2025 CVE Vulnerabilities
45,146 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-60004 | HIGH | 8.7 | 0.4% | Oct 9, 2025 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Ne... |
| CVE-2025-11371 | HIGH | 7.5 | 92.1% | Oct 9, 2025 | In the default installation and configuration of Gladinet CentreStack and TrioFox, there is an unauthenticated Local Fil... |
| CVE-2025-61577 | HIGH | 7.5 | 5.3% | Oct 9, 2025 | D-Link DIR-816A2_FWv1.10CNB05 was discovered to contain a stack overflow via the statuscheckpppoeuser parameter in the d... |
| CVE-2025-59976 | HIGH | 7.1 | 0.3% | Oct 9, 2025 | An arbitrary file download vulnerability in the web interface of Juniper Networks Junos Space allows a network-based aut... |
| CVE-2025-59975 | HIGH | 8.7 | 0.4% | Oct 9, 2025 | An Uncontrolled Resource Consumption vulnerability in the HTTP daemon (httpd) of Juniper Networks Junos Space allows an ... |
| CVE-2025-59968 | HIGH | 8.6 | 0.3% | Oct 9, 2025 | A Missing Authorization vulnerability in the Juniper Networks Junos Space Security Director allows an unauthenticated ne... |
| CVE-2025-59967 | HIGH | 7.1 | 0.2% | Oct 9, 2025 | A NULL Pointer Dereference vulnerability in the PFE management daemon (evo-pfemand) of Juniper Networks Junos OS Evolved... |
| CVE-2025-59964 | HIGH | 8.7 | 0.3% | Oct 9, 2025 | A Use of Uninitialized Resource vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on SRX4... |
| CVE-2025-59957 | HIGH | 7 | 0.2% | Oct 9, 2025 | An Origin Validation Error vulnerability in an insufficient protected file of Juniper Networks Junos OS on EX4600 Series... |
| CVE-2025-52961 | HIGH | 7.1 | 0.4% | Oct 9, 2025 | An Uncontrolled Resource Consumption vulnerability in the Connectivity Fault Management (CFM) daemon and the Connectivit... |
| CVE-2025-52960 | HIGH | 8.2 | 0.3% | Oct 9, 2025 | A Buffer Copy without Checking Size of Input vulnerability in the Session Initialization Protocol (SIP) ALG of Juniper... |
| CVE-2025-11198 | HIGH | 8.5 | 0.3% | Oct 9, 2025 | A Missing Authentication for Critical Function vulnerability in Juniper Networks Security Director Policy Enforcer allow... |
| CVE-2025-45095 | HIGH | 7.3 | 0.3% | Oct 9, 2025 | Lavasoft Web Companion (also known as Ad-Aware WebCompanion) versions 8.9.0.1091 through 12.1.3.1037 installs the DCISer... |
| CVE-2025-32919 | HIGH | 7.8 | 0.2% | Oct 9, 2025 | Use of an insecure temporary directory in the Windows License plugin for the Checkmk Windows Agent allows Privilege Esca... |
| CVE-2025-62228 | HIGH | 8.8 | 0.4% | Oct 9, 2025 | Apache Flink CDC version 3.4.0 was vulnerable to a SQL injection via maliciously crafted identifiers eg. crafted databas... |
| CVE-2025-11561 | HIGH | 8.8 | 0.8% | Oct 9, 2025 | A flaw was found in the integration of Active Directory and the System Security Services Daemon (SSSD) on Linux systems.... |
| CVE-2025-39963 | HIGH | 7.8 | 0.1% | Oct 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: io_uring: fix incorrect io_kiocb reference in io_li... |
| CVE-2025-39962 | HIGH | 7.8 | 0.1% | Oct 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix untrusted unsigned subtract Fix the fol... |
| CVE-2025-39960 | HIGH | 7.8 | 0.1% | Oct 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: gpiolib: acpi: initialize acpi_gpio_info struct Si... |
| CVE-2025-10240 | HIGH | 8.8 | 0.3% | Oct 9, 2025 | A vulnerability exists in the Progress Flowmon web application prior to version 12.5.5, whereby a user who clicks a mali... |
| CVE-2025-10239 | HIGH | 7.2 | 0.3% | Oct 9, 2025 | In Flowmon versions prior to 12.5.5, a vulnerability has been identified that allows a user with administrator privilege... |
| CVE-2025-11340 | HIGH | 7.7 | 0.3% | Oct 9, 2025 | GitLab has remediated an issue in GitLab EE affecting all versions from 18.3 to 18.3.4, 18.4 to 18.4.2 that, under certa... |
| CVE-2025-10004 | HIGH | 7.5 | 0.5% | Oct 9, 2025 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.12 to 18.2.8, 18.3 to 18.3.4, and 18.4 to ... |
| CVE-2025-39958 | HIGH | 7.8 | 0.1% | Oct 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: iommu/s390: Make attach succeed when the device was... |
| CVE-2025-39957 | HIGH | 7.8 | 0.1% | Oct 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: increase scan_ies_len for S1G Curr... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now