2025 CVE Vulnerabilities

45,146 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-54401HIGH8.8Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b19...
CVE-2025-54400HIGH8.8Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b19...
CVE-2025-54399HIGH8.8Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b19...
CVE-2025-50505HIGH7.8Clash Verge Rev thru 2.2.3 (fixed in 2.3.0) forces the installation of system services(clash-verge-service) by default a...
CVE-2025-48826HIGH8.8A format string vulnerability exists in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially craf...
CVE-2025-40889HIGH8.1A path traversal vulnerability was discovered in the Time Machine functionality due to missing validation of two input p...
CVE-2025-40886HIGH8.8A SQL Injection vulnerability was discovered in the Alert functionality due to improper validation of an input parameter...
CVE-2025-3719HIGH8.1An access control vulnerability was discovered in the CLI functionality due to a specific access restriction not being p...
CVE-2025-11389HIGH8.8A security flaw has been discovered in Tenda AC15 15.03.05.18. Affected is an unknown function of the file /goform/saveA...
CVE-2025-11388HIGH8.8A vulnerability was identified in Tenda AC15 15.03.05.18. This impacts an unknown function of the file /goform/setNotUpg...
CVE-2025-11387HIGH8.8A vulnerability was determined in Tenda AC15 15.03.05.18. This affects an unknown function of the file /goform/fast_sett...
CVE-2025-11386HIGH8.8A vulnerability was found in Tenda AC15 15.03.05.18. The impacted element is an unknown function of the file /goform/Set...
CVE-2025-11385HIGH8.8A vulnerability has been found in Tenda AC20 up to 16.03.08.12. The affected element is the function sscanf of the file ...
CVE-2025-11359HIGH8.8A security vulnerability has been detected in code-projects Simple Banking System 1.0. The affected element is an unknow...
CVE-2025-11358HIGH8.8A weakness has been identified in code-projects Simple Banking System 1.0. Impacted is an unknown function of the file /...
CVE-2025-11357HIGH8.8A security flaw has been discovered in code-projects Simple Banking System 1.0. This issue affects some unknown processi...
CVE-2025-11356HIGH8.8A vulnerability was found in Tenda AC23 up to 16.03.07.52. Affected by this issue is the function sscanf of the file /go...
CVE-2025-11355HIGH8.8A vulnerability has been found in UTT 1250GW up to v2v3.2.2-200710. Affected by this vulnerability is the function strcp...
CVE-2025-11353HIGH8.8A vulnerability was detected in code-projects Online Hotel Reservation System 1.0. This impacts an unknown function of t...
CVE-2025-10162HIGH7.5The Admin and Customer Messages After Order for WooCommerce: OrderConvo WordPress plugin before 14 does not validate the...
CVE-2025-11362HIGH8.7Versions of the package pdfmake from 0.3.0-beta.1 and before 0.3.0-beta.17 are vulnerable to Allocation of Resources Wit...
CVE-2025-11352HIGH8.8A security vulnerability has been detected in code-projects Online Hotel Reservation System 1.0. This affects an unknown...
CVE-2025-11351HIGH8.8A weakness has been identified in code-projects Online Hotel Reservation System 1.0. The impacted element is an unknown ...
CVE-2025-34251HIGH8.6Tesla Telematics Control Unit (TCU) firmware prior to v2025.14 contains an authentication bypass vulnerability. The TCU ...
CVE-2025-6985HIGH7.5The HTMLSectionSplitter class in langchain-text-splitters version 0.3.8 is vulnerable to XML External Entity (XXE) attac...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now