2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-37096 | CRITICAL | 9.8 | 1.3% | Jun 2, 2025 | A command injection remote code execution vulnerability exists in HPE StoreOnce Software. |
| CVE-2025-37095 | CRITICAL | 9.8 | 1.1% | Jun 2, 2025 | A directory traversal information disclosure vulnerability exists in HPE StoreOnce Software. |
| CVE-2025-5447 | CRITICAL | 9.8 | 41.0% | Jun 2, 2025 | A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002... |
| CVE-2025-37094 | CRITICAL | 9.1 | 0.8% | Jun 2, 2025 | A directory traversal arbitrary file deletion vulnerability exists in HPE StoreOnce Software. |
| CVE-2025-37093 | CRITICAL | 9.8 | 1.0% | Jun 2, 2025 | An authentication bypass vulnerability exists in HPE StoreOnce Software. |
| CVE-2025-37092 | CRITICAL | 9.8 | 1.3% | Jun 2, 2025 | A command injection remote code execution vulnerability exists in HPE StoreOnce Software. |
| CVE-2025-37091 | CRITICAL | 9.8 | 1.2% | Jun 2, 2025 | A command injection remote code execution vulnerability exists in HPE StoreOnce Software. |
| CVE-2025-37090 | CRITICAL | 9.8 | 0.6% | Jun 2, 2025 | A server-side request forgery vulnerability exists in HPE StoreOnce Software. |
| CVE-2025-37089 | CRITICAL | 9.8 | 1.3% | Jun 2, 2025 | A command injection remote code execution vulnerability exists in HPE StoreOnce Software. |
| CVE-2025-5446 | CRITICAL | 9.8 | 21.5% | Jun 2, 2025 | A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002... |
| CVE-2025-5445 | CRITICAL | 9.8 | 21.3% | Jun 2, 2025 | A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002... |
| CVE-2025-5444 | CRITICAL | 9.8 | 21.3% | Jun 2, 2025 | A vulnerability has been found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.0... |
| CVE-2025-5443 | CRITICAL | 9.8 | 21.3% | Jun 2, 2025 | A vulnerability, which was classified as critical, was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE900... |
| CVE-2025-5442 | CRITICAL | 9.8 | 21.5% | Jun 2, 2025 | A vulnerability, which was classified as critical, has been found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and ... |
| CVE-2025-5441 | CRITICAL | 9.8 | 21.5% | Jun 2, 2025 | A vulnerability classified as critical was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.00... |
| CVE-2025-47289 | CRITICAL | 9 | 0.2% | Jun 2, 2025 | CE Phoenix is a free, open-source eCommerce platform. A stored cross-site scripting (XSS) vulnerability was discovered i... |
| CVE-2025-1750 | CRITICAL | 9.8 | 0.7% | Jun 2, 2025 | An SQL injection vulnerability exists in the delete function of DuckDBVectorStore in run-llama/llama_index version v0.12... |
| CVE-2025-5432 | CRITICAL | 9.8 | 0.4% | Jun 2, 2025 | A vulnerability has been found in AssamLook CMS 1.0 and classified as critical. Affected by this vulnerability is an unk... |
| CVE-2025-5430 | CRITICAL | 9.8 | 0.4% | Jun 2, 2025 | A vulnerability, which was classified as critical, has been found in AssamLook CMS 1.0. This issue affects some unknown ... |
| CVE-2025-20674 | CRITICAL | 9.8 | 0.6% | Jun 2, 2025 | In wlan AP driver, there is a possible way to inject arbitrary packet due to a missing permission check. This could lead... |
| CVE-2025-20672 | CRITICAL | 9.8 | 0.5% | Jun 2, 2025 | In Bluetooth driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local ... |
| CVE-2025-5409 | CRITICAL | 9.8 | 0.5% | Jun 1, 2025 | A vulnerability was found in Mist Community Edition up to 4.7.1. It has been classified as critical. This affects the fu... |
| CVE-2025-5408 | CRITICAL | 9.8 | 0.7% | Jun 1, 2025 | A vulnerability was found in WAVLINK QUANTUM D2G, QUANTUM D3G, WL-WN530G3A, WL-WN530HG3, WL-WN532A3 and WL-WN576K1 up to... |
| CVE-2025-5402 | CRITICAL | 9.8 | 0.5% | Jun 1, 2025 | A vulnerability was found in chaitak-gorai Blogbook up to 92f5cf90f8a7e6566b576fe0952e14e1c6736513. It has been rated as... |
| CVE-2025-40908 | CRITICAL | 9.1 | 0.4% | Jun 1, 2025 | YAML-LibYAML prior to 0.903.0 for Perl uses 2-args open, allowing existing files to be modified |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now