2025 CVE Vulnerabilities

45,142 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-61229HIGH7.8An issue in Shirt Pocket's SuperDuper! 3.10 and earlier allow a local attacker to modify the default task template to ex...
CVE-2025-61228HIGH7.8An issue in Shirt Pocket SuperDuper! V.3.10 and before allows a local attacker to execute arbitrary code via the softwar...
CVE-2025-57489HIGH8.1Incorrect access control in the SDAgent component of Shirt Pocket SuperDuper! v3.10 allows attackers to escalate privile...
CVE-2025-55222HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP USB Function functionality of Socomec...
CVE-2025-55221HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP USB Function functionality of Socomec...
CVE-2025-54851HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP functionality of Socomec DIRIS Digiwa...
CVE-2025-54850HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP functionality of Socomec DIRIS Digiwa...
CVE-2025-54849HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP functionality of Socomec DIRIS Digiwa...
CVE-2025-54848HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP functionality of Socomec DIRIS Digiwa...
CVE-2025-26858HIGH7.5A buffer overflow vulnerability exists in the Modbus TCP functionality of Socomec DIRIS Digiware M-70 1.6.9. A specially...
CVE-2025-23417HIGH7.5A denial of service vulnerability exists in the Modbus RTU over TCP functionality of Socomec DIRIS Digiware M-70 1.6.9. ...
CVE-2025-13829HIGH8.6Incorrect Authorization vulnerability in Data Illusion Zumbrunn NGSurvey allows any logged-in user to obtain the private...
CVE-2025-11699HIGH7.1nopCommerce v4.70 and prior, and version 4.80.3, does not invalidate session cookies after logout or session termination...
CVE-2025-10101HIGH7.8Heap buffer out-of-bounds read vulnerability in Avast Antivirus when scanning a malformed Mach-O file may allow Local Ex...
CVE-2025-63529HIGH8.8A session fixation vulnerability exists in Blood Bank Management System 1.0 in login.php that allows an attacker to set ...
CVE-2025-63525HIGH8.8An issue was discovered in Blood Bank Management System 1.0 allowing authenticated attackers to perform actions with esc...
CVE-2025-59789HIGH7.5Uncontrolled recursion in the json2pb component in Apache bRPC (version < 1.15.0) on all platforms allows remote attacke...
CVE-2025-41738HIGH7.5An unauthenticated remote attacker may cause the visualisation server of the CODESYS Control runtime system to access a ...
CVE-2025-41700HIGH7.8An unauthenticated attacker can trick a local user into executing arbitrary code by opening a deliberately manipulated C...
CVE-2025-13816HIGH8.8A security vulnerability has been detected in moxi159753 Mogu Blog v2 up to 5.2. The impacted element is the function Fi...
CVE-2025-61619HIGH7.5In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv...
CVE-2025-61618HIGH7.5In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv...
CVE-2025-61617HIGH7.5In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv...
CVE-2025-61610HIGH7.5In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv...
CVE-2025-61609HIGH7.5In modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now