2025 CVE Vulnerabilities
45,158 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-29893 | HIGH | 8.8 | 0.4% | Aug 29, 2025 | An SQL injection vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, the... |
| CVE-2025-29887 | HIGH | 7.2 | 0.9% | Aug 29, 2025 | A command injection vulnerability has been reported to affect QuRouter 2.5.1. If a remote attacker gains an administrato... |
| CVE-2025-9664 | HIGH | 8.8 | 0.4% | Aug 29, 2025 | A security flaw has been discovered in code-projects Simple Grading System 1.0. Affected is an unknown function of the f... |
| CVE-2025-9663 | HIGH | 8.8 | 0.4% | Aug 29, 2025 | A vulnerability was identified in code-projects Simple Grading System 1.0. This impacts an unknown function of the file ... |
| CVE-2025-55763 | HIGH | 7.5 | 1.1% | Aug 29, 2025 | Buffer Overflow in the URI parser of CivetWeb 1.14 through 1.16 (latest) allows a remote attacker to achieve remote code... |
| CVE-2025-5808 | HIGH | 7.3 | 0.4% | Aug 29, 2025 | Improper Input Validation vulnerability in OpenText Self Service Password Reset allows Authentication Bypass.This issue ... |
| CVE-2025-47909 | HIGH | 7.3 | 0.2% | Aug 29, 2025 | Hosts listed in TrustedOrigins implicitly allow requests from the corresponding HTTP origins, allowing network MitMs to ... |
| CVE-2025-53508 | HIGH | 8.6 | 1.3% | Aug 29, 2025 | Multiple products provided by iND Co.,Ltd contain an OS command injection vulnerability. If exploited, an arbitrary OS c... |
| CVE-2025-53507 | HIGH | 7.1 | 0.3% | Aug 29, 2025 | Multiple products provided by iND Co.,Ltd contain an insecure storage of sensitive information vulnerability. If exploit... |
| CVE-2025-9639 | HIGH | 8.7 | 0.5% | Aug 29, 2025 | The QbiCRMGateway developed by Ai3 has an Arbitrary File Reading vulnerability, allowing unauthenticated remote attacker... |
| CVE-2025-9609 | HIGH | 8.8 | 0.3% | Aug 29, 2025 | A vulnerability was found in Portabilis i-Educar up to 2.10. This vulnerability affects unknown code of the file /educac... |
| CVE-2025-8858 | HIGH | 8.7 | 0.4% | Aug 29, 2025 | Clinic Image System developed by Changing has a SQL Injection vulnerability, allowing unauthenticated remote attackers t... |
| CVE-2025-9608 | HIGH | 8.8 | 0.4% | Aug 29, 2025 | A vulnerability has been found in Portabilis i-Educar up to 2.10. This affects an unknown part of the file /module/Formu... |
| CVE-2025-9607 | HIGH | 8.8 | 0.4% | Aug 29, 2025 | A flaw has been found in Portabilis i-Educar up to 2.10. Affected by this issue is some unknown functionality of the fil... |
| CVE-2025-9606 | HIGH | 8.8 | 0.3% | Aug 29, 2025 | A vulnerability was detected in Portabilis i-Educar up to 2.10. Affected by this vulnerability is an unknown functionali... |
| CVE-2025-58323 | HIGH | 7.7 | 0.1% | Aug 29, 2025 | NAVER MYBOX Explorer for Windows before 3.0.8.133 allows a local attacker to escalate privileges to NT AUTHORITY\SYSTEM ... |
| CVE-2025-39247 | HIGH | 8.6 | 0.5% | Aug 29, 2025 | There is an Access Control Vulnerability in some HikCentral Professional versions. This could allow an unauthenticated u... |
| CVE-2025-43268 | HIGH | 7.8 | 0.2% | Aug 29, 2025 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.6. A malicious a... |
| CVE-2025-43187 | HIGH | 7.8 | 0.2% | Aug 29, 2025 | This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7... |
| CVE-2025-40927 | HIGH | 7.3 | 0.4% | Aug 29, 2025 | CGI::Simple versions before 1.282 for Perl has a HTTP response splitting flaw This vulnerability is a confirmed HTTP res... |
| CVE-2025-58062 | HIGH | 7.3 | 1.3% | Aug 28, 2025 | LSTM-Kirigaya's openmcp-client is a vscode plugin for mcp developer. Prior to version 0.1.12, when users on a Windows pl... |
| CVE-2025-9586 | HIGH | 8.8 | 8.3% | Aug 28, 2025 | A vulnerability was identified in Comfast CF-N1 2.6.0. This vulnerability affects the function wireless_device_dissoc of... |
| CVE-2025-9585 | HIGH | 8.8 | 5.1% | Aug 28, 2025 | A vulnerability was determined in Comfast CF-N1 2.6.0. This affects the function wifilith_delete_pic_file of the file /u... |
| CVE-2025-9584 | HIGH | 8.8 | 8.3% | Aug 28, 2025 | A vulnerability was found in Comfast CF-N1 2.6.0. Affected by this issue is the function update_interface_png of the fil... |
| CVE-2025-9583 | HIGH | 8.8 | 5.1% | Aug 28, 2025 | A vulnerability has been found in Comfast CF-N1 2.6.0. Affected by this vulnerability is the function ping_config of the... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now