2025 CVE Vulnerabilities

45,324 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-63365HIGH7.1SoftSea EPUB File Reader 1.0.0.0 is vulnerable to Directory Traversal. The vulnerability resides in the EPUB file proces...
CVE-2025-34297HIGH8.6KissFFT versions prior to the fix commit 1b083165 contain an integer overflow in kiss_fft_alloc() in kiss_fft.c on platf...
CVE-2025-13836HIGH7.5When reading an HTTP response from a server, if no read amount is specified, the default behavior will be to use Content...
CVE-2025-7007HIGH7.5NULL Pointer Dereference vulnerability in Avast Antivirus on MacOS, Avast Anitvirus on Linux when scanning a malformed W...
CVE-2025-8351HIGH7.8Heap-based Buffer Overflow, Out-of-bounds Read vulnerability in Avira Antivirus engine when scanning a malformed file ma...
CVE-2025-64775HIGH7.5Denial of Service vulnerability in Apache Struts, file leak in multipart request processing causes disk exhaustion. Thi...
CVE-2025-63535HIGH8.8A SQL injection vulnerability exists in the Blood Bank Management System 1.0 within the abs.php component. The applicati...
CVE-2025-63532HIGH8.8A SQL injection vulnerability exists in the Blood Bank Management System 1.0 within the cancel.php component. The applic...
CVE-2025-61229HIGH7.8An issue in Shirt Pocket's SuperDuper! 3.10 and earlier allow a local attacker to modify the default task template to ex...
CVE-2025-61228HIGH7.8An issue in Shirt Pocket SuperDuper! V.3.10 and before allows a local attacker to execute arbitrary code via the softwar...
CVE-2025-57489HIGH8.1Incorrect access control in the SDAgent component of Shirt Pocket SuperDuper! v3.10 allows attackers to escalate privile...
CVE-2025-55222HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP USB Function functionality of Socomec...
CVE-2025-55221HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP USB Function functionality of Socomec...
CVE-2025-54851HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP functionality of Socomec DIRIS Digiwa...
CVE-2025-54850HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP functionality of Socomec DIRIS Digiwa...
CVE-2025-54849HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP functionality of Socomec DIRIS Digiwa...
CVE-2025-54848HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP functionality of Socomec DIRIS Digiwa...
CVE-2025-26858HIGH7.5A buffer overflow vulnerability exists in the Modbus TCP functionality of Socomec DIRIS Digiware M-70 1.6.9. A specially...
CVE-2025-23417HIGH7.5A denial of service vulnerability exists in the Modbus RTU over TCP functionality of Socomec DIRIS Digiware M-70 1.6.9. ...
CVE-2025-13829HIGH8.6Incorrect Authorization vulnerability in Data Illusion Zumbrunn NGSurvey allows any logged-in user to obtain the private...
CVE-2025-11699HIGH7.1nopCommerce v4.70 and prior, and version 4.80.3, does not invalidate session cookies after logout or session termination...
CVE-2025-10101HIGH7.8Heap buffer out-of-bounds read vulnerability in Avast Antivirus when scanning a malformed Mach-O file may allow Local Ex...
CVE-2025-63529HIGH8.8A session fixation vulnerability exists in Blood Bank Management System 1.0 in login.php that allows an attacker to set ...
CVE-2025-63525HIGH8.8An issue was discovered in Blood Bank Management System 1.0 allowing authenticated attackers to perform actions with esc...
CVE-2025-59789HIGH7.5Uncontrolled recursion in the json2pb component in Apache bRPC (version < 1.15.0) on all platforms allows remote attacke...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now