2025 CVE Vulnerabilities

45,168 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-25172HIGH8.1Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2025-24766HIGH7.5Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2025-8956HIGH8.8A vulnerability was found in D-Link DIR‑818L up to 1.05B01. This issue affects the function getenv of the file /htdocs/c...
CVE-2025-54472HIGH7.5Unlimited memory allocation in redis protocol parser in Apache bRPC (all versions < 1.14.1) on all platforms allows atta...
CVE-2025-48862HIGH7.1Ambiguous wording in the web interface of the ctrlX OS setup mechanism could lead the user to believe that the backup fi...
CVE-2025-48860HIGH8A vulnerability in the web application of the ctrlX OS setup mechanism facilitated an authenticated (low privileged) att...
CVE-2025-27388HIGH8.3Loading arbitrary external URLs through WebView components introduces malicious JS code that can steal arbitrary user to...
CVE-2025-8940HIGH8.8A vulnerability was identified in Tenda AC20 up to 16.03.08.12. Affected by this vulnerability is the function strcpy of...
CVE-2025-8939HIGH8.8A vulnerability was determined in Tenda AC20 up to 16.03.08.12. Affected is an unknown function of the file /goform/Wifi...
CVE-2025-8937HIGH8.8A vulnerability has been found in TOTOLINK N350R 1.2.3-B20130826. This vulnerability affects unknown code of the file /b...
CVE-2025-8931HIGH8.8A vulnerability was determined in code-projects Medical Store Management System 1.0. Affected is an unknown function of ...
CVE-2025-8930HIGH8.8A vulnerability was found in code-projects Medical Store Management System 1.0. This issue affects some unknown processi...
CVE-2025-55197HIGH7.5pypdf is a free and open-source pure-python PDF library. Prior to version 6.0.0, an attacker can craft a PDF which leads...
CVE-2025-55196HIGH7.1External Secrets Operator is a Kubernetes operator that integrates external secret management systems. From version 0.15...
CVE-2025-8929HIGH8.8A vulnerability has been found in code-projects Medical Store Management System 1.0. This vulnerability affects unknown ...
CVE-2025-8928HIGH8.8A vulnerability was identified in code-projects Medical Store Management System 1.0. This affects an unknown part of the...
CVE-2025-43988HIGH7.5KuWFi 5G01-X55 FL2020_V0.0.12 devices expose an unauthenticated API endpoint (ajax_get.cgi), allowing remote attackers t...
CVE-2025-8754HIGH8.7Missing Authentication for Critical Function vulnerability in ABB ABB AbilityTM zenon.This issue affects ABB AbilityTM z...
CVE-2025-50617HIGH7.5A buffer overflow vulnerability has been discovered in Netis WF2880 v2.1.40207 in the FUN_0046ed68 function of the cgite...
CVE-2025-50616HIGH7.5A buffer overflow vulnerability has been discovered in Netis WF2880 v2.1.40207 in the FUN_0046f984 function of the cgite...
CVE-2025-50615HIGH7.5A buffer overflow vulnerability has been discovered in Netis WF2880 v2.1.40207 in the FUN_00470c50 function of the cgite...
CVE-2025-23306HIGH7.8NVIDIA Megatron-LM for all platforms contains a vulnerability in the megatron/training/ arguments.py component where an ...
CVE-2025-23305HIGH7.8NVIDIA Megatron-LM for all platforms contains a vulnerability in the tools component, where an attacker may exploit a co...
CVE-2025-23298HIGH7.8NVIDIA Merlin Transformers4Rec for all platforms contains a vulnerability in a python dependency, where an attacker coul...
CVE-2025-23296HIGH7.8NVIDIA Isaac-GR00T for all platforms contains a vulnerability in a Python component where an attacker could cause a code...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now