2025 CVE Vulnerabilities
45,170 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-45766 | HIGH | 7 | 0.1% | Aug 6, 2025 | poco v1.14.1-release was discovered to contain weak encryption. NOTE: this issue has been disputed on the basis that key... |
| CVE-2025-38747 | HIGH | 7.8 | 0.1% | Aug 6, 2025 | Dell SupportAssist OS Recovery, versions prior to 5.5.14.0, contain a Creation of Temporary File With Insecure Permissio... |
| CVE-2025-53786 | HIGH | 8 | 7.4% | Aug 6, 2025 | On April 18th 2025, Microsoft announced Exchange Server Security Changes for Hybrid Deployments and accompanying non-sec... |
| CVE-2025-51532 | HIGH | 7.5 | 0.4% | Aug 6, 2025 | Incorrect access control in Sage DPW 2024_12_004 and earlier allows unauthorized attackers to access the built-in Databa... |
| CVE-2025-51040 | HIGH | 7.5 | 0.4% | Aug 6, 2025 | Electrolink FM/DAB/TV Transmitter Web Management System Unauthorized access vulnerability via the /FrameSetCore.html end... |
| CVE-2025-50286 | HIGH | 8.1 | 8.7% | Aug 6, 2025 | A Remote Code Execution (RCE) vulnerability in Grav CMS v1.7.48 allows an authenticated admin to upload a malicious plug... |
| CVE-2025-36020 | HIGH | 7.5 | 0.2% | Aug 6, 2025 | IBM Guardium Data Protection could allow a remote attacker to obtain sensitive information due to cleartext transmission... |
| CVE-2025-23335 | HIGH | 7.5 | 0.5% | Aug 6, 2025 | NVIDIA Triton Inference Server for Windows and Linux and the Tensor RT backend contain a vulnerability where an attacker... |
| CVE-2025-23334 | HIGH | 7.5 | 0.7% | Aug 6, 2025 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker c... |
| CVE-2025-23333 | HIGH | 7.5 | 0.4% | Aug 6, 2025 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker c... |
| CVE-2025-23331 | HIGH | 7.5 | 0.5% | Aug 6, 2025 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where a user could cause a memory allocati... |
| CVE-2025-23326 | HIGH | 7.5 | 0.4% | Aug 6, 2025 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause an integer o... |
| CVE-2025-23325 | HIGH | 7.5 | 0.4% | Aug 6, 2025 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause uncontrolled... |
| CVE-2025-23324 | HIGH | 7.5 | 0.4% | Aug 6, 2025 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where a user could cause an integer overfl... |
| CVE-2025-23323 | HIGH | 7.5 | 0.5% | Aug 6, 2025 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where a user could cause an integer overfl... |
| CVE-2025-23322 | HIGH | 7.5 | 0.5% | Aug 6, 2025 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where multiple requests could cause a doub... |
| CVE-2025-23321 | HIGH | 7.5 | 0.4% | Aug 6, 2025 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where a user could cause a divide by zero ... |
| CVE-2025-23320 | HIGH | 7.5 | 0.9% | Aug 6, 2025 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker c... |
| CVE-2025-46390 | HIGH | 7.5 | 0.3% | Aug 6, 2025 | CWE-204: Observable Response Discrepancy |
| CVE-2025-46387 | HIGH | 8.8 | 0.3% | Aug 6, 2025 | CWE-639 Authorization Bypass Through User-Controlled Key |
| CVE-2025-46386 | HIGH | 8.8 | 0.3% | Aug 6, 2025 | CWE-639 Authorization Bypass Through User-Controlled Key |
| CVE-2025-7771 | HIGH | 8.7 | 9.0% | Aug 6, 2025 | ThrottleStop.sys, a legitimate driver, exposes two IOCTL interfaces that allow arbitrary read and write access to physic... |
| CVE-2025-6013 | HIGH | 8.1 | 0.5% | Aug 6, 2025 | Vault and Vault Enterprise’s (“Vault”) ldap auth method may not have correctly enforced MFA if username_as_alias was set... |
| CVE-2025-22469 | HIGH | 7.3 | 1.1% | Aug 6, 2025 | OS command injection vulnerability exists in CL4/6NX Plus and CL4/6NX-J Plus (Japan model) with the firmware versions pr... |
| CVE-2025-7954 | HIGH | 8.1 | 0.4% | Aug 6, 2025 | A race condition vulnerability has been identified in Shopware's voucher system of Shopware v6.6.10.4 that allows attack... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now