2025 CVE Vulnerabilities

45,325 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-11297HIGH8.8A vulnerability was found in Belkin F9K1015 1.00.10. This issue affects some unknown processing of the file /goform/form...
CVE-2025-11296HIGH8.8A vulnerability has been found in Belkin F9K1015 1.00.10. This vulnerability affects unknown code of the file /goform/fo...
CVE-2025-11295HIGH8.8A flaw has been found in Belkin F9K1015 1.00.10. This affects an unknown part of the file /goform/formPPPoESetup. This m...
CVE-2025-11294HIGH8.8A vulnerability was detected in Belkin F9K1015 1.00.10. Affected by this issue is some unknown functionality of the file...
CVE-2025-11293HIGH8.8A security vulnerability has been detected in Belkin F9K1015 1.00.10. Affected by this vulnerability is an unknown funct...
CVE-2025-11292HIGH8.8A weakness has been identified in Belkin F9K1015 1.00.10. Affected is an unknown function of the file /goform/formBSSetS...
CVE-2025-11290HIGH8.1A vulnerability was identified in CRMEB up to 5.6.1. This affects an unknown function of the component JWT HMAC Secret H...
CVE-2025-8406HIGH7.8ZenML version 0.83.1 is affected by a path traversal vulnerability in the `PathMaterializer` class. The `load` function ...
CVE-2025-11288HIGH8.8A security flaw has been discovered in CRMEB up to 5.6. This issue affects some unknown processing of the file /adminapi...
CVE-2025-11285HIGH8.8A vulnerability was found in samanhappy MCPHub up to 0.9.10. Affected by this issue is some unknown functionality of the...
CVE-2025-11284HIGH7.3A vulnerability has been found in Zytec Dalian Zhuoyun Technology Central Authentication Service 3. Affected by this vul...
CVE-2025-11277HIGH7.8A weakness has been identified in Open Asset Import Library Assimp 6.0.2. This affects the function Q3DImporter::InternR...
CVE-2025-11275HIGH7.8A vulnerability was identified in Open Asset Import Library Assimp 6.0.2. Affected by this vulnerability is the function...
CVE-2025-39952HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: wilc1000: avoid buffer overflow in WID string...
CVE-2025-39951HIGH7.8In the Linux kernel, the following vulnerability has been resolved: um: virtio_uml: Fix use-after-free after put_device...
CVE-2025-39945HIGH7.8In the Linux kernel, the following vulnerability has been resolved: cnic: Fix use-after-free bugs in cnic_delete_task ...
CVE-2025-39944HIGH7.8In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: Fix use-after-free bugs in otx2_sync_...
CVE-2025-39943HIGH7.1In the Linux kernel, the following vulnerability has been resolved: ksmbd: smbdirect: validate data_offset and data_len...
CVE-2025-39939HIGH7.8In the Linux kernel, the following vulnerability has been resolved: iommu/s390: Fix memory corruption when using identi...
CVE-2025-39935HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ASoC: codec: sma1307: Fix memory corruption in sma1...
CVE-2025-9243HIGH8.1The Cost Calculator Builder plugin for WordPress is vulnerable to unauthorizedmodification of data due to a missing capa...
CVE-2025-10751HIGH7.8MacForge contains an insecure XPC service that allows local, unprivileged users to escalate their privileges to root.Thi...
CVE-2025-61679HIGH7.7Anyquery is an SQL query engine built on top of SQLite. Versions 0.4.3 and below allow attackers who have already gained...
CVE-2025-61673HIGH8.6Karapace is an open-source implementation of Kafka REST and Schema Registry. Versions 5.0.0 and 5.0.1 contain an authent...
CVE-2025-10692HIGH7.1The endpoint POST /api/staff/get-new-tickets concatenates the user-controlled parameter departmentId directly into the S...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now