2025 CVE Vulnerabilities
45,159 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-9356 | HIGH | 8.8 | 0.9% | Aug 22, 2025 | A vulnerability was determined in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.0... |
| CVE-2025-9355 | HIGH | 8.8 | 0.9% | Aug 22, 2025 | A vulnerability was found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002... |
| CVE-2025-52451 | HIGH | 8.5 | 0.2% | Aug 22, 2025 | Improper Input Validation vulnerability in Salesforce Tableau Server on Windows, Linux (tabdoc api - create-data-source-... |
| CVE-2025-26498 | HIGH | 7.3 | 0.3% | Aug 22, 2025 | Unrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (establish-... |
| CVE-2025-26497 | HIGH | 7.3 | 0.3% | Aug 22, 2025 | Unrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (Flow Edito... |
| CVE-2025-6791 | HIGH | 8.8 | 0.3% | Aug 22, 2025 | In the monitoring event logs page, it is possible to alter the http request to insert a reflect payload in the DB. Cause... |
| CVE-2025-55454 | HIGH | 8.8 | 0.6% | Aug 22, 2025 | An authenticated arbitrary file upload vulnerability in the component /msg/sendfiles of DooTask v1.0.51 allows attackers... |
| CVE-2025-54813 | HIGH | 7.5 | 1.2% | Aug 22, 2025 | Improper Output Neutralization for Logs vulnerability in Apache Log4cxx. When using JSONLayout, not all payload bytes a... |
| CVE-2025-4650 | HIGH | 7.2 | 0.4% | Aug 22, 2025 | User with high privileges is able to introduce a SQLi using the Meta Service indicator page. Caused by an Improper Neutr... |
| CVE-2025-55581 | HIGH | 7.3 | 0.2% | Aug 22, 2025 | D-Link DCS-825L firmware version 1.08.01 and possibly prior versions contain an insecure implementation in the mydlink-w... |
| CVE-2025-52287 | HIGH | 8.8 | 0.5% | Aug 22, 2025 | OperaMasks SDK ELite Script Engine v0.5.0 was discovered to contain a deserialization vulnerability. |
| CVE-2025-52085 | HIGH | 8.8 | 0.5% | Aug 22, 2025 | An SQL injection vulnerability in Yoosee application v6.32.4 allows authenticated users to inject arbitrary SQL queries ... |
| CVE-2025-57800 | HIGH | 8.8 | 0.4% | Aug 22, 2025 | Audiobookshelf is an open-source self-hosted audiobook server. In versions 2.6.0 through 2.26.3, the application does no... |
| CVE-2025-57771 | HIGH | 8.1 | 0.7% | Aug 22, 2025 | Roo Code is an AI-powered autonomous coding agent that lives in users' editors. In versions prior to 3.25.5, Roo-Code fa... |
| CVE-2025-55745 | HIGH | 8.8 | 0.6% | Aug 22, 2025 | UnoPim is an open-source Product Information Management (PIM) system built on the Laravel framework. Versions 0.3.0 and ... |
| CVE-2025-55634 | HIGH | 7.5 | 0.5% | Aug 22, 2025 | Incorrect access control in the RTMP server settings of Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firm... |
| CVE-2025-55630 | HIGH | 7.3 | 0.2% | Aug 22, 2025 | A discrepancy in the error message returned by the login function of Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with... |
| CVE-2025-55741 | HIGH | 8.1 | 0.4% | Aug 22, 2025 | UnoPim is an open-source Product Information Management (PIM) system built on the Laravel framework. In versions 0.3.0 a... |
| CVE-2025-55611 | HIGH | 7.5 | 0.4% | Aug 22, 2025 | D-Link DIR-619L 2.06B01 is vulnerable to Buffer Overflow in the formLanguageChange function via the nextPage parameter. |
| CVE-2025-55606 | HIGH | 7.5 | 0.4% | Aug 22, 2025 | Tenda AX3 V16.03.12.10_CN is vulnerable to Buffer Overflow in the fromAdvSetMacMtuWan function via the serverName parame... |
| CVE-2025-55605 | HIGH | 7.5 | 0.4% | Aug 22, 2025 | Tenda AX3 V16.03.12.10_CN is vulnerable to Buffer Overflow in the saveParentControlInfo function via the deviceName para... |
| CVE-2025-55603 | HIGH | 7.5 | 0.4% | Aug 22, 2025 | Tenda AX3 V16.03.12.10_CN is vulnerable to Buffer Overflow in the fromSetSysTime function via the ntpServer parameter. |
| CVE-2025-55602 | HIGH | 7.5 | 0.5% | Aug 22, 2025 | D-Link DIR-619L 2.06B01 is vulnerable to Buffer Overflow in the formSysCmd function via the submit-url parameter. |
| CVE-2025-55599 | HIGH | 7.5 | 0.4% | Aug 22, 2025 | D-Link DIR-619L 2.06B01 is vulnerable to Buffer Overflow in the formWlanSetup function via the parameter f_wds_wepKey. |
| CVE-2025-52094 | HIGH | 7.8 | 0.2% | Aug 22, 2025 | Insecure Permissions vulnerability in PDQ Smart Deploy V.3.0.2040 allows a local attacker to execute arbtirary code via ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now