2025 CVE Vulnerabilities

45,325 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-4452CRITICAL9.8A vulnerability was found in D-Link DIR-619L 2.04B04 and classified as critical. Affected by this issue is the function ...
CVE-2025-4451CRITICAL9.8A vulnerability has been found in D-Link DIR-619L 2.04B04 and classified as critical. Affected by this vulnerability is ...
CVE-2025-4450CRITICAL9.8A vulnerability, which was classified as critical, was found in D-Link DIR-619L 2.04B04. Affected is the function formSe...
CVE-2025-4449CRITICAL9.8A vulnerability, which was classified as critical, has been found in D-Link DIR-619L 2.04B04. This issue affects the fun...
CVE-2025-4448CRITICAL9.8A vulnerability classified as critical was found in D-Link DIR-619L 2.04B04. This vulnerability affects the function for...
CVE-2025-4445CRITICAL9.8A vulnerability classified as critical has been found in D-Link DIR-605L 2.13B01. Affected is the function wake_on_lan. ...
CVE-2025-4443CRITICAL9.8A vulnerability was found in D-Link DIR-605L 2.13B01. It has been rated as critical. This issue affects the function sub...
CVE-2025-4442CRITICAL9.8A vulnerability was found in D-Link DIR-605L 2.13B01. It has been declared as critical. This vulnerability affects the f...
CVE-2025-4441CRITICAL9.8A vulnerability was found in D-Link DIR-605L 2.13B01. It has been classified as critical. This affects the function form...
CVE-2025-47732CRITICAL9.8Deserialization of untrusted data in Microsoft Dataverse allows an authorized attacker to execute code over a network.
CVE-2025-29972CRITICAL9.8Server-side request forgery (ssrf) in Azure Storage Resource Provider allows an authorized attacker to perform spoofing ...
CVE-2025-29813CRITICAL9.8Authentication bypass by assumed-immutable data in Azure DevOps allows an unauthorized attacker to elevate privileges ov...
CVE-2025-27720CRITICAL9.3The Pixmeo Osirix MD Web Portal sends credential information without encryption, which could allow an attacker to steal ...
CVE-2025-45798CRITICAL9.8A command execution vulnerability exists in the TOTOLINK A950RG V4.1.2cu.5204_B20210112. The vulnerability is located in...
CVE-2025-45797CRITICAL9.8TOTOlink A950RG V4.1.2cu.5204_B20210112 contains a buffer overflow vulnerability. The vulnerability arises from the impr...
CVE-2025-45790CRITICAL9.8TOTOLINK A3100R V5.9c.1527 is vulnerable to Buffer Overflow via the priority parameter in the setMacQos interface of /li...
CVE-2025-45789CRITICAL9.8TOTOLINK A3100R V5.9c.1527 is vulnerable to buffer overflow via the urlKeyword parameter in setParentalRules.
CVE-2025-45788CRITICAL9.8TOTOLINK A3100R V5.9c.1527 is vulnerable to Buffer Overflow via the comment parameter in setMacFilterRules.
CVE-2025-45787CRITICAL9.8TOTOLINK A3100R V5.9c.1527 is vulnerable to Buffer Overflow viathe comment parameter in setIpPortFilterRules.
CVE-2025-0505CRITICAL10On Arista CloudVision systems (virtual or physical on-premise deployments), Zero Touch Provisioning can be used to gain ...
CVE-2025-26845CRITICAL9.8An Eval Injection issue was discovered in Znuny through 7.1.3. A user with write access to the configuration file can us...
CVE-2025-45841CRITICAL9.8TOTOLINK NR1800X V9.1.0u.6681_B20230703 was discovered to contain an authenticated stack overflow via the text parameter...
CVE-2025-26844CRITICAL9.8An issue was discovered in Znuny through 7.1.3. A cookie is set without the HttpOnly flag.
CVE-2025-36546CRITICAL9.2On an F5OS system, if the root user had previously configured the system to allow login via SSH key-based authentication...
CVE-2025-3476CRITICAL9.4Incorrect Authorization vulnerability in OpenText™ Operations Bridge Manager. The vulnerability could allows privilege e...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now