2025 CVE Vulnerabilities

45,325 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-11356HIGH8.8A vulnerability was found in Tenda AC23 up to 16.03.07.52. Affected by this issue is the function sscanf of the file /go...
CVE-2025-11355HIGH8.8A vulnerability has been found in UTT 1250GW up to v2v3.2.2-200710. Affected by this vulnerability is the function strcp...
CVE-2025-11353HIGH8.8A vulnerability was detected in code-projects Online Hotel Reservation System 1.0. This impacts an unknown function of t...
CVE-2025-10162HIGH7.5The Admin and Customer Messages After Order for WooCommerce: OrderConvo WordPress plugin before 14 does not validate the...
CVE-2025-11362HIGH8.7Versions of the package pdfmake from 0.3.0-beta.1 and before 0.3.0-beta.17 are vulnerable to Allocation of Resources Wit...
CVE-2025-11352HIGH8.8A security vulnerability has been detected in code-projects Online Hotel Reservation System 1.0. This affects an unknown...
CVE-2025-11351HIGH8.8A weakness has been identified in code-projects Online Hotel Reservation System 1.0. The impacted element is an unknown ...
CVE-2025-34251HIGH8.6Tesla Telematics Control Unit (TCU) firmware prior to v2025.14 contains an authentication bypass vulnerability. The TCU ...
CVE-2025-6985HIGH7.5The HTMLSectionSplitter class in langchain-text-splitters version 0.3.8 is vulnerable to XML External Entity (XXE) attac...
CVE-2025-11343HIGH8.6A security vulnerability has been detected in code-projects Student Crud Operation 3.3. Affected is an unknown function ...
CVE-2025-60967HIGH7.3Cross Site Scripting (XSS) vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0076-000 V...
CVE-2025-60963HIGH8.2OS Command Injection vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 Ver 4.0...
CVE-2025-60962HIGH8.2OS Command Injection vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 Ver 4.0...
CVE-2025-60960HIGH8.2OS Command Injection vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 Ver 4.0...
CVE-2025-60959HIGH8.2OS Command Injection vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 Ver 4.0...
CVE-2025-60958HIGH7.3Cross Site Scripting (XSS) vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 V...
CVE-2025-60956HIGH8Cross Site Request Forgery (CSRF) vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-007...
CVE-2025-36355HIGH8.5IBM Security Verify Access and IBM Security Verify Access Docker 10.0.0.0 through 10.0.9.0 and 11.0.0.0 through 11.0.1.0...
CVE-2025-36354HIGH7.3IBM Security Verify Access and IBM Security Verify Access Docker 10.0.0.0 through 10.0.9.0 and 11.0.0.0 through 11.0.1.0...
CVE-2025-11339HIGH8.8A vulnerability has been found in D-Link DI-7100G C1 up to 20250928. This issue affects the function sub_4BD4F8 of the f...
CVE-2025-61687HIGH8.8Flowise is a drag & drop user interface to build a customized large language model flow. A file upload vulnerability in ...
CVE-2025-59152HIGH7.5Litestar is an Asynchronous Server Gateway Interface (ASGI) framework. In version 2.17.0, rate limits can be completely ...
CVE-2025-61197HIGH8.9An issue in Orban Optimod 5950, Optimod 5950HD, Optimod 5750, Optimod 5750HD, Optimod Trio Optimod version 1.0.0.33 - Sy...
CVE-2025-11335HIGH7.2A weakness has been identified in D-Link DI-7100G C1 up to 20250928. Affected by this vulnerability is the function sub_...
CVE-2025-11331HIGH7.2A vulnerability was found in IdeaCMS up to 1.8. The impacted element is an unknown function of the file app/common/logic...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now