2025 CVE Vulnerabilities
45,324 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-41738 | HIGH | 7.5 | 0.3% | Dec 1, 2025 | An unauthenticated remote attacker may cause the visualisation server of the CODESYS Control runtime system to access a ... |
| CVE-2025-41700 | HIGH | 7.8 | 0.1% | Dec 1, 2025 | An unauthenticated attacker can trick a local user into executing arbitrary code by opening a deliberately manipulated C... |
| CVE-2025-13816 | HIGH | 8.8 | 0.6% | Dec 1, 2025 | A security vulnerability has been detected in moxi159753 Mogu Blog v2 up to 5.2. The impacted element is the function Fi... |
| CVE-2025-61619 | HIGH | 7.5 | 0.2% | Dec 1, 2025 | In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv... |
| CVE-2025-61618 | HIGH | 7.5 | 0.2% | Dec 1, 2025 | In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv... |
| CVE-2025-61617 | HIGH | 7.5 | 0.2% | Dec 1, 2025 | In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv... |
| CVE-2025-61610 | HIGH | 7.5 | 0.2% | Dec 1, 2025 | In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv... |
| CVE-2025-61609 | HIGH | 7.5 | 0.2% | Dec 1, 2025 | In modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service... |
| CVE-2025-61608 | HIGH | 7.5 | 0.2% | Dec 1, 2025 | In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv... |
| CVE-2025-61607 | HIGH | 7.5 | 0.2% | Dec 1, 2025 | In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv... |
| CVE-2025-3012 | HIGH | 7.5 | 0.3% | Dec 1, 2025 | In dpc modem, there is a possible system crash due to null pointer dereference. This could lead to remote denial of serv... |
| CVE-2025-11133 | HIGH | 7.5 | 0.2% | Dec 1, 2025 | In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv... |
| CVE-2025-11132 | HIGH | 7.5 | 0.2% | Dec 1, 2025 | In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv... |
| CVE-2025-11131 | HIGH | 7.5 | 0.2% | Dec 1, 2025 | In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of serv... |
| CVE-2025-13813 | HIGH | 8.1 | 0.5% | Dec 1, 2025 | A vulnerability was identified in moxi159753 Mogu Blog v2 up to 5.2. This issue affects some unknown processing of the f... |
| CVE-2025-13811 | HIGH | 7.2 | 0.4% | Dec 1, 2025 | A vulnerability was determined in jsnjfz WebStack-Guns 1.0. This vulnerability affects unknown code of the file src/main... |
| CVE-2025-13810 | HIGH | 7.5 | 1.0% | Dec 1, 2025 | A vulnerability was found in jsnjfz WebStack-Guns 1.0. This affects the function renderPicture of the file src/main/java... |
| CVE-2025-13808 | HIGH | 8.8 | 0.5% | Dec 1, 2025 | A flaw has been found in orionsec orion-ops up to 5925824997a3109651bbde07460958a7be249ed1. Affected by this vulnerabili... |
| CVE-2025-13803 | HIGH | 7.3 | 0.3% | Dec 1, 2025 | A vulnerability was identified in MediaCrush 1.0.0/1.0.1. The affected element is an unknown function of the file /media... |
| CVE-2025-64772 | HIGH | 8.4 | 0.2% | Dec 1, 2025 | The installer of INZONE Hub 1.0.10.3 to 1.0.17.0 contains an issue with the DLL search path, which may lead to insecurel... |
| CVE-2025-13792 | HIGH | 7.3 | 0.5% | Nov 30, 2025 | A security flaw has been discovered in Qualitor up to 8.20.104/8.24.97. Affected by this vulnerability is the function e... |
| CVE-2025-13790 | HIGH | 8.8 | 0.3% | Nov 30, 2025 | A vulnerability was determined in Scada-LTS up to 2.7.8.1. This impacts an unknown function. This manipulation causes cr... |
| CVE-2025-66423 | HIGH | 7.1 | 0.2% | Nov 30, 2025 | Tryton trytond 6.0 before 7.6.11 does not enforce access rights for the route of the HTML editor. This is fixed in 7.6.1... |
| CVE-2025-66289 | HIGH | 8.8 | 0.2% | Nov 29, 2025 | OrangeHRM is a comprehensive human resource management (HRM) system. From version 5.0 to 5.7, the application does not i... |
| CVE-2025-66225 | HIGH | 8.8 | 0.2% | Nov 29, 2025 | OrangeHRM is a comprehensive human resource management (HRM) system. From version 5.0 to 5.7, the password reset workflo... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now