2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-60559 | HIGH | 7.5 | 0.3% | Oct 24, 2025 | D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formS... |
| CVE-2025-60558 | HIGH | 7.5 | 0.3% | Oct 24, 2025 | D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formV... |
| CVE-2025-60557 | HIGH | 7.5 | 0.3% | Oct 24, 2025 | D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formS... |
| CVE-2025-60556 | HIGH | 7.5 | 0.3% | Oct 24, 2025 | D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formS... |
| CVE-2025-60555 | HIGH | 7.5 | 0.3% | Oct 24, 2025 | D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formS... |
| CVE-2025-60552 | HIGH | 7.5 | 0.3% | Oct 24, 2025 | D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formT... |
| CVE-2025-60551 | HIGH | 7.5 | 0.3% | Oct 24, 2025 | D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the next_page parameter in the function for... |
| CVE-2025-60550 | HIGH | 7.5 | 0.3% | Oct 24, 2025 | D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formE... |
| CVE-2025-60549 | HIGH | 7.5 | 0.3% | Oct 24, 2025 | D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formA... |
| CVE-2025-60547 | HIGH | 7.5 | 0.3% | Oct 24, 2025 | D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formS... |
| CVE-2025-60938 | HIGH | 7.5 | 0.6% | Oct 24, 2025 | Emoncms 11.7.3 has a remote code execution vulnerability in the firmware upload feature that allows authenticated users ... |
| CVE-2025-60572 | HIGH | 7.5 | 0.4% | Oct 24, 2025 | D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formA... |
| CVE-2025-60571 | HIGH | 7.5 | 0.4% | Oct 24, 2025 | D-Link DIR600LAx FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSe... |
| CVE-2025-60570 | HIGH | 7.5 | 0.4% | Oct 24, 2025 | D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formL... |
| CVE-2025-60569 | HIGH | 7.5 | 0.5% | Oct 24, 2025 | D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formS... |
| CVE-2025-60568 | HIGH | 7.5 | 0.3% | Oct 24, 2025 | D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formA... |
| CVE-2025-43994 | HIGH | 7.5 | 0.6% | Oct 24, 2025 | Dell Storage Center - Dell Storage Manager, version(s) DSM 20.1.21, contain(s) a Missing Authentication for Critical Fun... |
| CVE-2025-11145 | HIGH | 7.5 | 0.3% | Oct 24, 2025 | Observable Discrepancy, Exposure of Sensitive Information to an Unauthorized Actor, Exposure of Private Personal Informa... |
| CVE-2025-46183 | HIGH | 8.2 | 0.3% | Oct 24, 2025 | The Utils.deserialize function in pgCodeKeeper 10.12.0 processes serialized data from untrusted sources. If an attacker ... |
| CVE-2025-40024 | HIGH | 7.8 | 0.2% | Oct 24, 2025 | In the Linux kernel, the following vulnerability has been resolved: vhost: Take a reference on the task in struct vhost... |
| CVE-2025-40018 | HIGH | 7.8 | 0.2% | Oct 24, 2025 | In the Linux kernel, the following vulnerability has been resolved: ipvs: Defer ip_vs_ftp unregister during netns clean... |
| CVE-2025-10861 | HIGH | 7.5 | 0.4% | Oct 24, 2025 | The Popup builder with Gamification, Multi-Step Popups, Page-Level Targeting, and WooCommerce Triggers plugin for WordPr... |
| CVE-2025-36361 | HIGH | 8.8 | 0.2% | Oct 24, 2025 | IBM App Connect Enterprise 13.0.1.0 through 13.0.4.2, and 12.0.1.0 through 12.0.12.17 could allow an authenticated user ... |
| CVE-2025-10680 | HIGH | 8.8 | 6.9% | Oct 24, 2025 | OpenVPN 2.7_alpha1 through 2.7_beta1 on POSIX based platforms allows a remote authenticated server to inject shell comma... |
| CVE-2025-12028 | HIGH | 8.8 | 0.2% | Oct 24, 2025 | The IndieAuth plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.5... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now