2025 CVE Vulnerabilities
45,331 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-2413 | HIGH | 8.6 | 0.3% | Sep 2, 2025 | Improper Restriction of Excessive Authentication Attempts vulnerability in Akinsoft ProKuafor allows Authentication Bypa... |
| CVE-2025-52550 | HIGH | 7.2 | 0.2% | Sep 2, 2025 | E3 Site Supervisor Control (firmware version < 2.31F01) firmware upgrade packages are unsigned. An attacker can forge ma... |
| CVE-2025-52547 | HIGH | 7.5 | 0.3% | Sep 2, 2025 | E3 Site Supervisor Control (firmware version < 2.31F01) MGW contains an API call that lacks input validation. An attacke... |
| CVE-2025-52545 | HIGH | 7.5 | 0.2% | Sep 2, 2025 | E3 Site Supervisor Control (firmware version < 2.31F01) RCI service contains an API call to read users info, which retur... |
| CVE-2025-52544 | HIGH | 7.5 | 0.3% | Sep 2, 2025 | E3 Site Supervisor Control (firmware version < 2.31F01) has a floor plan feature that allows for an unauthenticated atta... |
| CVE-2025-52543 | HIGH | 7.5 | 0.3% | Sep 2, 2025 | E3 Site Supervisor Control (firmware version < 2.31F01) application services (MGW and RCI) uses client side hashing for ... |
| CVE-2025-46810 | HIGH | 8.5 | 0.1% | Sep 2, 2025 | A UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of openSUSE Tumbleweed traefik2 allows the traef... |
| CVE-2025-2414 | HIGH | 8.6 | 0.3% | Sep 2, 2025 | Improper Restriction of Excessive Authentication Attempts vulnerability in Akinsoft OctoCloud allows Authentication Bypa... |
| CVE-2025-9573 | HIGH | 8.6 | 1.1% | Sep 2, 2025 | The ns_backup extension through 13.0.2 for TYPO3 allows command injection. |
| CVE-2025-41690 | HIGH | 7.4 | 0.2% | Sep 2, 2025 | A low-privileged attacker in bluetooth range may be able to access the password of a higher-privilege user (Maintenance)... |
| CVE-2025-9815 | HIGH | 7.8 | 0.3% | Sep 2, 2025 | A weakness has been identified in alaneuler batteryKid up to 2.1 on macOS. The affected element is an unknown function o... |
| CVE-2025-9813 | HIGH | 8.8 | 0.9% | Sep 2, 2025 | A vulnerability was identified in Tenda CH22 1.0.0.1. This issue affects the function formSetSambaConf of the file /gofo... |
| CVE-2025-9812 | HIGH | 8.8 | 0.7% | Sep 2, 2025 | A vulnerability was determined in Tenda CH22 1.0.0.1. This vulnerability affects the function formexeCommand of the file... |
| CVE-2025-9805 | HIGH | 7.5 | 0.3% | Sep 2, 2025 | A vulnerability was found in SimStudioAI sim up to 51b1e97fa22c48d144aef75f8ca31a74ad2cfed2. This issue affects some unk... |
| CVE-2025-58178 | HIGH | 7.8 | 1.1% | Sep 2, 2025 | SonarQube Server and Cloud is a static analysis solution for continuous code quality and security inspection. In version... |
| CVE-2025-57808 | HIGH | 8.1 | 1.5% | Sep 2, 2025 | ESPHome is a system to control microcontrollers remotely through Home Automation systems. In version 2025.8.0 in the ESP... |
| CVE-2025-9801 | HIGH | 8.1 | 0.7% | Sep 1, 2025 | A security vulnerability has been detected in SimStudioAI sim up to ed9b9ad83f1a7c61f4392787fb51837d34eeb0af. This affec... |
| CVE-2025-3586 | HIGH | 7.2 | 0.4% | Sep 1, 2025 | In Liferay Portal 7.4.3.27 through 7.4.3.42, and Liferay DXP 2024.Q1.1 through 2024.Q1.20, 2023.Q4.0 through 2023.Q4.10,... |
| CVE-2025-57799 | HIGH | 8.7 | 1.3% | Sep 1, 2025 | StreamVault is a multi-platform video parsing and downloading tool. Prior to version 250822, after logging into the Stre... |
| CVE-2025-9783 | HIGH | 8.8 | 0.7% | Sep 1, 2025 | A vulnerability was determined in TOTOLINK A702R 4.0.0-B20211108.1423. This issue affects the function sub_418030 of the... |
| CVE-2025-33102 | HIGH | 7.5 | 0.2% | Sep 1, 2025 | IBM Concert Software 1.0.0 through 1.1.0 uses weaker than expected cryptographic algorithms that could allow an attacker... |
| CVE-2025-9782 | HIGH | 8.8 | 0.7% | Sep 1, 2025 | A vulnerability was found in TOTOLINK A702R 4.0.0-B20211108.1423. This vulnerability affects the function sub_4466F8 of ... |
| CVE-2025-9781 | HIGH | 8.8 | 0.7% | Sep 1, 2025 | A vulnerability has been found in TOTOLINK A702R 4.0.0-B20211108.1423. This affects the function sub_4162DC of the file ... |
| CVE-2025-9780 | HIGH | 8.8 | 0.7% | Sep 1, 2025 | A flaw has been found in TOTOLINK A702R 4.0.0-B20211108.1423. Affected by this issue is the function sub_419BE0 of the f... |
| CVE-2025-9779 | HIGH | 8.8 | 0.7% | Sep 1, 2025 | A vulnerability was detected in TOTOLINK A702R 4.0.0-B20211108.1423. Affected by this vulnerability is the function sub_... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now