2025 CVE Vulnerabilities

45,168 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-47206HIGH8.1An out-of-bounds write vulnerability has been reported to affect File Station 5. If a remote attacker gains a user accou...
CVE-2025-5296HIGH7.3CWE-59: Improper Link Resolution Before File Access ('Link Following') vulnerability exists that could cause arbitrary ...
CVE-2025-6625HIGH8.7CWE-20: Improper Input Validation vulnerability exists that could cause a Denial Of Service when specific crafted FTP co...
CVE-2025-31713HIGH8.4In engineer mode service, there is a possible command injection due to improper input validation. This could lead to loc...
CVE-2025-7342HIGH7.5A security issue was discovered in the Kubernetes Image Builder where default credentials are enabled during the Windows...
CVE-2025-9091HIGH7.8A security flaw has been discovered in Tenda AC20 16.03.08.12. Affected by this vulnerability is an unknown functionalit...
CVE-2025-8142HIGH8.8The Soledad theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 8.6.7 via th...
CVE-2025-8105HIGH7.3The The Soledad theme for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including,...
CVE-2025-38552HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mptcp: plug races between subflow fail and subflow ...
CVE-2025-38550HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: Delay put pmc->idev in mld_del_delrec(...
CVE-2025-38548HIGH7.8In the Linux kernel, the following vulnerability has been resolved: hwmon: (corsair-cpro) Validate the size of the rece...
CVE-2025-38538HIGH7.8In the Linux kernel, the following vulnerability has been resolved: dmaengine: nbpfaxi: Fix memory corruption in probe(...
CVE-2025-38536HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net: airoha: fix potential use-after-free in airoha...
CVE-2025-38535HIGH7.8In the Linux kernel, the following vulnerability has been resolved: phy: tegra: xusb: Fix unbalanced regulator disable ...
CVE-2025-38533HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net: libwx: fix the using of Rx buffer DMA The wx_...
CVE-2025-38530HIGH7.1In the Linux kernel, the following vulnerability has been resolved: comedi: pcl812: Fix bit shift out of bounds When c...
CVE-2025-38529HIGH7.1In the Linux kernel, the following vulnerability has been resolved: comedi: aio_iiro_16: Fix bit shift out of bounds W...
CVE-2025-38527HIGH7.8In the Linux kernel, the following vulnerability has been resolved: smb: client: fix use-after-free in cifs_oplock_brea...
CVE-2025-38521HIGH7.1In the Linux kernel, the following vulnerability has been resolved: drm/imagination: Fix kernel crash when hard resetti...
CVE-2025-38512HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: prevent A-MSDU attacks in mesh networks This...
CVE-2025-38502HIGH7.1In the Linux kernel, the following vulnerability has been resolved: bpf: Fix oob access in cgroup local storage Lonial...
CVE-2025-38501HIGH7.5In the Linux kernel, the following vulnerability has been resolved: ksmbd: limit repeated connections from clients with...
CVE-2025-7664HIGH7.5The AL Pack plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the check_act...
CVE-2025-6080HIGH8.8The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to unauthorized admin account creation in...
CVE-2025-6079HIGH8.8The School Management System for Wordpress plugin for WordPress is vulnerable to arbitrary file uploads due to missing f...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now