2025 CVE Vulnerabilities

45,331 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-53507HIGH7.1Multiple products provided by iND Co.,Ltd contain an insecure storage of sensitive information vulnerability. If exploit...
CVE-2025-9639HIGH8.7The QbiCRMGateway developed by Ai3 has an Arbitrary File Reading vulnerability, allowing unauthenticated remote attacker...
CVE-2025-9609HIGH8.8A vulnerability was found in Portabilis i-Educar up to 2.10. This vulnerability affects unknown code of the file /educac...
CVE-2025-8858HIGH8.7Clinic Image System developed by Changing has a SQL Injection vulnerability, allowing unauthenticated remote attackers t...
CVE-2025-9608HIGH8.8A vulnerability has been found in Portabilis i-Educar up to 2.10. This affects an unknown part of the file /module/Formu...
CVE-2025-9607HIGH8.8A flaw has been found in Portabilis i-Educar up to 2.10. Affected by this issue is some unknown functionality of the fil...
CVE-2025-9606HIGH8.8A vulnerability was detected in Portabilis i-Educar up to 2.10. Affected by this vulnerability is an unknown functionali...
CVE-2025-58323HIGH7.7NAVER MYBOX Explorer for Windows before 3.0.8.133 allows a local attacker to escalate privileges to NT AUTHORITY\SYSTEM ...
CVE-2025-39247HIGH8.6There is an Access Control Vulnerability in some HikCentral Professional versions. This could allow an unauthenticated u...
CVE-2025-43268HIGH7.8A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.6. A malicious a...
CVE-2025-43187HIGH7.8This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7...
CVE-2025-40927HIGH7.3CGI::Simple versions before 1.282 for Perl has a HTTP response splitting flaw This vulnerability is a confirmed HTTP res...
CVE-2025-58062HIGH7.3LSTM-Kirigaya's openmcp-client is a vscode plugin for mcp developer. Prior to version 0.1.12, when users on a Windows pl...
CVE-2025-9586HIGH8.8A vulnerability was identified in Comfast CF-N1 2.6.0. This vulnerability affects the function wireless_device_dissoc of...
CVE-2025-9585HIGH8.8A vulnerability was determined in Comfast CF-N1 2.6.0. This affects the function wifilith_delete_pic_file of the file /u...
CVE-2025-9584HIGH8.8A vulnerability was found in Comfast CF-N1 2.6.0. Affected by this issue is the function update_interface_png of the fil...
CVE-2025-9583HIGH8.8A vulnerability has been found in Comfast CF-N1 2.6.0. Affected by this vulnerability is the function ping_config of the...
CVE-2025-6203HIGH7.5A malicious user may submit a specially-crafted complex payload that otherwise meets the default request size limit whic...
CVE-2025-9580HIGH8.8A security vulnerability has been detected in LB-LINK BL-X26 1.2.8. This affects an unknown function of the file /goform...
CVE-2025-9579HIGH8.8A weakness has been identified in LB-LINK BL-X26 1.2.8. The impacted element is an unknown function of the file /goform/...
CVE-2025-9577HIGH7A security flaw has been discovered in TOTOLINK X2000R up to 2.0.0. The affected element is an unknown function of the f...
CVE-2025-57215HIGH7.5Tenda AC10 v4.0 firmware v16.03.10.20 was discovered to contain a stack overflow via the function get_parentControl_list...
CVE-2025-9576HIGH7A vulnerability was identified in seeedstudio ReSpeaker LinkIt7688. Impacted is an unknown function of the file /etc/sha...
CVE-2025-9575HIGH8.8A vulnerability was determined in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.0...
CVE-2025-58049HIGH7.5XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In versions fro...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now