2025 CVE Vulnerabilities
45,172 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-38366 | HIGH | 7.8 | 0.1% | Jul 25, 2025 | In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Check validity of "num_cpu" from us... |
| CVE-2025-38361 | HIGH | 7.8 | 0.2% | Jul 25, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check dce_hwseq before dereferenci... |
| CVE-2025-38357 | HIGH | 7.8 | 0.2% | Jul 25, 2025 | In the Linux kernel, the following vulnerability has been resolved: fuse: fix runtime warning on truncate_folio_batch_e... |
| CVE-2025-8183 | HIGH | 7.5 | 0.5% | Jul 25, 2025 | NULL Pointer Dereference in µD3TN via non-singleton destination Endpoint Identifier allows remote attacker to reliably c... |
| CVE-2025-8140 | HIGH | 8.8 | 7.1% | Jul 25, 2025 | A vulnerability was found in TOTOLINK A702R 4.0.0-B20230721.1521. It has been declared as critical. This vulnerability a... |
| CVE-2025-8139 | HIGH | 8.8 | 1.0% | Jul 25, 2025 | A vulnerability was found in TOTOLINK A702R 4.0.0-B20230721.1521. It has been classified as critical. This affects an un... |
| CVE-2025-8138 | HIGH | 8.8 | 7.1% | Jul 25, 2025 | A vulnerability was found in TOTOLINK A702R 4.0.0-B20230721.1521 and classified as critical. Affected by this issue is s... |
| CVE-2025-8137 | HIGH | 8.8 | 1.0% | Jul 25, 2025 | A vulnerability has been found in TOTOLINK A702R 4.0.0-B20230721.1521 and classified as critical. Affected by this vulne... |
| CVE-2025-8136 | HIGH | 7.5 | 1.0% | Jul 25, 2025 | A vulnerability, which was classified as critical, was found in TOTOLINK A702R 4.0.0-B20230721.1521. Affected is an unkn... |
| CVE-2025-8135 | HIGH | 8.8 | 0.4% | Jul 25, 2025 | A vulnerability, which was classified as critical, has been found in itsourcecode Insurance Management System 1.0. This ... |
| CVE-2025-5835 | HIGH | 8.8 | 0.4% | Jul 25, 2025 | The Droip plugin for WordPress is vulnerable to unauthorized modification and access of data due to a missing capability... |
| CVE-2025-5831 | HIGH | 8.8 | 0.6% | Jul 25, 2025 | The Droip plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the make_g... |
| CVE-2025-8134 | HIGH | 8.8 | 0.4% | Jul 25, 2025 | A vulnerability classified as critical was found in PHPGurukul BP Monitoring Management System 1.0. This vulnerability a... |
| CVE-2025-8131 | HIGH | 8.8 | 1.0% | Jul 25, 2025 | A vulnerability was found in Tenda AC20 16.03.08.05. It has been declared as critical. Affected by this vulnerability is... |
| CVE-2025-8127 | HIGH | 8.8 | 0.4% | Jul 25, 2025 | A vulnerability classified as critical was found in deerwms deer-wms-2 up to 3.3. This vulnerability affects unknown cod... |
| CVE-2025-8126 | HIGH | 8.8 | 0.4% | Jul 25, 2025 | A vulnerability classified as critical has been found in deerwms deer-wms-2 up to 3.3. This affects an unknown part of t... |
| CVE-2025-8124 | HIGH | 8.8 | 0.4% | Jul 25, 2025 | A vulnerability was found in deerwms deer-wms-2 up to 3.3. It has been declared as critical. Affected by this vulnerabil... |
| CVE-2025-7742 | HIGH | 8.3 | 0.6% | Jul 25, 2025 | An authentication vulnerability exists in the LG Innotek camera model LNV5110R firmware that allows a malicious actor to... |
| CVE-2025-53940 | HIGH | 8.5 | 2.6% | Jul 24, 2025 | Quiet is an alternative to team chat apps like Slack, Discord, and Element that does not require trusting a central serv... |
| CVE-2025-22165 | HIGH | 7.3 | 0.1% | Jul 24, 2025 | This Medium severity ACE (Arbitrary Code Execution) vulnerability was introduced in version 4.2.8 of Sourcetree for Mac.... |
| CVE-2025-8123 | HIGH | 8.8 | 0.4% | Jul 24, 2025 | A vulnerability was found in deerwms deer-wms-2 up to 3.3. It has been classified as critical. Affected is an unknown fu... |
| CVE-2025-31952 | HIGH | 7.1 | 0.3% | Jul 24, 2025 | HCL iAutomate is affected by an insufficient session expiration. This allows tokens to remain valid indefinitely unless... |
| CVE-2025-6998 | HIGH | 8.7 | 0.8% | Jul 24, 2025 | ReDoS in strip_whitespaces() function in cps/string_helper.py in Calibre Web and Autocaliweb allows unauthenticated remo... |
| CVE-2025-5039 | HIGH | 7.8 | 0.2% | Jul 24, 2025 | A maliciously crafted binary file, when present while loading files in certain Autodesk applications, could lead to exec... |
| CVE-2025-25214 | HIGH | 7.5 | 1.0% | Jul 24, 2025 | A race condition vulnerability exists in the aVideoEncoder.json.php unzip functionality of WWBN AVideo 14.4 and dev mast... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now