2025 CVE Vulnerabilities

45,169 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-46709HIGH7.5Possible memory leak or kernel exceptions caused by reading kernel heap data after free or NULL pointer dereference kern...
CVE-2025-4796HIGH8.8The Eventin plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and i...
CVE-2025-52914HIGH8.8A vulnerability in the Suite Applications Services component of Mitel MiCollab 10.0 through SP1 FP1 (10.0.1.101) could a...
CVE-2025-8393HIGH8.5A TLS vulnerability exists in the phone application used to manage a connected device. The phone application accepts se...
CVE-2025-53520HIGH8.8The affected product allows firmware updates to be downloaded from EG4's website, transferred via USB dongles, or insta...
CVE-2025-50465HIGH8.8OpenMetadata <=1.4.4 is vulnerable to SQL Injection. An attacker can extract information from the database in function l...
CVE-2025-8355HIGH7.5In Xerox FreeFlow Core version 8.0.4, improper handling of XML input allows injection of external entities. An attacker ...
CVE-2025-52586HIGH7.5The MOD3 command traffic between the monitoring application and the inverter is transmitted in plaintext without encryp...
CVE-2025-36119HIGH8.8IBM i 7.3, 7.4, 7.5, and 7.6 is affected by an authenticated user obtaining elevated privileges with IBM Digital Certifi...
CVE-2025-8088HIGH8.8A path traversal vulnerability affecting the Windows version of WinRAR allows the attackers to execute arbitrary code by...
CVE-2025-8748HIGH8.8MiR software versions prior to version 3.0.0 are affected by a command injection vulnerability. A malicious HTTP reques...
CVE-2025-8708HIGH7.5A vulnerability was found in Antabot White-Jotter 0.22. It has been declared as critical. This vulnerability affects the...
CVE-2025-8706HIGH8.8A vulnerability has been found in Wanzhou WOES Intelligent Optimization Energy Saving System 1.0 and classified as criti...
CVE-2025-8705HIGH8.8A vulnerability, which was classified as critical, was found in Wanzhou WOES Intelligent Optimization Energy Saving Syst...
CVE-2025-8704HIGH8.8A vulnerability, which was classified as critical, has been found in Wanzhou WOES Intelligent Optimization Energy Saving...
CVE-2025-8703HIGH8.8A vulnerability classified as critical was found in Wanzhou WOES Intelligent Optimization Energy Saving System 1.0. This...
CVE-2025-54886HIGH8.4skops is a Python library which helps users share and ship their scikit-learn based models. In versions 0.12.0 and below...
CVE-2025-8702HIGH8.8A vulnerability classified as critical has been found in Wanzhou WOES Intelligent Optimization Energy Saving System 1.0....
CVE-2025-8701HIGH8.8A vulnerability was found in Wanzhou WOES Intelligent Optimization Energy Saving System 1.0. It has been rated as critic...
CVE-2025-53787HIGH7.5Microsoft 365 Copilot BizChat Information Disclosure Vulnerability
CVE-2025-53774HIGH7.5Microsoft 365 Copilot BizChat Information Disclosure Vulnerability
CVE-2025-26513HIGH7.8The installer for SAN Host Utilities for Windows versions prior to 8.0 is susceptible to a vulnerability which when succ...
CVE-2025-48709HIGH7.8BMC Control-M/Server 9.0.21.300 displays cleartext database credentials in process lists and logs. An authenticated atta...
CVE-2025-47219HIGH8.1In GStreamer through 1.26.1, the isomp4 plugin's qtdemux_parse_trak function may read past the end of a heap buffer whil...
CVE-2025-55077HIGH7.4Tyler Technologies ERP Pro 9 SaaS allows an authenticated user to escape the application and execute limited operating s...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now