2025 CVE Vulnerabilities

45,146 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-60004HIGH8.7An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Ne...
CVE-2025-11371HIGH7.5In the default installation and configuration of Gladinet CentreStack and TrioFox, there is an unauthenticated Local Fil...
CVE-2025-61577HIGH7.5D-Link DIR-816A2_FWv1.10CNB05 was discovered to contain a stack overflow via the statuscheckpppoeuser parameter in the d...
CVE-2025-59976HIGH7.1An arbitrary file download vulnerability in the web interface of Juniper Networks Junos Space allows a network-based aut...
CVE-2025-59975HIGH8.7An Uncontrolled Resource Consumption vulnerability in the HTTP daemon (httpd) of Juniper Networks Junos Space allows an ...
CVE-2025-59968HIGH8.6A Missing Authorization vulnerability in the Juniper Networks Junos Space Security Director allows an unauthenticated ne...
CVE-2025-59967HIGH7.1A NULL Pointer Dereference vulnerability in the PFE management daemon (evo-pfemand) of Juniper Networks Junos OS Evolved...
CVE-2025-59964HIGH8.7A Use of Uninitialized Resource vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on SRX4...
CVE-2025-59957HIGH7An Origin Validation Error vulnerability in an insufficient protected file of Juniper Networks Junos OS on EX4600 Series...
CVE-2025-52961HIGH7.1An Uncontrolled Resource Consumption vulnerability in the Connectivity Fault Management (CFM) daemon and the Connectivit...
CVE-2025-52960HIGH8.2A Buffer Copy without Checking Size of Input vulnerability in the Session Initialization Protocol (SIP) ALG of Juniper...
CVE-2025-11198HIGH8.5A Missing Authentication for Critical Function vulnerability in Juniper Networks Security Director Policy Enforcer allow...
CVE-2025-45095HIGH7.3Lavasoft Web Companion (also known as Ad-Aware WebCompanion) versions 8.9.0.1091 through 12.1.3.1037 installs the DCISer...
CVE-2025-32919HIGH7.8Use of an insecure temporary directory in the Windows License plugin for the Checkmk Windows Agent allows Privilege Esca...
CVE-2025-62228HIGH8.8Apache Flink CDC version 3.4.0 was vulnerable to a SQL injection via maliciously crafted identifiers eg. crafted databas...
CVE-2025-11561HIGH8.8A flaw was found in the integration of Active Directory and the System Security Services Daemon (SSSD) on Linux systems....
CVE-2025-39963HIGH7.8In the Linux kernel, the following vulnerability has been resolved: io_uring: fix incorrect io_kiocb reference in io_li...
CVE-2025-39962HIGH7.8In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix untrusted unsigned subtract Fix the fol...
CVE-2025-39960HIGH7.8In the Linux kernel, the following vulnerability has been resolved: gpiolib: acpi: initialize acpi_gpio_info struct Si...
CVE-2025-10240HIGH8.8A vulnerability exists in the Progress Flowmon web application prior to version 12.5.5, whereby a user who clicks a mali...
CVE-2025-10239HIGH7.2In Flowmon versions prior to 12.5.5, a vulnerability has been identified that allows a user with administrator privilege...
CVE-2025-11340HIGH7.7GitLab has remediated an issue in GitLab EE affecting all versions from 18.3 to 18.3.4, 18.4 to 18.4.2 that, under certa...
CVE-2025-10004HIGH7.5GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.12 to 18.2.8, 18.3 to 18.3.4, and 18.4 to ...
CVE-2025-39958HIGH7.8In the Linux kernel, the following vulnerability has been resolved: iommu/s390: Make attach succeed when the device was...
CVE-2025-39957HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: increase scan_ies_len for S1G Curr...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now