2025 CVE Vulnerabilities
45,152 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-69284 | MEDIUM | 4.3 | 0.2% | Jan 2, 2026 | Plane is an an open-source project management tool. In plane.io, a guest user doesn't have a permission to access https[... |
| CVE-2025-67269 | HIGH | 7.5 | 0.5% | Jan 2, 2026 | An integer underflow vulnerability exists in the `nextstate()` function in `gpsd/packet.c` of gpsd versions prior to com... |
| CVE-2025-67268 | CRITICAL | 9.8 | 0.7% | Jan 2, 2026 | gpsd before commit dc966aa contains a heap-based out-of-bounds write vulnerability in the drivers/driver_nmea2000.c file... |
| CVE-2025-62852 | MEDIUM | 6.5 | 0.3% | Jan 2, 2026 | A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker... |
| CVE-2025-62842 | HIGH | 7.8 | 0.2% | Jan 2, 2026 | An external control of file name or path vulnerability has been reported to affect HBS 3 Hybrid Backup Sync. If an attac... |
| CVE-2025-62840 | LOW | 3.3 | 0.2% | Jan 2, 2026 | A generation of error message containing sensitive information vulnerability has been reported to affect HBS 3 Hybrid Ba... |
| CVE-2025-59389 | CRITICAL | 9.8 | 0.6% | Jan 2, 2026 | An SQL injection vulnerability has been reported to affect Hyper Data Protector. The remote attackers can then exploit t... |
| CVE-2025-59387 | HIGH | 8.1 | 0.3% | Jan 2, 2026 | An SQL injection vulnerability has been reported to affect MARS (Multi-Application Recovery Service). The remote attacke... |
| CVE-2025-59384 | HIGH | 7.5 | 0.4% | Jan 2, 2026 | A path traversal vulnerability has been reported to affect Qfiling. The remote attackers can then exploit the vulnerabil... |
| CVE-2025-59381 | MEDIUM | 4.9 | 0.4% | Jan 2, 2026 | A path traversal vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker ... |
| CVE-2025-59380 | MEDIUM | 4.9 | 0.5% | Jan 2, 2026 | A path traversal vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker ... |
| CVE-2025-53597 | MEDIUM | 6.5 | 0.6% | Jan 2, 2026 | A buffer overflow vulnerability has been reported to affect License Center. If a remote attacker gains an administrator ... |
| CVE-2025-53594 | MEDIUM | 4.4 | 0.1% | Jan 2, 2026 | A path traversal vulnerability has been reported to affect several product versions. If a local attacker gains a user ac... |
| CVE-2025-52871 | MEDIUM | 6.5 | 0.5% | Jan 2, 2026 | An out-of-bounds read vulnerability has been reported to affect License Center. If a remote attacker gains a user accoun... |
| CVE-2025-48721 | MEDIUM | 6.5 | 0.4% | Jan 2, 2026 | A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker... |
| CVE-2025-11837 | CRITICAL | 9.8 | 1.4% | Jan 2, 2026 | An improper control of generation of code vulnerability has been reported to affect Malware Remover. The remote attacker... |
| CVE-2025-65125 | CRITICAL | 9.8 | 0.3% | Jan 2, 2026 | SQL injection in gosaliajainam/online-movie-booking 5.5 in movie_details.php allows attackers to gain sensitive informat... |
| CVE-2025-62857 | MEDIUM | 6.1 | 0.2% | Jan 2, 2026 | A cross-site scripting (XSS) vulnerability has been reported to affect QuMagie. The remote attackers can then exploit th... |
| CVE-2025-57705 | MEDIUM | 4.9 | 0.3% | Jan 2, 2026 | An allocation of resources without limits or throttling vulnerability has been reported to affect several QNAP operating... |
| CVE-2025-54166 | MEDIUM | 4.9 | 0.3% | Jan 2, 2026 | An out-of-bounds read vulnerability has been reported to affect several QNAP operating system versions. If a remote atta... |
| CVE-2025-54165 | MEDIUM | 4.9 | 0.3% | Jan 2, 2026 | An out-of-bounds read vulnerability has been reported to affect several QNAP operating system versions. If a remote atta... |
| CVE-2025-54164 | MEDIUM | 4.9 | 0.3% | Jan 2, 2026 | An out-of-bounds read vulnerability has been reported to affect several QNAP operating system versions. If a remote atta... |
| CVE-2025-53596 | MEDIUM | 4.9 | 0.3% | Jan 2, 2026 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote... |
| CVE-2025-53593 | MEDIUM | 6.5 | 0.3% | Jan 2, 2026 | A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker... |
| CVE-2025-53592 | MEDIUM | 6.5 | 0.3% | Jan 2, 2026 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now