios Network Analyzer 2024R1.0.3 allows deleted users to retain access to system re... |
| CVE-2025-32796 | MEDIUM | 6.5 | 0.4% | Apr 18, 2025 | Dify is an open-source LLM app development platform. Prior to version 0.6.12, a vulnerability was identified in the DIFY... |
| CVE-2025-32795 | MEDIUM | 6.5 | 0.2% | Apr 18, 2025 | Dify is an open-source LLM app development platform. Prior to version 0.6.12, a vulnerability was identified in the DIFY... |
| CVE-2025-32792 | HIGH | 8.7 | 0.4% | Apr 18, 2025 | SES safely executes third-party JavaScript 'strict' mode programs in compartments that have no excess authority in their... |
| CVE-2025-32442 | HIGH | 7.5 | 0.6% | Apr 18, 2025 | Fastify is a fast and low overhead web framework, for Node.js. In versions 5.0.0 to 5.3.0 as well as version 4.29.0, app... |
| CVE-2025-32434 | CRITICAL | 9.8 | 1.9% | Apr 18, 2025 | PyTorch is a Python package that provides tensor computation with strong GPU acceleration and deep neural networks built... |
| CVE-2025-32389 | MEDIUM | 6.5 | 0.4% | Apr 18, 2025 | NamelessMC is a free, easy to use & powerful website software for Minecraft servers. Prior to version 2.1.4, NamelessMC ... |
| CVE-2025-31120 | MEDIUM | 5.3 | 0.4% | Apr 18, 2025 | NamelessMC is a free, easy to use & powerful website software for Minecraft servers. In version 2.1.4 and prior, an inse... |
| CVE-2025-31118 | HIGH | 7.1 | 0.4% | Apr 18, 2025 | NamelessMC is a free, easy to use & powerful website software for Minecraft servers. In version 2.1.4 and prior, forum q... |
| CVE-2025-30357 | MEDIUM | 6.8 | 0.4% | Apr 18, 2025 | NamelessMC is a free, easy to use & powerful website software for Minecraft servers. In version 2.1.4 and prior, if a ma... |
| CVE-2025-30158 | HIGH | 7.1 | 0.4% | Apr 18, 2025 | NamelessMC is a free, easy to use & powerful website software for Minecraft servers. In version 2.1.4 and prior, the for... |
| CVE-2025-29953 | CRITICAL | 9.8 | 1.6% | Apr 18, 2025 | Deserialization of Untrusted Data vulnerability in Apache ActiveMQ NMS OpenWire Client. This issue affects Apache Activ... |
| CVE-2025-29784 | HIGH | 7.5 | 0.5% | Apr 18, 2025 | NamelessMC is a free, easy to use & powerful website software for Minecraft servers. In version 2.1.4 and prior, the s p... |
| CVE-2025-27599 | MEDIUM | 6.5 | 0.3% | Apr 18, 2025 | Element X Android is a Matrix Android Client provided by element.io. Prior to version 25.04.2, a crafted hyperlink on a ... |
| CVE-2025-3792 | HIGH | 7.2 | 0.5% | Apr 18, 2025 | A vulnerability, which was classified as critical, has been found in SeaCMS up to 13.3. This issue affects some unknown ... |
| CVE-2025-3791 | MEDIUM | 5.3 | 0.2% | Apr 18, 2025 | A vulnerability classified as critical was found in symisc UnQLite up to 957c377cb691a4f617db9aba5cc46d90425071e2. This ... |
| CVE-2025-37838 | HIGH | 7.8 | 0.2% | Apr 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: HSI: ssi_protocol: Fix use after free vulnerability... |
| CVE-2025-2950 | MEDIUM | 5.4 | 0.2% | Apr 18, 2025 | IBM i 7.3, 7.4, 7.5, and 7.5 is vulnerable to a host header injection attack caused by improper neutralization of HTTP h... |
| CVE-2025-29625 | HIGH | 7.8 | 0.2% | Apr 18, 2025 | A buffer overflow vulnerability in Astrolog v7.70 allows attackers to execute arbitrary code or cause a Denial of Servic... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now