2025 CVE Vulnerabilities
45,153 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-10170 | HIGH | 8.8 | 1.0% | Sep 9, 2025 | A security vulnerability has been detected in UTT 1200GW up to 3.0.0-170831. This affects the function sub_4B48F8 of the... |
| CVE-2025-10169 | HIGH | 8.8 | 6.0% | Sep 9, 2025 | A weakness has been identified in UTT 1200GW up to 3.0.0-170831. Affected by this issue is some unknown functionality of... |
| CVE-2025-7635 | HIGH | 7.7 | 0.3% | Sep 9, 2025 | Unauthenticated Telnet access vulnerability in Calix GigaCenter ONT allows root access.This issue affects GigaCenter ONT... |
| CVE-2025-58762 | HIGH | 7.2 | 0.8% | Sep 9, 2025 | Tautulli is a Python based monitoring and tracking tool for Plex Media Server. In Tautulli v2.15.3 and earlier, an attac... |
| CVE-2025-58761 | HIGH | 7.5 | 0.6% | Sep 9, 2025 | Tautulli is a Python based monitoring and tracking tool for Plex Media Server. The `real_pms_image_proxy` endpoint in Ta... |
| CVE-2025-58760 | HIGH | 7.5 | 0.6% | Sep 9, 2025 | Tautulli is a Python based monitoring and tracking tool for Plex Media Server. The `/image` API endpoint in Tautulli v2.... |
| CVE-2025-58758 | HIGH | 7.3 | 0.2% | Sep 9, 2025 | TinyEnv is an environment variable loader for PHP applications. In versions 1.0.1, 1.0.2, 1.0.9, and 1.0.10, TinyEnv did... |
| CVE-2025-58753 | HIGH | 7.5 | 0.3% | Sep 9, 2025 | Copyparty is a portable file server. In versions prior to 1.19.8, there was a missing permission-check in the shares fea... |
| CVE-2025-58180 | HIGH | 8.8 | 19.3% | Sep 9, 2025 | OctoPrint provides a web interface for controlling consumer 3D printers. OctoPrint versions up until and including 1.11.... |
| CVE-2025-58063 | HIGH | 7.1 | 0.4% | Sep 9, 2025 | CoreDNS is a DNS server that chains plugins. Starting in version 1.2.0 and prior to version 1.12.4, the CoreDNS etcd plu... |
| CVE-2025-54257 | HIGH | 7.8 | 0.3% | Sep 9, 2025 | Acrobat Reader versions 24.001.30254, 20.005.30774, 25.001.20672 and earlier are affected by a Use After Free vulnerabil... |
| CVE-2025-53914 | HIGH | 7 | 0.2% | Sep 9, 2025 | Excessive Privileges vulnerability in Calix GigaCenter ONT (Broadcom SoC modules) allows Privilege Abuse.This issue affe... |
| CVE-2025-53913 | HIGH | 7 | 0.2% | Sep 9, 2025 | Excessive Privileges vulnerability in Calix GigaCenter ONT (Quantenna SoC modules) allows Privilege Abuse.This issue aff... |
| CVE-2025-57278 | HIGH | 8.8 | 0.4% | Sep 9, 2025 | The LB-Link BL-CPE300M AX300 4G LTE Router firmware version BL-R8800_B10_ALK_SL_V01.01.02P42U14_06 does not implement pr... |
| CVE-2025-57060 | HIGH | 7.5 | 0.5% | Sep 9, 2025 | Tenda G3 v3.0br_V15.11.0.17 was discovered to contain a stack overflow in the rules parameter in the dns_forward_rule_st... |
| CVE-2025-55047 | HIGH | 8.4 | 0.1% | Sep 9, 2025 | CWE-798 Use of Hard-coded Credentials |
| CVE-2025-54256 | HIGH | 8.6 | 0.2% | Sep 9, 2025 | Dreamweaver Desktop versions 21.5 and earlier are affected by a Cross-Site Request Forgery (CSRF) vulnerability that cou... |
| CVE-2025-54242 | HIGH | 7.8 | 0.2% | Sep 9, 2025 | Premiere Pro versions 25.3, 24.6.5 and earlier are affected by a Use After Free vulnerability that could result in arbit... |
| CVE-2025-29089 | HIGH | 7.5 | 0.5% | Sep 9, 2025 | An issue in TP-Link AX10 Ax1500 v.1.3.10 Build (20230130) allows a remote attacker to obtain sensitive information |
| CVE-2025-10164 | HIGH | 7.3 | 0.4% | Sep 9, 2025 | A security flaw has been discovered in lmsys sglang 0.4.6. Affected by this vulnerability is the function main of the fi... |
| CVE-2025-57086 | HIGH | 7.5 | 0.4% | Sep 9, 2025 | Tenda W30E V16.01.0.19 (5037) was discovered to contain a stack overflow in the String parameter in the formDeleteMeshNo... |
| CVE-2025-57078 | HIGH | 7.5 | 0.4% | Sep 9, 2025 | Tenda G3 v3.0br_V15.11.0.17 was discovered to contain a stack overflow in the pppoeServerWhiteMacIndex parameter in the ... |
| CVE-2025-10199 | HIGH | 7.8 | 0.2% | Sep 9, 2025 | A local privilege escalation vulnerability exists in Sunshine for Windows (version v2025.122.141614 and likely prior ver... |
| CVE-2025-10198 | HIGH | 7.8 | 0.2% | Sep 9, 2025 | Sunshine for Windows, version v2025.122.141614, contains a DLL search-order hijacking vulnerability, allowing attackers ... |
| CVE-2025-5005 | HIGH | 7.3 | 0.4% | Sep 9, 2025 | A vulnerability was detected in Shanghai Lingdang Information Technology Lingdang CRM up to 8.6.5.4. This affects an unk... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now