2025 CVE Vulnerabilities
45,342 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-8875 | HIGH | 7.8 | 1.7% | Aug 14, 2025 | Deserialization of Untrusted Data vulnerability in N-able N-central allows Local Execution of Code.This issue affects N-... |
| CVE-2025-7971 | HIGH | 7.3 | 0.1% | Aug 14, 2025 | A security issues exists within Studio 5000 Logix Designer due to unsafe handling of environment variables. If the speci... |
| CVE-2025-40758 | HIGH | 8.7 | 0.2% | Aug 14, 2025 | A vulnerability has been identified in Mendix SAML (Mendix 10.12 compatible) (All versions < V4.0.3), Mendix SAML (Mendi... |
| CVE-2025-38738 | HIGH | 7.8 | 0.1% | Aug 14, 2025 | SupportAssist for Home PCs Installer exe version(s) 4.8.2.29006 and prior, contain(s) an Incorrect Privilege Assignment ... |
| CVE-2025-36613 | HIGH | 7.8 | 0.1% | Aug 14, 2025 | SupportAssist for Home PCs versions 4.6.3 and prior and SupportAssist for Business PCs versions 4.5.3 and prior, contain... |
| CVE-2025-36612 | HIGH | 7.8 | 0.1% | Aug 14, 2025 | SupportAssist for Business PCs, version(s) 4.5.3 and prior, contain(s) an Incorrect Privilege Assignment vulnerability. ... |
| CVE-2025-9036 | HIGH | 8.5 | 0.1% | Aug 14, 2025 | A security issue in the runtime event system allows unauthenticated connections to receive a reusable API token. This to... |
| CVE-2025-7973 | HIGH | 8.5 | 0.1% | Aug 14, 2025 | A security issue exists in FactoryTalk ViewPoint version 14.0 or below due to improper handling of MSI repair operations... |
| CVE-2025-7774 | HIGH | 8.8 | 0.4% | Aug 14, 2025 | A security issue exists within the 5032 16pt Digital Configurable module’s web server. Intercepted session credentials c... |
| CVE-2025-7773 | HIGH | 8.8 | 0.4% | Aug 14, 2025 | A security issue exists within the 5032 16pt Digital Configurable module’s web server. The web server’s session number i... |
| CVE-2025-8715 | HIGH | 8.8 | 0.4% | Aug 14, 2025 | Improper neutralization of newlines in pg_dump in PostgreSQL allows a user of the origin server to inject arbitrary code... |
| CVE-2025-8714 | HIGH | 8.8 | 0.7% | Aug 14, 2025 | Untrusted data inclusion in pg_dump in PostgreSQL allows a malicious superuser of the origin server to inject arbitrary ... |
| CVE-2025-8958 | HIGH | 8.8 | 0.7% | Aug 14, 2025 | A vulnerability was identified in Tenda TX3 16.03.13.11_multi_TDE01. Affected by this vulnerability is an unknown functi... |
| CVE-2025-54697 | HIGH | 7.2 | 0.4% | Aug 14, 2025 | Incorrect Privilege Assignment vulnerability in StellarWP Kadence WooCommerce Email Designer kadence-woocommerce-email-d... |
| CVE-2025-54692 | HIGH | 7.5 | 0.3% | Aug 14, 2025 | Missing Authorization vulnerability in WP Swings Membership For WooCommerce membership-for-woocommerce allows Accessing ... |
| CVE-2025-54690 | HIGH | 8.1 | 0.4% | Aug 14, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-54689 | HIGH | 8.1 | 0.4% | Aug 14, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-54679 | HIGH | 7.5 | 0.4% | Aug 14, 2025 | Missing Authorization vulnerability in vertim Neon Channel Product Customizer Free neon-channel-product-customizer-free ... |
| CVE-2025-52823 | HIGH | 8.5 | 0.2% | Aug 14, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ovatheme Cube Port... |
| CVE-2025-52820 | HIGH | 8.5 | 0.2% | Aug 14, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in infosoftplugin Woo... |
| CVE-2025-52806 | HIGH | 7.5 | 0.5% | Aug 14, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-52801 | HIGH | 7.3 | 0.3% | Aug 14, 2025 | Missing Authorization vulnerability in VonStroheim TheBooking thebooking allows Accessing Functionality Not Properly Con... |
| CVE-2025-52800 | HIGH | 7.3 | 0.3% | Aug 14, 2025 | Missing Authorization vulnerability in Unity Business Technology Pty Ltd The E-Commerce ERP profitori allows Accessing F... |
| CVE-2025-52788 | HIGH | 7.1 | 0.2% | Aug 14, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Russell Jamieson C... |
| CVE-2025-52785 | HIGH | 7.1 | 0.3% | Aug 14, 2025 | Missing Authorization vulnerability in softnwords SMM API smm-api allows Exploiting Incorrectly Configured Access Contro... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now