2025 CVE Vulnerabilities

45,142 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-61608HIGH7.5In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv...
CVE-2025-61607HIGH7.5In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv...
CVE-2025-3012HIGH7.5In dpc modem, there is a possible system crash due to null pointer dereference. This could lead to remote denial of serv...
CVE-2025-11133HIGH7.5In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv...
CVE-2025-11132HIGH7.5In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv...
CVE-2025-11131HIGH7.5In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv...
CVE-2025-13813HIGH8.1A vulnerability was identified in moxi159753 Mogu Blog v2 up to 5.2. This issue affects some unknown processing of the f...
CVE-2025-13811HIGH7.2A vulnerability was determined in jsnjfz WebStack-Guns 1.0. This vulnerability affects unknown code of the file src/main...
CVE-2025-13810HIGH7.5A vulnerability was found in jsnjfz WebStack-Guns 1.0. This affects the function renderPicture of the file src/main/java...
CVE-2025-13808HIGH8.8A flaw has been found in orionsec orion-ops up to 5925824997a3109651bbde07460958a7be249ed1. Affected by this vulnerabili...
CVE-2025-13803HIGH7.3A vulnerability was identified in MediaCrush 1.0.0/1.0.1. The affected element is an unknown function of the file /media...
CVE-2025-64772HIGH8.4The installer of INZONE Hub 1.0.10.3 to 1.0.17.0 contains an issue with the DLL search path, which may lead to insecurel...
CVE-2025-13792HIGH7.3A security flaw has been discovered in Qualitor up to 8.20.104/8.24.97. Affected by this vulnerability is the function e...
CVE-2025-13790HIGH8.8A vulnerability was determined in Scada-LTS up to 2.7.8.1. This impacts an unknown function. This manipulation causes cr...
CVE-2025-66423HIGH7.1Tryton trytond 6.0 before 7.6.11 does not enforce access rights for the route of the HTML editor. This is fixed in 7.6.1...
CVE-2025-66289HIGH8.8OrangeHRM is a comprehensive human resource management (HRM) system. From version 5.0 to 5.7, the application does not i...
CVE-2025-66225HIGH8.8OrangeHRM is a comprehensive human resource management (HRM) system. From version 5.0 to 5.7, the password reset workflo...
CVE-2025-66224HIGH8.8OrangeHRM is a comprehensive human resource management (HRM) system. From version 5.0 to 5.7, the application contains a...
CVE-2025-66223HIGH8.4OpenObserve is a cloud-native observability platform. Prior to version 0.16.0, organization invitation tokens do not exp...
CVE-2025-66217HIGH7.5AIS-catcher is a multi-platform AIS receiver. Prior to version 0.64, an integer underflow vulnerability exists in the MQ...
CVE-2025-53939HIGH8.8Kiteworks is a private data network (PDN). Prior to version 9.1.0, improper input validation when managing roles of a sh...
CVE-2025-53900HIGH8.8Kiteworks MFT orchestrates end-to-end file transfer workflows. Prior to version 9.1.0, an unfavourable definition of rol...
CVE-2025-53899HIGH7.2Kiteworks MFT orchestrates end-to-end file transfer workflows. Prior to version 9.1.0, the back-end of Kiteworks MFT is ...
CVE-2025-53896HIGH8.1Kiteworks MFT orchestrates end-to-end file transfer workflows. Prior to version 9.1.0, a bug in Kiteworks MFT could caus...
CVE-2025-66201HIGH8.1LibreChat is a ChatGPT clone with additional features. Prior to version 0.8.1-rc2, LibreChat is vulnerable to Server-sid...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now