2025 CVE Vulnerabilities
45,331 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-34165 | HIGH | 8.8 | 0.5% | Aug 30, 2025 | A stack-based buffer overflow vulnerability in NetSupport Manager 14.x versions prior to 14.12.0000 allows a remote, una... |
| CVE-2025-58159 | HIGH | 8.8 | 0.7% | Aug 29, 2025 | WeGIA is a Web manager for charitable institutions. Prior to version 3.4.11, a remote code execution vulnerability was i... |
| CVE-2025-58157 | HIGH | 7.5 | 0.5% | Aug 29, 2025 | gnark is a zero-knowledge proof system framework. In version 0.12.0, there is a potential denial of service vulnerabilit... |
| CVE-2025-57822 | HIGH | 8.2 | 2.3% | Aug 29, 2025 | Next.js is a React framework for building full-stack web applications. Prior to versions 14.2.32 and 15.4.7, when next()... |
| CVE-2025-56577 | HIGH | 8.4 | 0.1% | Aug 29, 2025 | An issue in Evope Core v.1.1.3.20 allows a local attacker to obtain sensitive information via the use of hard coded cryp... |
| CVE-2025-9667 | HIGH | 8.8 | 0.4% | Aug 29, 2025 | A vulnerability was detected in code-projects Simple Grading System 1.0. This affects an unknown part of the file /delet... |
| CVE-2025-9666 | HIGH | 8.8 | 0.3% | Aug 29, 2025 | A security vulnerability has been detected in code-projects Simple Grading System 1.0. Affected by this issue is some un... |
| CVE-2025-9665 | HIGH | 8.8 | 0.4% | Aug 29, 2025 | A weakness has been identified in code-projects Simple Grading System 1.0. Affected by this vulnerability is an unknown ... |
| CVE-2025-9377 | HIGH | 7.2 | 11.7% | Aug 29, 2025 | The authenticated remote command execution (RCE) vulnerability exists in the Parental Control page on TP-Link Archer C7... |
| CVE-2025-58158 | HIGH | 8.8 | 0.5% | Aug 29, 2025 | Harness Open Source is an end-to-end developer platform with Source Control Management, CI/CD Pipelines, Hosted Develope... |
| CVE-2025-52861 | HIGH | 7 | 0.6% | Aug 29, 2025 | A path traversal vulnerability has been reported to affect VioStor. If a remote attacker gains an administrator account,... |
| CVE-2025-44015 | HIGH | 8.4 | 0.9% | Aug 29, 2025 | A command injection vulnerability has been reported to affect HybridDesk Station. If an attacker gains local network acc... |
| CVE-2025-30278 | HIGH | 8.8 | 0.2% | Aug 29, 2025 | An improper certificate validation vulnerability has been reported to affect Qsync Central. If a remote attacker gains a... |
| CVE-2025-30277 | HIGH | 8.8 | 0.2% | Aug 29, 2025 | An improper certificate validation vulnerability has been reported to affect Qsync Central. If a remote attacker gains a... |
| CVE-2025-30273 | HIGH | 8.1 | 0.4% | Aug 29, 2025 | An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If a remote att... |
| CVE-2025-30264 | HIGH | 8.8 | 0.9% | Aug 29, 2025 | A command injection vulnerability has been reported to affect several QNAP operating system versions. If a remote attack... |
| CVE-2025-29894 | HIGH | 8.8 | 0.4% | Aug 29, 2025 | An SQL injection vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, the... |
| CVE-2025-29893 | HIGH | 8.8 | 0.4% | Aug 29, 2025 | An SQL injection vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, the... |
| CVE-2025-29887 | HIGH | 7.2 | 0.9% | Aug 29, 2025 | A command injection vulnerability has been reported to affect QuRouter 2.5.1. If a remote attacker gains an administrato... |
| CVE-2025-9664 | HIGH | 8.8 | 0.4% | Aug 29, 2025 | A security flaw has been discovered in code-projects Simple Grading System 1.0. Affected is an unknown function of the f... |
| CVE-2025-9663 | HIGH | 8.8 | 0.4% | Aug 29, 2025 | A vulnerability was identified in code-projects Simple Grading System 1.0. This impacts an unknown function of the file ... |
| CVE-2025-55763 | HIGH | 7.5 | 1.1% | Aug 29, 2025 | Buffer Overflow in the URI parser of CivetWeb 1.14 through 1.16 (latest) allows a remote attacker to achieve remote code... |
| CVE-2025-5808 | HIGH | 7.3 | 0.4% | Aug 29, 2025 | Improper Input Validation vulnerability in OpenText Self Service Password Reset allows Authentication Bypass.This issue ... |
| CVE-2025-47909 | HIGH | 7.3 | 0.2% | Aug 29, 2025 | Hosts listed in TrustedOrigins implicitly allow requests from the corresponding HTTP origins, allowing network MitMs to ... |
| CVE-2025-53508 | HIGH | 8.6 | 1.3% | Aug 29, 2025 | Multiple products provided by iND Co.,Ltd contain an OS command injection vulnerability. If exploited, an arbitrary OS c... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now