2025 CVE Vulnerabilities
45,168 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-9007 | HIGH | 8.8 | 0.7% | Aug 15, 2025 | A vulnerability has been found in Tenda CH22 1.0.0.1. Affected by this issue is the function formeditFileName of the fil... |
| CVE-2025-9006 | HIGH | 8.8 | 0.9% | Aug 15, 2025 | A vulnerability was identified in Tenda CH22 1.0.0.1. Affected by this vulnerability is the function formdelFileName of ... |
| CVE-2025-9001 | HIGH | 7.5 | 0.9% | Aug 15, 2025 | A vulnerability was determined in LemonOS up to nightly-2024-07-12 on LemonOS. Affected by this issue is the function HT... |
| CVE-2025-8342 | HIGH | 8.1 | 0.6% | Aug 15, 2025 | The WooCommerce OTP Login With Phone Number, OTP Verification plugin for WordPress is vulnerable to authentication bypas... |
| CVE-2025-6025 | HIGH | 7.5 | 0.4% | Aug 15, 2025 | The Order Tip for WooCommerce plugin for WordPress is vulnerable to Unauthenticated Improper Input Validation in all ver... |
| CVE-2025-9000 | HIGH | 7 | 0.2% | Aug 15, 2025 | A vulnerability was found in Mechrevo Control Center GX V2 5.56.51.48. Affected by this vulnerability is an unknown func... |
| CVE-2025-31987 | HIGH | 7.5 | 0.2% | Aug 14, 2025 | HCL Connections Docs may mishandle validation of certain uploaded documents leading to denial of service due to resource... |
| CVE-2025-8978 | HIGH | 8.1 | 0.5% | Aug 14, 2025 | A vulnerability was determined in D-Link DIR-619L 6.02CN02. Affected is the function FirmwareUpgrade of the component bo... |
| CVE-2025-55708 | HIGH | 8.5 | 0.3% | Aug 14, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ExpressTech System... |
| CVE-2025-53587 | HIGH | 8.8 | 0.2% | Aug 14, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in ApusTheme Findgo findgo allows Cross Site Request Forgery.This issue ... |
| CVE-2025-53575 | HIGH | 7.1 | 0.2% | Aug 14, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in primersoftware Pri... |
| CVE-2025-52797 | HIGH | 8.2 | 0.1% | Aug 14, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in josepsitjar StoryMap wp-storymap allows SQL Injection.This issue affe... |
| CVE-2025-52765 | HIGH | 7.1 | 0.1% | Aug 14, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in lisensee NetInsight Analytics Implementation Plugin netinsight-analyt... |
| CVE-2025-51986 | HIGH | 7.5 | 0.3% | Aug 14, 2025 | An issue was discovered in the demo/LINUXTCP implementation of cwalter-at freemodbus v.2018-09-12 allowing attackers to ... |
| CVE-2025-55195 | HIGH | 7.3 | 0.3% | Aug 14, 2025 | @std/toml is the Deno Standard Library. Prior to version 1.0.9, an attacker can pollute the prototype chain in Node.js r... |
| CVE-2025-55192 | HIGH | 8.6 | 0.3% | Aug 14, 2025 | HomeAssistant-Tapo-Control offers Control for Tapo cameras as a Home Assistant component. Prior to commit 2a3b80f, there... |
| CVE-2025-20263 | HIGH | 8.6 | 0.6% | Aug 14, 2025 | A vulnerability in the web services interface of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Ci... |
| CVE-2025-20253 | HIGH | 8.6 | 0.4% | Aug 14, 2025 | A vulnerability in the IKEv2 feature of Cisco IOS Software, IOS XE Software, Secure Firewall ASA Software, and Secure FT... |
| CVE-2025-20251 | HIGH | 8.5 | 0.4% | Aug 14, 2025 | A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security Appliance (ASA) Softwar... |
| CVE-2025-20244 | HIGH | 7.7 | 0.5% | Aug 14, 2025 | A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security Appliance (ASA) Softwar... |
| CVE-2025-20243 | HIGH | 8.6 | 0.5% | Aug 14, 2025 | A vulnerability in the management and VPN web servers of Cisco Secure Firewall ASA Software and Secure FTD Software coul... |
| CVE-2025-20239 | HIGH | 8.6 | 0.5% | Aug 14, 2025 | A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco IOS Software, IOS XE Software, Secure Fi... |
| CVE-2025-20222 | HIGH | 8.6 | 0.6% | Aug 14, 2025 | A vulnerability in the RADIUS proxy feature for the IPsec VPN feature of Cisco Secure Firewall Adaptive Security Applian... |
| CVE-2025-20217 | HIGH | 8.6 | 0.7% | Aug 14, 2025 | A vulnerability in the packet inspection functionality of the Snort 3 Detection Engine of Cisco Secure Firewall Threat D... |
| CVE-2025-20148 | HIGH | 8.5 | 0.4% | Aug 14, 2025 | A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could al... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now