2025 CVE Vulnerabilities

45,325 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-11330HIGH8.8A vulnerability has been found in PHPGurukul Beauty Parlour Management System 1.1. The affected element is an unknown fu...
CVE-2025-11328HIGH8.8A vulnerability was detected in Tenda AC18 15.03.05.19(6318). This issue affects some unknown processing of the file /go...
CVE-2025-59734HIGH8.7It is possible to cause an use-after-free write in SANM decoding with a carefully crafted animation using subversion <2....
CVE-2025-59733HIGH8.7When decoding an OpenEXR file that uses DWAA or DWAB compression, there's an implicit assumption that all image channels...
CVE-2025-59732HIGH8.7When decoding an OpenEXR file that uses DWAA or DWAB compression, there's an implicit assumption that the height and wid...
CVE-2025-59728HIGH8.7When calculating the content path in handling of MPEG-DASH manifests, there's an out-of-bounds NUL-byte write one byte p...
CVE-2025-11327HIGH8.8A security vulnerability has been detected in Tenda AC18 15.03.05.19(6318). This vulnerability affects unknown code of t...
CVE-2025-11326HIGH8.8A weakness has been identified in Tenda AC18 15.03.05.19(6318). This affects an unknown part of the file /goform/WifiMac...
CVE-2025-9914HIGH7.5The credentials of the users stored in the system's local database can be used for the log in, making it possible for an...
CVE-2025-58591HIGH7.5A remote, unauthorized attacker can brute force folders and files and read them like private keys or configurations, mak...
CVE-2025-58590HIGH7.5It's possible to brute force folders and files, what can be used by an attacker to steal sensitve information.
CVE-2025-58585HIGH7.5Multiple endpoints with sensitive information do not require authentication, making the application susceptible to infor...
CVE-2025-58584HIGH7.5In the HTTP request, the username and password are transferred directly in the URL as parameters. However, URLs can be s...
CVE-2025-58582HIGH7.5If a user tries to login but the provided credentials are incorrect a log is created. The data for this POST requests is...
CVE-2025-11325HIGH8.8A security flaw has been discovered in Tenda AC18 15.03.05.19(6318). Affected by this issue is some unknown functionalit...
CVE-2025-11324HIGH8.8A vulnerability was identified in Tenda AC18 15.03.05.19(6318). Affected by this vulnerability is an unknown functionali...
CVE-2025-57781HIGH8.4The installers of DENSO TEN drive recorder viewer contain an issue with the DLL search path, which may lead to insecurel...
CVE-2025-11323HIGH8.8A vulnerability was determined in UTT 1250GW up to v2v3.2.2-200710. Affected is the function strcpy of the file /goform/...
CVE-2025-11305HIGH8.8A vulnerability has been found in UTT HiPER 840G up to 3.1.1-190328. Affected by this issue is the function strcpy of th...
CVE-2025-11303HIGH8.8A vulnerability was detected in Belkin F9K1015 1.00.10. Affected is an unknown function of the file /goform/mp. Performi...
CVE-2025-11302HIGH8.8A security vulnerability has been detected in Belkin F9K1015 1.00.10. This impacts an unknown function of the file /gofo...
CVE-2025-11301HIGH8.8A weakness has been identified in Belkin F9K1015 1.00.10. This affects an unknown function of the file /goform/formWlanS...
CVE-2025-11300HIGH8.8A security flaw has been discovered in Belkin F9K1015 1.00.10. The impacted element is an unknown function of the file /...
CVE-2025-11299HIGH8.8A vulnerability was identified in Belkin F9K1015 1.00.10. The affected element is an unknown function of the file /gofor...
CVE-2025-11298HIGH8.8A vulnerability was determined in Belkin F9K1015 1.00.10. Impacted is an unknown function of the file /goform/formSetWan...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now