2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-41110 | HIGH | 8.8 | 0.2% | Oct 22, 2025 | Encrypted WiFi and SSH credentials were found in the Ghost Robotics Vision 60 v0.27.2 APK. This vulnerability allows an ... |
| CVE-2025-41724 | HIGH | 7.5 | 0.4% | Oct 22, 2025 | An unauthenticated remote attacker can crash the wscserver by sending incomplete SOAP requests. The wscserver process wi... |
| CVE-2025-41722 | HIGH | 7.5 | 0.2% | Oct 22, 2025 | The wsc server uses a hard-coded certificate to check the authenticity of SOAP messages. An unauthenticated remote attac... |
| CVE-2025-41719 | HIGH | 8.8 | 0.5% | Oct 22, 2025 | A low privileged remote attacker can corrupt the webserver users storage on the device by setting a sequence of unsuppor... |
| CVE-2025-62775 | HIGH | 8 | 0.3% | Oct 22, 2025 | Mercku M6a devices through 2.1.0 allow root TELNET logins via the web admin password. |
| CVE-2025-62771 | HIGH | 7.5 | 0.1% | Oct 22, 2025 | Mercku M6a devices through 2.1.0 allow password changes via intranet CSRF attacks. |
| CVE-2025-61756 | HIGH | 7.5 | 0.3% | Oct 21, 2025 | Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Servic... |
| CVE-2025-62641 | HIGH | 8.2 | 0.2% | Oct 21, 2025 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a... |
| CVE-2025-62590 | HIGH | 8.2 | 0.2% | Oct 21, 2025 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a... |
| CVE-2025-62589 | HIGH | 8.2 | 0.2% | Oct 21, 2025 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a... |
| CVE-2025-62588 | HIGH | 8.2 | 0.2% | Oct 21, 2025 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a... |
| CVE-2025-62587 | HIGH | 8.2 | 0.2% | Oct 21, 2025 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a... |
| CVE-2025-62290 | HIGH | 7.2 | 0.3% | Oct 21, 2025 | Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: Block Storage). The suppor... |
| CVE-2025-61763 | HIGH | 8.1 | 0.2% | Oct 21, 2025 | Vulnerability in Oracle Essbase (component: Essbase Web Platform). The supported version that is affected is 21.7.3.0.... |
| CVE-2025-61760 | HIGH | 7.5 | 0.1% | Oct 21, 2025 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a... |
| CVE-2025-61752 | HIGH | 7.5 | 0.4% | Oct 21, 2025 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions t... |
| CVE-2025-61751 | HIGH | 8.1 | 0.3% | Oct 21, 2025 | Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Servic... |
| CVE-2025-53066 | HIGH | 7.5 | 0.6% | Oct 21, 2025 | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE... |
| CVE-2025-53050 | HIGH | 7.5 | 0.4% | Oct 21, 2025 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Performance Monitor). S... |
| CVE-2025-53049 | HIGH | 8.4 | 0.3% | Oct 21, 2025 | Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics W... |
| CVE-2025-53043 | HIGH | 8.1 | 0.3% | Oct 21, 2025 | Vulnerability in the Oracle Product Hub product of Oracle E-Business Suite (component: Item Catalog). Supported version... |
| CVE-2025-53036 | HIGH | 8.6 | 0.4% | Oct 21, 2025 | Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Servic... |
| CVE-2025-52079 | HIGH | 8.8 | 0.5% | Oct 21, 2025 | The administrator password setting of the D-Link DIR-820L 1.06B02 is has Improper Access Control and is vulnerable to Un... |
| CVE-2025-60507 | HIGH | 8.9 | 0.3% | Oct 21, 2025 | Cross site scripting vulnerability in Moodle GeniAI plugin (local_geniai) 2.3.6. An authenticated user with Teacher role... |
| CVE-2025-11757 | HIGH | 8.7 | 0.3% | Oct 21, 2025 | The CloudEdge Cloud does not sanitize the MQTT topic input, which could allow an attacker to leverage the MQTT wildcard ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now