2025 CVE Vulnerabilities
45,153 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-15178 | HIGH | 7.3 | 0.7% | Dec 29, 2025 | A vulnerability was found in Tenda WH450 1.0.0.18. This issue affects some unknown processing of the file /goform/Virtua... |
| CVE-2025-15226 | CRITICAL | 9.8 | 0.5% | Dec 29, 2025 | WMPro developed by Sunnet has a Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload... |
| CVE-2025-15225 | HIGH | 8.7 | 0.5% | Dec 29, 2025 | WMPro developed by Sunnet has an Arbitrary File Read vulnerability, allowing unauthenticated remote attackers to exploit... |
| CVE-2025-15177 | HIGH | 7.3 | 0.7% | Dec 29, 2025 | A vulnerability has been found in Tenda WH450 1.0.0.18. This vulnerability affects unknown code of the file /goform/SetI... |
| CVE-2025-15176 | HIGH | 7.5 | 0.5% | Dec 29, 2025 | A flaw has been found in Open5GS up to 2.7.5. This affects the function decode_ipv6_header/ogs_pfcp_pdr_rule_find_by_pac... |
| CVE-2025-15175 | MEDIUM | 5.4 | 0.2% | Dec 29, 2025 | A vulnerability was detected in SohuTV CacheCloud up to 3.2.0. Affected by this issue is the function doAppList/appComma... |
| CVE-2025-15174 | MEDIUM | 5.4 | 0.2% | Dec 29, 2025 | A security vulnerability has been detected in SohuTV CacheCloud up to 3.2.0. Affected by this vulnerability is the funct... |
| CVE-2025-15070 | MEDIUM | 6.5 | 0.3% | Dec 29, 2025 | Exposure of Sensitive Information to an Unauthorized Actor, Missing Authorization vulnerability in Gmission Web Fax allo... |
| CVE-2025-15069 | CRITICAL | 9.8 | 0.3% | Dec 29, 2025 | Improper Authentication vulnerability in Gmission Web Fax allows Privilege Escalation.This issue affects Web Fax: from 3... |
| CVE-2025-15068 | CRITICAL | 9.8 | 0.4% | Dec 29, 2025 | Missing Authorization vulnerability in Gmission Web Fax allows Authentication Abuse, Session Credential Falsification th... |
| CVE-2025-13958 | MEDIUM | 5.9 | 0.1% | Dec 29, 2025 | The YaMaps for WordPress Plugin WordPress plugin before 0.6.40 does not validate and escape some of its shortcode attrib... |
| CVE-2025-13417 | HIGH | 8.6 | 0.2% | Dec 29, 2025 | The Plugin Organizer WordPress plugin before 10.2.4 does not sanitize and escape a parameter before using it in a SQL st... |
| CVE-2025-15173 | MEDIUM | 5.4 | 0.2% | Dec 29, 2025 | A weakness has been identified in SohuTV CacheCloud up to 3.2.0. Affected is the function advancedAnalysis of the file s... |
| CVE-2025-15172 | MEDIUM | 5.4 | 0.2% | Dec 29, 2025 | A security flaw has been discovered in SohuTV CacheCloud up to 3.2.0. This impacts the function preview of the file src/... |
| CVE-2025-15171 | MEDIUM | 5.4 | 0.2% | Dec 29, 2025 | A vulnerability was identified in SohuTV CacheCloud up to 3.2.0. This affects the function index of the file src/main/ja... |
| CVE-2025-15170 | MEDIUM | 6.1 | 0.3% | Dec 29, 2025 | A security vulnerability has been detected in Advaya Softech GEMS ERP Portal up to 2.1. This affects an unknown part of ... |
| CVE-2025-15169 | HIGH | 7.2 | 0.4% | Dec 29, 2025 | A weakness has been identified in BiggiDroid Simple PHP CMS 1.0. Affected by this issue is some unknown functionality of... |
| CVE-2025-52691 | CRITICAL | 10 | 85.5% | Dec 29, 2025 | Successful exploitation of the vulnerability could allow an unauthenticated attacker to upload arbitrary files to any lo... |
| CVE-2025-15168 | CRITICAL | 9.8 | 0.3% | Dec 29, 2025 | A vulnerability was identified in itsourcecode Student Management System 1.0. Affected is an unknown function of the fil... |
| CVE-2025-15167 | CRITICAL | 9.8 | 0.3% | Dec 29, 2025 | A vulnerability was determined in itsourcecode Online Cake Ordering System 1.0. This impacts an unknown function of the ... |
| CVE-2025-15166 | CRITICAL | 9.8 | 0.3% | Dec 29, 2025 | A vulnerability was found in itsourcecode Online Cake Ordering System 1.0. This affects an unknown function of the file ... |
| CVE-2025-15165 | CRITICAL | 9.8 | 0.3% | Dec 29, 2025 | A vulnerability has been found in itsourcecode Online Cake Ordering System 1.0. The impacted element is an unknown funct... |
| CVE-2025-15164 | HIGH | 7.3 | 0.7% | Dec 29, 2025 | A security flaw has been discovered in Tenda WH450 1.0.0.18. This affects an unknown part of the file /goform/SafeMacFil... |
| CVE-2025-15163 | HIGH | 7.3 | 0.7% | Dec 29, 2025 | A vulnerability was identified in Tenda WH450 1.0.0.18. Affected by this issue is some unknown functionality of the file... |
| CVE-2025-15067 | HIGH | 8.5 | 0.1% | Dec 29, 2025 | Unrestricted Upload of File with Dangerous Type vulnerability in Innorix Innorix WP allows Upload a Web Shell to a Web S... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now