2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-15357 | CRITICAL | 9.8 | 3.8% | Dec 30, 2025 | A vulnerability was found in D-Link DI-7400G+ 19.12.25A1. This affects an unknown function of the file /msp_info.htm?fla... |
| CVE-2025-50343 | CRITICAL | 9.8 | 0.3% | Dec 30, 2025 | An issue was discovered in matio 1.5.28. A heap-based memory corruption can occur in Mat_VarCreateStruct() when the nfie... |
| CVE-2025-15354 | CRITICAL | 9.8 | 0.3% | Dec 30, 2025 | A flaw has been found in itsourcecode Society Management System 1.0. The affected element is an unknown function of the ... |
| CVE-2025-15353 | CRITICAL | 9.8 | 0.3% | Dec 30, 2025 | A vulnerability was detected in itsourcecode Society Management System 1.0. Impacted is the function edit_admin_query of... |
| CVE-2025-15263 | CRITICAL | 9.8 | 0.3% | Dec 30, 2025 | A weakness has been identified in BiggiDroid Simple PHP CMS 1.0. Affected is an unknown function of the file /admin/logi... |
| CVE-2025-56332 | CRITICAL | 9.1 | 0.4% | Dec 30, 2025 | Authentication Bypass in fosrl/pangolin v1.6.2 and before allows attackers to access Pangolin resource via Insecure Defa... |
| CVE-2025-68926 | CRITICAL | 9.8 | 29.0% | Dec 30, 2025 | RustFS is a distributed object storage system built in Rust. In versions prior to 1.0.0-alpha.78, RustFS implements gRPC... |
| CVE-2025-66848 | CRITICAL | 9.8 | 1.0% | Dec 30, 2025 | JD Cloud NAS routers AX1800 (4.3.1.r4308 and earlier), AX3000 (4.3.1.r4318 and earlier), AX6600 (4.5.1.r4533 and earlier... |
| CVE-2025-52835 | CRITICAL | 9.6 | 0.2% | Dec 30, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in ConoHa by GMO WING WordPress Migrator wing-migrator allows Upload a W... |
| CVE-2025-15257 | CRITICAL | 9.8 | 4.4% | Dec 30, 2025 | A security flaw has been discovered in Edimax BR-6208AC 1.02/1.03. Affected by this vulnerability is the function formRo... |
| CVE-2025-15256 | CRITICAL | 9.8 | 3.3% | Dec 30, 2025 | A vulnerability was identified in Edimax BR-6208AC 1.02/1.03. Affected is the function formStaDrvSetup of the file /gofo... |
| CVE-2025-15255 | CRITICAL | 9.8 | 3.9% | Dec 30, 2025 | A vulnerability was determined in Tenda W6-S 1.0.0.4(510). This impacts an unknown function of the file /bin/httpd of th... |
| CVE-2025-15247 | CRITICAL | 9.8 | 0.4% | Dec 30, 2025 | A vulnerability was identified in gmg137 snap7-rs up to 153d3e8c16decd7271e2a5b2e3da4d6f68589424. Affected by this issue... |
| CVE-2025-15359 | CRITICAL | 9.8 | 0.3% | Dec 30, 2025 | DVP-12SE11T - Out-of-bound memory write Vulnerability |
| CVE-2025-15243 | CRITICAL | 9.8 | 0.4% | Dec 30, 2025 | A flaw has been found in code-projects Simple Stock System 1.0. This affects an unknown function of the file /market/log... |
| CVE-2025-15103 | CRITICAL | 9.8 | 0.3% | Dec 30, 2025 | DVP-12SE11T - Authentication Bypass via Partial Password Disclosure |
| CVE-2025-15102 | CRITICAL | 9.8 | 0.3% | Dec 30, 2025 | DVP-12SE11T - Password Protection Bypass |
| CVE-2025-69234 | CRITICAL | 9.1 | 0.3% | Dec 30, 2025 | Whale browser before 4.35.351.12 allows an attacker to escape the iframe sandbox in a sidebar environment. |
| CVE-2025-15212 | CRITICAL | 9.8 | 0.3% | Dec 30, 2025 | A vulnerability was detected in code-projects Refugee Food Management System 1.0. This issue affects some unknown proces... |
| CVE-2025-15211 | CRITICAL | 9.8 | 0.3% | Dec 30, 2025 | A flaw has been found in code-projects Refugee Food Management System 1.0. Impacted is an unknown function of the file /... |
| CVE-2025-15210 | CRITICAL | 9.8 | 0.3% | Dec 30, 2025 | A security vulnerability has been detected in code-projects Refugee Food Management System 1.0. This vulnerability affec... |
| CVE-2025-15209 | CRITICAL | 9.8 | 0.3% | Dec 29, 2025 | A weakness has been identified in code-projects Refugee Food Management System 1.0. This affects an unknown part of the ... |
| CVE-2025-15208 | CRITICAL | 9.8 | 0.3% | Dec 29, 2025 | A security flaw has been discovered in code-projects Refugee Food Management System 1.0. Affected by this issue is some ... |
| CVE-2025-68860 | CRITICAL | 9.8 | 0.5% | Dec 29, 2025 | Authentication Bypass Using an Alternate Path or Channel vulnerability in Mobile Builder Mobile builder mobile-builder a... |
| CVE-2025-68562 | CRITICAL | 9.9 | 0.4% | Dec 29, 2025 | Unrestricted Upload of File with Dangerous Type vulnerability in RomanCode MapSVG allows Upload a Web Shell to a Web Ser... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now