2025 CVE Vulnerabilities
45,146 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-54401 | HIGH | 8.8 | 0.7% | Oct 7, 2025 | Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b19... |
| CVE-2025-54400 | HIGH | 8.8 | 0.7% | Oct 7, 2025 | Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b19... |
| CVE-2025-54399 | HIGH | 8.8 | 0.7% | Oct 7, 2025 | Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b19... |
| CVE-2025-50505 | HIGH | 7.8 | 0.2% | Oct 7, 2025 | Clash Verge Rev thru 2.2.3 (fixed in 2.3.0) forces the installation of system services(clash-verge-service) by default a... |
| CVE-2025-48826 | HIGH | 8.8 | 4.4% | Oct 7, 2025 | A format string vulnerability exists in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially craf... |
| CVE-2025-40889 | HIGH | 8.1 | 0.4% | Oct 7, 2025 | A path traversal vulnerability was discovered in the Time Machine functionality due to missing validation of two input p... |
| CVE-2025-40886 | HIGH | 8.8 | 0.2% | Oct 7, 2025 | A SQL Injection vulnerability was discovered in the Alert functionality due to improper validation of an input parameter... |
| CVE-2025-3719 | HIGH | 8.1 | 0.2% | Oct 7, 2025 | An access control vulnerability was discovered in the CLI functionality due to a specific access restriction not being p... |
| CVE-2025-11389 | HIGH | 8.8 | 0.7% | Oct 7, 2025 | A security flaw has been discovered in Tenda AC15 15.03.05.18. Affected is an unknown function of the file /goform/saveA... |
| CVE-2025-11388 | HIGH | 8.8 | 0.7% | Oct 7, 2025 | A vulnerability was identified in Tenda AC15 15.03.05.18. This impacts an unknown function of the file /goform/setNotUpg... |
| CVE-2025-11387 | HIGH | 8.8 | 0.7% | Oct 7, 2025 | A vulnerability was determined in Tenda AC15 15.03.05.18. This affects an unknown function of the file /goform/fast_sett... |
| CVE-2025-11386 | HIGH | 8.8 | 0.7% | Oct 7, 2025 | A vulnerability was found in Tenda AC15 15.03.05.18. The impacted element is an unknown function of the file /goform/Set... |
| CVE-2025-11385 | HIGH | 8.8 | 0.7% | Oct 7, 2025 | A vulnerability has been found in Tenda AC20 up to 16.03.08.12. The affected element is the function sscanf of the file ... |
| CVE-2025-11359 | HIGH | 8.8 | 0.3% | Oct 7, 2025 | A security vulnerability has been detected in code-projects Simple Banking System 1.0. The affected element is an unknow... |
| CVE-2025-11358 | HIGH | 8.8 | 0.3% | Oct 7, 2025 | A weakness has been identified in code-projects Simple Banking System 1.0. Impacted is an unknown function of the file /... |
| CVE-2025-11357 | HIGH | 8.8 | 0.3% | Oct 7, 2025 | A security flaw has been discovered in code-projects Simple Banking System 1.0. This issue affects some unknown processi... |
| CVE-2025-11356 | HIGH | 8.8 | 0.7% | Oct 7, 2025 | A vulnerability was found in Tenda AC23 up to 16.03.07.52. Affected by this issue is the function sscanf of the file /go... |
| CVE-2025-11355 | HIGH | 8.8 | 0.7% | Oct 7, 2025 | A vulnerability has been found in UTT 1250GW up to v2v3.2.2-200710. Affected by this vulnerability is the function strcp... |
| CVE-2025-11353 | HIGH | 8.8 | 0.3% | Oct 7, 2025 | A vulnerability was detected in code-projects Online Hotel Reservation System 1.0. This impacts an unknown function of t... |
| CVE-2025-10162 | HIGH | 7.5 | 3.7% | Oct 7, 2025 | The Admin and Customer Messages After Order for WooCommerce: OrderConvo WordPress plugin before 14 does not validate the... |
| CVE-2025-11362 | HIGH | 8.7 | 0.3% | Oct 7, 2025 | Versions of the package pdfmake from 0.3.0-beta.1 and before 0.3.0-beta.17 are vulnerable to Allocation of Resources Wit... |
| CVE-2025-11352 | HIGH | 8.8 | 0.3% | Oct 7, 2025 | A security vulnerability has been detected in code-projects Online Hotel Reservation System 1.0. This affects an unknown... |
| CVE-2025-11351 | HIGH | 8.8 | 0.3% | Oct 7, 2025 | A weakness has been identified in code-projects Online Hotel Reservation System 1.0. The impacted element is an unknown ... |
| CVE-2025-34251 | HIGH | 8.6 | 0.5% | Oct 7, 2025 | Tesla Telematics Control Unit (TCU) firmware prior to v2025.14 contains an authentication bypass vulnerability. The TCU ... |
| CVE-2025-6985 | HIGH | 7.5 | 0.6% | Oct 6, 2025 | The HTMLSectionSplitter class in langchain-text-splitters version 0.3.8 is vulnerable to XML External Entity (XXE) attac... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now