2025 CVE Vulnerabilities

45,172 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-38366HIGH7.8In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Check validity of "num_cpu" from us...
CVE-2025-38361HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check dce_hwseq before dereferenci...
CVE-2025-38357HIGH7.8In the Linux kernel, the following vulnerability has been resolved: fuse: fix runtime warning on truncate_folio_batch_e...
CVE-2025-8183HIGH7.5NULL Pointer Dereference in µD3TN via non-singleton destination Endpoint Identifier allows remote attacker to reliably c...
CVE-2025-8140HIGH8.8A vulnerability was found in TOTOLINK A702R 4.0.0-B20230721.1521. It has been declared as critical. This vulnerability a...
CVE-2025-8139HIGH8.8A vulnerability was found in TOTOLINK A702R 4.0.0-B20230721.1521. It has been classified as critical. This affects an un...
CVE-2025-8138HIGH8.8A vulnerability was found in TOTOLINK A702R 4.0.0-B20230721.1521 and classified as critical. Affected by this issue is s...
CVE-2025-8137HIGH8.8A vulnerability has been found in TOTOLINK A702R 4.0.0-B20230721.1521 and classified as critical. Affected by this vulne...
CVE-2025-8136HIGH7.5A vulnerability, which was classified as critical, was found in TOTOLINK A702R 4.0.0-B20230721.1521. Affected is an unkn...
CVE-2025-8135HIGH8.8A vulnerability, which was classified as critical, has been found in itsourcecode Insurance Management System 1.0. This ...
CVE-2025-5835HIGH8.8The Droip plugin for WordPress is vulnerable to unauthorized modification and access of data due to a missing capability...
CVE-2025-5831HIGH8.8The Droip plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the make_g...
CVE-2025-8134HIGH8.8A vulnerability classified as critical was found in PHPGurukul BP Monitoring Management System 1.0. This vulnerability a...
CVE-2025-8131HIGH8.8A vulnerability was found in Tenda AC20 16.03.08.05. It has been declared as critical. Affected by this vulnerability is...
CVE-2025-8127HIGH8.8A vulnerability classified as critical was found in deerwms deer-wms-2 up to 3.3. This vulnerability affects unknown cod...
CVE-2025-8126HIGH8.8A vulnerability classified as critical has been found in deerwms deer-wms-2 up to 3.3. This affects an unknown part of t...
CVE-2025-8124HIGH8.8A vulnerability was found in deerwms deer-wms-2 up to 3.3. It has been declared as critical. Affected by this vulnerabil...
CVE-2025-7742HIGH8.3An authentication vulnerability exists in the LG Innotek camera model LNV5110R firmware that allows a malicious actor to...
CVE-2025-53940HIGH8.5Quiet is an alternative to team chat apps like Slack, Discord, and Element that does not require trusting a central serv...
CVE-2025-22165HIGH7.3This Medium severity ACE (Arbitrary Code Execution) vulnerability was introduced in version 4.2.8 of Sourcetree for Mac....
CVE-2025-8123HIGH8.8A vulnerability was found in deerwms deer-wms-2 up to 3.3. It has been classified as critical. Affected is an unknown fu...
CVE-2025-31952HIGH7.1HCL iAutomate is affected by an insufficient session expiration. This allows tokens to remain valid indefinitely unless...
CVE-2025-6998HIGH8.7ReDoS in strip_whitespaces() function in cps/string_helper.py in Calibre Web and Autocaliweb allows unauthenticated remo...
CVE-2025-5039HIGH7.8A maliciously crafted binary file, when present while loading files in certain Autodesk applications, could lead to exec...
CVE-2025-25214HIGH7.5A race condition vulnerability exists in the aVideoEncoder.json.php unzip functionality of WWBN AVideo 14.4 and dev mast...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now