2025 CVE Vulnerabilities

45,146 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-11343HIGH8.6A security vulnerability has been detected in code-projects Student Crud Operation 3.3. Affected is an unknown function ...
CVE-2025-60967HIGH7.3Cross Site Scripting (XSS) vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0076-000 V...
CVE-2025-60963HIGH8.2OS Command Injection vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 Ver 4.0...
CVE-2025-60962HIGH8.2OS Command Injection vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 Ver 4.0...
CVE-2025-60960HIGH8.2OS Command Injection vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 Ver 4.0...
CVE-2025-60959HIGH8.2OS Command Injection vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 Ver 4.0...
CVE-2025-60958HIGH7.3Cross Site Scripting (XSS) vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 V...
CVE-2025-60956HIGH8Cross Site Request Forgery (CSRF) vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-007...
CVE-2025-36355HIGH8.5IBM Security Verify Access and IBM Security Verify Access Docker 10.0.0.0 through 10.0.9.0 and 11.0.0.0 through 11.0.1.0...
CVE-2025-36354HIGH7.3IBM Security Verify Access and IBM Security Verify Access Docker 10.0.0.0 through 10.0.9.0 and 11.0.0.0 through 11.0.1.0...
CVE-2025-11339HIGH8.8A vulnerability has been found in D-Link DI-7100G C1 up to 20250928. This issue affects the function sub_4BD4F8 of the f...
CVE-2025-61687HIGH8.8Flowise is a drag & drop user interface to build a customized large language model flow. A file upload vulnerability in ...
CVE-2025-59152HIGH7.5Litestar is an Asynchronous Server Gateway Interface (ASGI) framework. In version 2.17.0, rate limits can be completely ...
CVE-2025-61197HIGH8.9An issue in Orban Optimod 5950, Optimod 5950HD, Optimod 5750, Optimod 5750HD, Optimod Trio Optimod version 1.0.0.33 - Sy...
CVE-2025-11335HIGH7.2A weakness has been identified in D-Link DI-7100G C1 up to 20250928. Affected by this vulnerability is the function sub_...
CVE-2025-11331HIGH7.2A vulnerability was found in IdeaCMS up to 1.8. The impacted element is an unknown function of the file app/common/logic...
CVE-2025-11330HIGH8.8A vulnerability has been found in PHPGurukul Beauty Parlour Management System 1.1. The affected element is an unknown fu...
CVE-2025-11328HIGH8.8A vulnerability was detected in Tenda AC18 15.03.05.19(6318). This issue affects some unknown processing of the file /go...
CVE-2025-59734HIGH8.7It is possible to cause an use-after-free write in SANM decoding with a carefully crafted animation using subversion <2....
CVE-2025-59733HIGH8.7When decoding an OpenEXR file that uses DWAA or DWAB compression, there's an implicit assumption that all image channels...
CVE-2025-59732HIGH8.7When decoding an OpenEXR file that uses DWAA or DWAB compression, there's an implicit assumption that the height and wid...
CVE-2025-59728HIGH8.7When calculating the content path in handling of MPEG-DASH manifests, there's an out-of-bounds NUL-byte write one byte p...
CVE-2025-11327HIGH8.8A security vulnerability has been detected in Tenda AC18 15.03.05.19(6318). This vulnerability affects unknown code of t...
CVE-2025-11326HIGH8.8A weakness has been identified in Tenda AC18 15.03.05.19(6318). This affects an unknown part of the file /goform/WifiMac...
CVE-2025-9914HIGH7.5The credentials of the users stored in the system's local database can be used for the log in, making it possible for an...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now