2025 CVE Vulnerabilities
45,146 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-11343 | HIGH | 8.6 | 0.4% | Oct 6, 2025 | A security vulnerability has been detected in code-projects Student Crud Operation 3.3. Affected is an unknown function ... |
| CVE-2025-60967 | HIGH | 7.3 | 0.3% | Oct 6, 2025 | Cross Site Scripting (XSS) vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0076-000 V... |
| CVE-2025-60963 | HIGH | 8.2 | 1.0% | Oct 6, 2025 | OS Command Injection vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 Ver 4.0... |
| CVE-2025-60962 | HIGH | 8.2 | 0.8% | Oct 6, 2025 | OS Command Injection vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 Ver 4.0... |
| CVE-2025-60960 | HIGH | 8.2 | 1.0% | Oct 6, 2025 | OS Command Injection vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 Ver 4.0... |
| CVE-2025-60959 | HIGH | 8.2 | 0.8% | Oct 6, 2025 | OS Command Injection vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 Ver 4.0... |
| CVE-2025-60958 | HIGH | 7.3 | 0.3% | Oct 6, 2025 | Cross Site Scripting (XSS) vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 V... |
| CVE-2025-60956 | HIGH | 8 | 0.2% | Oct 6, 2025 | Cross Site Request Forgery (CSRF) vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-007... |
| CVE-2025-36355 | HIGH | 8.5 | 0.2% | Oct 6, 2025 | IBM Security Verify Access and IBM Security Verify Access Docker 10.0.0.0 through 10.0.9.0 and 11.0.0.0 through 11.0.1.0... |
| CVE-2025-36354 | HIGH | 7.3 | 0.3% | Oct 6, 2025 | IBM Security Verify Access and IBM Security Verify Access Docker 10.0.0.0 through 10.0.9.0 and 11.0.0.0 through 11.0.1.0... |
| CVE-2025-11339 | HIGH | 8.8 | 0.9% | Oct 6, 2025 | A vulnerability has been found in D-Link DI-7100G C1 up to 20250928. This issue affects the function sub_4BD4F8 of the f... |
| CVE-2025-61687 | HIGH | 8.8 | 10.2% | Oct 6, 2025 | Flowise is a drag & drop user interface to build a customized large language model flow. A file upload vulnerability in ... |
| CVE-2025-59152 | HIGH | 7.5 | 0.4% | Oct 6, 2025 | Litestar is an Asynchronous Server Gateway Interface (ASGI) framework. In version 2.17.0, rate limits can be completely ... |
| CVE-2025-61197 | HIGH | 8.9 | 0.3% | Oct 6, 2025 | An issue in Orban Optimod 5950, Optimod 5950HD, Optimod 5750, Optimod 5750HD, Optimod Trio Optimod version 1.0.0.33 - Sy... |
| CVE-2025-11335 | HIGH | 7.2 | 4.8% | Oct 6, 2025 | A weakness has been identified in D-Link DI-7100G C1 up to 20250928. Affected by this vulnerability is the function sub_... |
| CVE-2025-11331 | HIGH | 7.2 | 17.6% | Oct 6, 2025 | A vulnerability was found in IdeaCMS up to 1.8. The impacted element is an unknown function of the file app/common/logic... |
| CVE-2025-11330 | HIGH | 8.8 | 0.3% | Oct 6, 2025 | A vulnerability has been found in PHPGurukul Beauty Parlour Management System 1.1. The affected element is an unknown fu... |
| CVE-2025-11328 | HIGH | 8.8 | 1.0% | Oct 6, 2025 | A vulnerability was detected in Tenda AC18 15.03.05.19(6318). This issue affects some unknown processing of the file /go... |
| CVE-2025-59734 | HIGH | 8.7 | 0.2% | Oct 6, 2025 | It is possible to cause an use-after-free write in SANM decoding with a carefully crafted animation using subversion <2.... |
| CVE-2025-59733 | HIGH | 8.7 | 0.2% | Oct 6, 2025 | When decoding an OpenEXR file that uses DWAA or DWAB compression, there's an implicit assumption that all image channels... |
| CVE-2025-59732 | HIGH | 8.7 | 0.2% | Oct 6, 2025 | When decoding an OpenEXR file that uses DWAA or DWAB compression, there's an implicit assumption that the height and wid... |
| CVE-2025-59728 | HIGH | 8.7 | 0.2% | Oct 6, 2025 | When calculating the content path in handling of MPEG-DASH manifests, there's an out-of-bounds NUL-byte write one byte p... |
| CVE-2025-11327 | HIGH | 8.8 | 1.1% | Oct 6, 2025 | A security vulnerability has been detected in Tenda AC18 15.03.05.19(6318). This vulnerability affects unknown code of t... |
| CVE-2025-11326 | HIGH | 8.8 | 1.1% | Oct 6, 2025 | A weakness has been identified in Tenda AC18 15.03.05.19(6318). This affects an unknown part of the file /goform/WifiMac... |
| CVE-2025-9914 | HIGH | 7.5 | 0.3% | Oct 6, 2025 | The credentials of the users stored in the system's local database can be used for the log in, making it possible for an... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now