2025 CVE Vulnerabilities
45,170 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-24853 | HIGH | 7.5 | 0.5% | Jul 31, 2025 | A carefully crafted request when creating a header link using the wiki markup syntax, which could allow the attacker to... |
| CVE-2025-54757 | HIGH | 8 | 0.2% | Jul 31, 2025 | Multiple versions of PowerCMS allow unrestricted upload of dangerous files. If a product administrator accesses a malici... |
| CVE-2025-54752 | HIGH | 8 | 0.2% | Jul 31, 2025 | Multiple versions of PowerCMS improperly neutralize formula elements in a CSV file. If a product user creates a malform... |
| CVE-2025-46359 | HIGH | 8.6 | 0.5% | Jul 31, 2025 | A path traversal issue exists in backup and restore feature of multiple versions of PowerCMS. A product administrator ma... |
| CVE-2025-53558 | HIGH | 8.8 | 1.3% | Jul 31, 2025 | ZXHN-F660T and ZXHN-F660A provided by ZTE Japan K.K. use a common credential for all installations. With the knowledge o... |
| CVE-2025-7847 | HIGH | 8.8 | 1.0% | Jul 31, 2025 | The AI Engine plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the re... |
| CVE-2025-8348 | HIGH | 7.5 | 0.6% | Jul 31, 2025 | A vulnerability has been found in Kehua Charging Pile Cloud Platform 1.0 and classified as critical. This vulnerability ... |
| CVE-2025-49083 | HIGH | 7.2 | 0.4% | Jul 31, 2025 | CVE-2025-49083 is a vulnerability in the management console of Absolute Secure Access after version 12.00 and prior to v... |
| CVE-2025-54581 | HIGH | 7.5 | 0.5% | Jul 30, 2025 | vproxy is an HTTP/HTTPS/SOCKS5 proxy server. In versions 2.3.3 and below, untrusted data is extracted from the user-cont... |
| CVE-2025-53022 | HIGH | 8.6 | 0.4% | Jul 30, 2025 | TrustedFirmware-M (aka Trusted Firmware for M profile Arm CPUs) before 2.1.3 and 2.2.x before 2.2.1 lacks length validat... |
| CVE-2025-52187 | HIGH | 8.2 | 0.4% | Jul 30, 2025 | GetProjectsIdea Create School Management System 1.0 is vulnerable to Cross Site Scripting (XSS) in my_profile_update_for... |
| CVE-2025-50777 | HIGH | 7.8 | 0.2% | Jul 30, 2025 | The firmware of the AZIOT 2MP Full HD Smart Wi-Fi CCTV Home Security Camera (version V1.00.02) contains an Incorrect Acc... |
| CVE-2025-36609 | HIGH | 7.8 | 0.1% | Jul 30, 2025 | Dell SmartFabric OS10 Software, versions prior to 10.6.0.5, contains a Use of Hard-coded Password vulnerability. A low p... |
| CVE-2025-45620 | HIGH | 8.1 | 0.8% | Jul 30, 2025 | An issue in Aver PTC310UV2 v.0.1.0000.59 allows a remote attacker to obtain sensitive information via a crafted request |
| CVE-2025-36611 | HIGH | 7.8 | 0.1% | Jul 30, 2025 | Dell Encryption and Dell Security Management Server, versions prior to 11.11.0, contain an Improper Link Resolution Befo... |
| CVE-2025-8312 | HIGH | 7.1 | 0.3% | Jul 30, 2025 | Deadlock in PAM automatic check-in feature in Devolutions Server allows a password to remain valid beyond the end of its... |
| CVE-2025-54433 | HIGH | 7.2 | 0.5% | Jul 30, 2025 | Bugsink is a self-hosted error tracking service. In versions 1.4.2 and below, 1.5.0 through 1.5.4, 1.6.0 through 1.6.3, ... |
| CVE-2025-53944 | HIGH | 7.7 | 0.4% | Jul 30, 2025 | AutoGPT is a platform that allows users to create, deploy, and manage continuous artificial intelligence agents. In v0.6... |
| CVE-2025-8323 | HIGH | 8.8 | 0.5% | Jul 30, 2025 | The e-School from Ventem has a Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload ... |
| CVE-2025-8322 | HIGH | 8.8 | 0.3% | Jul 30, 2025 | The e-School from Ventem has a Missing Authorization vulnerability, allowing remote attackers with regular privilege to ... |
| CVE-2025-8292 | HIGH | 8.8 | 0.3% | Jul 30, 2025 | Use after free in Media Stream in Google Chrome prior to 138.0.7204.183 allowed a remote attacker to potentially exploit... |
| CVE-2025-8320 | HIGH | 8.8 | 0.4% | Jul 30, 2025 | Tesla Wall Connector Content-Length Header Improper Input Validation Remote Code Execution Vulnerability. This vulnerabi... |
| CVE-2025-4425 | HIGH | 8.2 | 0.2% | Jul 30, 2025 | The vulnerability was identified in the code developed specifically for Lenovo. Please visit "Lenovo Product Security Ad... |
| CVE-2025-4423 | HIGH | 8.2 | 0.2% | Jul 30, 2025 | The vulnerability was identified in the code developed specifically for Lenovo. Please visit "Lenovo Product Security Ad... |
| CVE-2025-4422 | HIGH | 8.2 | 0.2% | Jul 30, 2025 | The vulnerability was identified in the code developed specifically for Lenovo. Please visit "Lenovo Product Security Ad... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now