2025 CVE Vulnerabilities

45,325 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-62584HIGH7.5Whale browser before 4.33.325.17 allows an attacker to bypass the Same-Origin Policy in a dual-tab environment.
CVE-2025-10706HIGH8.8The Classified Pro theme for WordPress is vulnerable to unauthorized plugin installation due to a missing capability che...
CVE-2025-58778HIGH8.6Multiple versions of RG-EST300 provided by Ruijie Networks provide SSH server functionality. It is not documented in the...
CVE-2025-62580HIGH7.8ASDA-Soft Stack-based Buffer Overflow Vulnerability
CVE-2025-62579HIGH7.8ASDA-Soft Stack-based Buffer Overflow Vulnerability
CVE-2025-43281HIGH7.8The issue was addressed with improved authentication. This issue is fixed in macOS Sequoia 15.6. A local attacker may be...
CVE-2025-11619HIGH8.8Improper certificate validation when connecting to gateways in Devolutions Server 2025.3.2 and earlier allows attackers ...
CVE-2025-62382HIGH7.7Frigate is a network video recorder (NVR) with realtime local object detection for IP cameras. Prior to 0.16.2, Frigate'...
CVE-2025-62381HIGH8.3sveltekit-superforms makes SvelteKit forms a pleasure to use. sveltekit-superforms v2.27.3 and prior are susceptible to ...
CVE-2025-62371HIGH7.4OpenSearch Data Prepper as an open source data collector for observability data. In versions prior to 2.12.2, the OpenSe...
CVE-2025-58133HIGH7.5Authentication bypass in some Zoom Rooms Clients before version 6.5.1 may allow an unauthenticated user to conduct a dis...
CVE-2025-20350HIGH7.5A vulnerability in the web UI of Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800 Series, and Cisco Video Phon...
CVE-2025-10577HIGH8.5Potential vulnerabilities have been identified in the audio package for certain HP PC products using the Sound Research ...
CVE-2025-10576HIGH8.5Potential vulnerabilities have been identified in the audio package for certain HP PC products using the Sound Research ...
CVE-2025-62370HIGH7.5Alloy Core libraries at the root of the Rust Ethereum ecosystem. Prior to 0.8.26 and 1.4.1, an uncaught panic triggered ...
CVE-2025-61990HIGH8.7When using a multi-bladed platform with more than one blade, undisclosed traffic can cause the Traffic Management Microk...
CVE-2025-61935HIGH8.7When a BIG IP Advanced WAF or ASM security policy is configured on a virtual server, undisclosed requests can cause the ...
CVE-2025-58071HIGH8.7When IPsec is configured on the BIG-IP system, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to...
CVE-2025-57780HIGH8.8A vulnerability exists in F5OS-A and F5OS-C system that may allow an authenticated attacker with local access to escalat...
CVE-2025-8486HIGH8.5A potential vulnerability was reported in PC Manager that could allow a local authenticated user to execute code with el...
CVE-2025-10581HIGH8.5A potential DLL hijacking vulnerability was discovered in the Lenovo PC Manager during an internal security assessment t...
CVE-2025-61974HIGH8.7When a client SSL profile is configured on a virtual server, undisclosed requests can cause an increase in memory resour...
CVE-2025-61960HIGH8.7When a per-request policy is configured on a BIG-IP APM portal access virtual server, undisclosed traffic can cause the ...
CVE-2025-61958HIGH8.7A vulnerability exists in the iHealth command that may allow an authenticated attacker with at least a resource administ...
CVE-2025-61955HIGH8.8A vulnerability exists in F5OS-A and F5OS-C systems that may allow an authenticated attacker with local access to escala...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now