2025 CVE Vulnerabilities
45,146 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-0798 | CRITICAL | 9.2 | 6.8% | Jan 29, 2025 | A vulnerability was found in MicroWorld eScan Antivirus 7.0.32 on Linux. It has been rated as critical. This issue affec... |
| CVE-2025-0793 | CRITICAL | 9.8 | 0.6% | Jan 29, 2025 | A vulnerability has been found in ESAFENET CDG V5 and classified as critical. Affected by this vulnerability is an unkno... |
| CVE-2025-0792 | CRITICAL | 9.8 | 0.5% | Jan 29, 2025 | A vulnerability, which was classified as critical, was found in ESAFENET CDG V5. Affected is an unknown function of the ... |
| CVE-2025-0791 | CRITICAL | 9.8 | 0.5% | Jan 29, 2025 | A vulnerability, which was classified as critical, has been found in ESAFENET CDG V5. This issue affects some unknown pr... |
| CVE-2025-24480 | CRITICAL | 9.3 | 0.7% | Jan 28, 2025 | A Remote Code Execution Vulnerability exists in the product and version listed above. The vulnerability is due to lack o... |
| CVE-2025-0781 | CRITICAL | 9.9 | 0.3% | Jan 28, 2025 | An attacker can bypass the sandboxing of Nasal scripts and arbitrarily write to any file path that the user has permissi... |
| CVE-2025-24800 | CRITICAL | 9.3 | 0.3% | Jan 28, 2025 | Hyperbridge is a hyper-scalable coprocessor for verifiable, cross-chain interoperability. A critical vulnerability was d... |
| CVE-2025-23211 | CRITICAL | 9.9 | 3.5% | Jan 28, 2025 | Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists. A Jinja2 SSTI vulne... |
| CVE-2025-23045 | CRITICAL | 9.8 | 0.5% | Jan 28, 2025 | Computer Vision Annotation Tool (CVAT) is an interactive video and image annotation tool for computer vision. An attacke... |
| CVE-2025-24154 | CRITICAL | 9.1 | 1.1% | Jan 27, 2025 | An out-of-bounds write was addressed with improved input validation. This issue is fixed in iOS 18.3 and iPadOS 18.3, ma... |
| CVE-2025-24146 | CRITICAL | 9.8 | 0.8% | Jan 27, 2025 | This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15.3, ma... |
| CVE-2025-24102 | CRITICAL | 9.8 | 0.9% | Jan 27, 2025 | The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.4, macOS Sequoia 15.3, macOS Sonoma 14.... |
| CVE-2025-24093 | CRITICAL | 9.8 | 0.8% | Jan 27, 2025 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma ... |
| CVE-2025-24085 | CRITICAL | 10 | 18.7% | Jan 27, 2025 | A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.3 and iPadOS 18.3, i... |
| CVE-2025-24671 | CRITICAL | 9.8 | 0.5% | Jan 27, 2025 | Deserialization of Untrusted Data vulnerability in Pdfcrowd Dev Team Save as PDF save-as-pdf-by-pdfcrowd allows Object I... |
| CVE-2025-24667 | CRITICAL | 9.3 | 0.4% | Jan 27, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in enituretechnology ... |
| CVE-2025-24665 | CRITICAL | 9.3 | 0.4% | Jan 27, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in enituretechnology ... |
| CVE-2025-24664 | CRITICAL | 9.3 | 0.4% | Jan 27, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in enituretechnology ... |
| CVE-2025-24612 | CRITICAL | 9.3 | 0.4% | Jan 27, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ihor Kit Shipping ... |
| CVE-2025-24601 | CRITICAL | 9.8 | 0.5% | Jan 27, 2025 | Deserialization of Untrusted Data vulnerability in ThimPress FundPress fundpress allows Object Injection.This issue affe... |
| CVE-2025-0357 | CRITICAL | 9.8 | 1.1% | Jan 25, 2025 | The WPBookit plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in th... |
| CVE-2025-24650 | CRITICAL | 9.1 | 0.6% | Jan 24, 2025 | Unrestricted Upload of File with Dangerous Type vulnerability in Themefic Tourfic tourfic allows Upload a Web Shell to a... |
| CVE-2025-24596 | CRITICAL | 9.8 | 0.5% | Jan 24, 2025 | Missing Authorization vulnerability in WC Product Table WooCommerce Product Table Lite wc-product-table-lite allows Expl... |
| CVE-2025-22612 | CRITICAL | 10 | 0.6% | Jan 24, 2025 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0... |
| CVE-2025-22611 | CRITICAL | 9.9 | 0.5% | Jan 24, 2025 | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now