2025 CVE Vulnerabilities

45,146 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-20715HIGH7.8In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es...
CVE-2025-20714HIGH7.8In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es...
CVE-2025-20713HIGH7.8In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es...
CVE-2025-20712HIGH8.8In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (...
CVE-2025-20711HIGH8.8In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (...
CVE-2025-20710HIGH8.8In wlan AP driver, there is a possible out of bounds write due to an integer overflow. This could lead to remote (proxim...
CVE-2025-20709HIGH8.8In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (...
CVE-2025-10228HIGH8.8Session Fixation vulnerability in Rolantis Information Technologies Agentis allows Session Hijacking. This issue affect...
CVE-2025-41718HIGH7.5A cleartext transmission of sensitive information vulnerability in the affected products allows an unauthorized remote a...
CVE-2025-41699HIGH8.8An low privileged remote attacker with an account for the Web-based management can change the system configuration to pe...
CVE-2025-41703HIGH7.5An unauthenticated remote attacker can cause a Denial of Service by turning off the output of the UPS via Modbus command...
CVE-2025-59889HIGH8.6Improper authentication of library files in the Eaton IPP software installer could lead to arbitrary code execution of a...
CVE-2025-62363HIGH7.8yt-grabber-tui is a terminal user interface application for downloading videos. In versions before 1.0-rc, the applicati...
CVE-2025-62360HIGH8.8WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users.Prior to 3.5.1, a SQL Inj...
CVE-2025-62179HIGH8.8WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. Prior to 3.5.1, a SQL In...
CVE-2025-62177HIGH8.8WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. Prior to 3.5.1, a SQL In...
CVE-2025-9713HIGH8.8Path traversal in Ivanti Endpoint Manager before version 2024 SU4 allows a remote unauthenticated attacker to achieve re...
CVE-2025-61688HIGH7.5Omni manages Kubernetes on bare metal, virtual machines, or in a cloud. Prior to 1.1.5 and 1.0.2, Omni might leak sensit...
CVE-2025-59836HIGH7.5Omni manages Kubernetes on bare metal, virtual machines, or in a cloud. Prior to 1.1.5 and 1.0.2, there is a nil pointer...
CVE-2025-11622HIGH7.8Insecure deserialization in Ivanti Endpoint Manager before version 2024 SU4 allows a local authenticated attacker to esc...
CVE-2025-62170HIGH7.5rAthena is an open-source cross-platform MMORPG server. A use-after-free vulnerability exists in the RODEX functionality...
CVE-2025-7707HIGH7.8The llama_index library version 0.12.33 sets the NLTK data directory to a subdirectory of the codebase by default, which...
CVE-2025-11695HIGH7.5When tlsInsecure=False appears in a connection string, certificate validation is disabled. This vulnerability affects M...
CVE-2025-43991HIGH7.1SupportAssist for Home PCs versions 4.8.2 and prior and SupportAssist for Business PCs versions 4.5.3 and prior, contain...
CVE-2025-37729HIGH7.2Improper neutralization of special elements used in a template engine in Elastic Cloud Enterprise (ECE) can lead to a ma...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now