2025 CVE Vulnerabilities

45,145 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-10151HIGH7.2Improper locking vulnerability in Softing Industrial Automation GmbH gateways allows infected memory and/or resource lea...
CVE-2025-10150HIGH8.7Webserver crash caused by scanning on TCP port 80 in Softing Industrial Automation GmbH gateways and switch.This issue a...
CVE-2025-11735HIGH7.5The HUSKY – Products Filter Professional for WooCommerce plugin for WordPress is vulnerable to blind SQL Injection via t...
CVE-2025-62777HIGH8.8Use of Hard-Coded Credentials issue exists in MZK-DP300N version 1.07 and earlier, which may allow an attacker within th...
CVE-2025-12347HIGH8.8A flaw has been found in MaxSite CMS up to 109. This issue affects some unknown processing of the file application/maxsi...
CVE-2025-12346HIGH8.8A vulnerability was detected in MaxSite CMS up to 109. This vulnerability affects unknown code of the file application/m...
CVE-2025-12342HIGH7.3A flaw has been found in Serdar Bayram Ghost Hot Spot up to 20251014. The affected element is an unknown function of the...
CVE-2025-12341HIGH7.8A vulnerability was detected in ermig1979 AntiDupl up to 2.3.12. Impacted is an unknown function of the file AntiDupl.NE...
CVE-2025-43024HIGH7.5A GUI dialog of an application allows to view what files are in the file system without proper authorization.
CVE-2025-62260HIGH7.5Liferay Portal 7.4.0 through 7.4.3.99, and Liferay DXP 2023.Q3.1 through 2023.Q3.4, 7.4 GA through update 92, 7.3 GA thr...
CVE-2025-12331HIGH7.2A weakness has been identified in Willow CMS up to 1.4.0. Impacted is an unknown function of the file /admin/images/add....
CVE-2025-62725HIGH8.9Docker Compose trusts the path information embedded in remote OCI compose artifacts. When a layer includes the annotatio...
CVE-2025-12326HIGH7.5A vulnerability was found in shawon100 RUET OJ up to 18fa45b0a669fa1098a0b8fc629cf6856369d9a5. This vulnerability affect...
CVE-2025-12322HIGH8.8A flaw has been found in Tenda CH22 1.0.0.1. Affected by this issue is the function fromNatStaticSetting of the file /go...
CVE-2025-61105HIGH7.5FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_link_info ...
CVE-2025-61102HIGH7.5FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_a...
CVE-2025-61101HIGH7.5FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_r...
CVE-2025-59151HIGH8.2Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level advertisement and internet tracker bloc...
CVE-2025-58356HIGH8.3Constellation is the first Confidential Kubernetes. The Constellation CVM image uses LUKS2-encrypted volumes for persist...
CVE-2025-61100HIGH7.5FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the ospf_opaque_lsa_dum...
CVE-2025-61099HIGH7.5FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the opaque_info_detail ...
CVE-2025-36007HIGH7.8IBM QRadar SIEM 7.5 through 7.5.0 Update Pack 13 Independent Fix 02 is vulnerable to privilege escalation due to imprope...
CVE-2025-55752HIGH7.5Relative Path Traversal vulnerability in Apache Tomcat. The fix for bug 60013 introduced a regression where the r...
CVE-2025-12363HIGH7.5Email Password Disclosure.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
CVE-2025-54968HIGH8.8An issue was discovered in BAE SOCET GXP before 4.6.0.2. The SOCET GXP Job Service does not require authentication. In s...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now