2025 CVE Vulnerabilities
45,155 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-57615 | HIGH | 7.5 | 0.3% | Sep 2, 2025 | An issue was discovered in rust-ffmpeg 0.3.0 (after comit 5ac0527) An integer overflow vulnerability in the Vector::new ... |
| CVE-2025-57614 | HIGH | 7.5 | 0.4% | Sep 2, 2025 | An issue was discovered in rust-ffmpeg 0.3.0 (after comit 5ac0527) Integer overflow and invalid input vulnerability in t... |
| CVE-2025-57613 | HIGH | 7.5 | 0.3% | Sep 2, 2025 | An issue was discovered in rust-ffmpeg 0.3.0 (after comit 5ac0527) A null pointer dereference vulnerability in the input... |
| CVE-2025-57612 | HIGH | 7.5 | 0.3% | Sep 2, 2025 | An issue was discovered in rust-ffmpeg 0.3.0 (after comit 5ac0527) Null pointer dereference vulnerability in the name() ... |
| CVE-2025-54599 | HIGH | 7.5 | 0.4% | Sep 2, 2025 | The Bevy Event service through 2025-07-22, as used for eBay Seller Events and other activities, allows account takeover,... |
| CVE-2025-9784 | HIGH | 7.5 | 2.3% | Sep 2, 2025 | A flaw was found in Undertow where malformed client requests can trigger server-side stream resets without triggering ab... |
| CVE-2025-2413 | HIGH | 8.6 | 0.3% | Sep 2, 2025 | Improper Restriction of Excessive Authentication Attempts vulnerability in Akinsoft ProKuafor allows Authentication Bypa... |
| CVE-2025-52550 | HIGH | 7.2 | 0.2% | Sep 2, 2025 | E3 Site Supervisor Control (firmware version < 2.31F01) firmware upgrade packages are unsigned. An attacker can forge ma... |
| CVE-2025-52547 | HIGH | 7.5 | 0.3% | Sep 2, 2025 | E3 Site Supervisor Control (firmware version < 2.31F01) MGW contains an API call that lacks input validation. An attacke... |
| CVE-2025-52545 | HIGH | 7.5 | 0.2% | Sep 2, 2025 | E3 Site Supervisor Control (firmware version < 2.31F01) RCI service contains an API call to read users info, which retur... |
| CVE-2025-52544 | HIGH | 7.5 | 0.3% | Sep 2, 2025 | E3 Site Supervisor Control (firmware version < 2.31F01) has a floor plan feature that allows for an unauthenticated atta... |
| CVE-2025-52543 | HIGH | 7.5 | 0.3% | Sep 2, 2025 | E3 Site Supervisor Control (firmware version < 2.31F01) application services (MGW and RCI) uses client side hashing for ... |
| CVE-2025-46810 | HIGH | 8.5 | 0.1% | Sep 2, 2025 | A UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of openSUSE Tumbleweed traefik2 allows the traef... |
| CVE-2025-2414 | HIGH | 8.6 | 0.3% | Sep 2, 2025 | Improper Restriction of Excessive Authentication Attempts vulnerability in Akinsoft OctoCloud allows Authentication Bypa... |
| CVE-2025-9573 | HIGH | 8.6 | 1.1% | Sep 2, 2025 | The ns_backup extension through 13.0.2 for TYPO3 allows command injection. |
| CVE-2025-41690 | HIGH | 7.4 | 0.2% | Sep 2, 2025 | A low-privileged attacker in bluetooth range may be able to access the password of a higher-privilege user (Maintenance)... |
| CVE-2025-9815 | HIGH | 7.8 | 0.3% | Sep 2, 2025 | A weakness has been identified in alaneuler batteryKid up to 2.1 on macOS. The affected element is an unknown function o... |
| CVE-2025-9813 | HIGH | 8.8 | 0.8% | Sep 2, 2025 | A vulnerability was identified in Tenda CH22 1.0.0.1. This issue affects the function formSetSambaConf of the file /gofo... |
| CVE-2025-9812 | HIGH | 8.8 | 0.6% | Sep 2, 2025 | A vulnerability was determined in Tenda CH22 1.0.0.1. This vulnerability affects the function formexeCommand of the file... |
| CVE-2025-9805 | HIGH | 7.5 | 0.3% | Sep 2, 2025 | A vulnerability was found in SimStudioAI sim up to 51b1e97fa22c48d144aef75f8ca31a74ad2cfed2. This issue affects some unk... |
| CVE-2025-58178 | HIGH | 7.8 | 1.1% | Sep 2, 2025 | SonarQube Server and Cloud is a static analysis solution for continuous code quality and security inspection. In version... |
| CVE-2025-57808 | HIGH | 8.1 | 1.5% | Sep 2, 2025 | ESPHome is a system to control microcontrollers remotely through Home Automation systems. In version 2025.8.0 in the ESP... |
| CVE-2025-9801 | HIGH | 8.1 | 0.7% | Sep 1, 2025 | A security vulnerability has been detected in SimStudioAI sim up to ed9b9ad83f1a7c61f4392787fb51837d34eeb0af. This affec... |
| CVE-2025-3586 | HIGH | 7.2 | 0.4% | Sep 1, 2025 | In Liferay Portal 7.4.3.27 through 7.4.3.42, and Liferay DXP 2024.Q1.1 through 2024.Q1.20, 2023.Q4.0 through 2023.Q4.10,... |
| CVE-2025-57799 | HIGH | 8.7 | 1.3% | Sep 1, 2025 | StreamVault is a multi-platform video parsing and downloading tool. Prior to version 250822, after logging into the Stre... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now