2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-68192CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: net: usb: qmi_wwan: initialize MAC header offset in...
CVE-2025-40350CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: RX, Fix generating skb from non-linear x...
CVE-2025-62849CRITICAL9.8An SQL injection vulnerability has been reported to affect several QNAP operating system versions. The remote attackers ...
CVE-2025-59385CRITICAL9.8An authentication bypass by spoofing vulnerability has been reported to affect several QNAP operating system versions. T...
CVE-2025-67744CRITICAL9.6DeepChat is an open-source artificial intelligence agent platform that unifies models, tools, and agents. Prior to versi...
CVE-2025-64725CRITICAL9.8Weblate is a web based localization tool. In versions prior to 5.15, it was possible to accept an invitation opened by a...
CVE-2025-59947CRITICAL9NanoMQ is a messaging broker/bus for IoT Edge & SDV. Versions prior to 0.24.4 have a buffer overflow case while the PUBL...
CVE-2025-55895CRITICAL9.1TOTOLINK A3300R V17.0.0cu.557_B20221024 and N200RE V9.3.5u.6448_B20240521 and V9.3.5u.6437_B20230519 are vulnerable to I...
CVE-2025-65213CRITICAL9.8MooreThreads torch_musa through all versions contains an unsafe deserialization vulnerability in torch_musa.utils.compar...
CVE-2025-66844CRITICAL9.1In grav <1.7.49.5, a SSRF (Server-Side Request Forgery) vector may be triggered via Twig templates when page content is ...
CVE-2025-13888CRITICAL9.1A flaw was found in OpenShift GitOps. Namespace admins can create ArgoCD Custom Resources (CRs) that trick the system in...
CVE-2025-14156CRITICAL9.8The Fox LMS – WordPress LMS Plugin plugin for WordPress is vulnerable to privilege escalation in all versions up to, and...
CVE-2025-14711CRITICAL9.8A flaw has been found in FantasticLBP Hotels Server up to 67b44df162fab26df209bd5d5d542875fcbec1d0. This vulnerability a...
CVE-2025-14710CRITICAL9.8A vulnerability was detected in FantasticLBP Hotels Server up to 67b44df162fab26df209bd5d5d542875fcbec1d0. This affects ...
CVE-2025-14709CRITICAL9.8A security vulnerability has been detected in Shiguangwu sgwbox N3 2.0.25. Affected by this issue is some unknown functi...
CVE-2025-14707CRITICAL9.8A security flaw has been discovered in Shiguangwu sgwbox N3 2.0.25. Affected is an unknown function of the file /usr/sbi...
CVE-2025-14706CRITICAL9.8A vulnerability was identified in Shiguangwu sgwbox N3 2.0.25. This impacts an unknown function of the file /usr/sbin/ht...
CVE-2025-14705CRITICAL9.8A vulnerability was determined in Shiguangwu sgwbox N3 2.0.25. This affects an unknown function of the component SHARESE...
CVE-2025-14704CRITICAL9.8A vulnerability was found in Shiguangwu sgwbox N3 2.0.25. The impacted element is an unknown function of the file /eshel...
CVE-2025-67906CRITICAL9In MISP before 2.5.28, app/View/Elements/Workflows/executionPath.ctp allows XSS in the workflow execution path.
CVE-2025-14673CRITICAL9.8A vulnerability has been found in gmg137 snap7-rs up to 1.142.1. Affected is the function snap7_rs::client::S7Client::as...
CVE-2025-14672CRITICAL9.8A flaw has been found in gmg137 snap7-rs up to 1.142.1. This impacts the function TSnap7MicroClient::opWriteArea of the ...
CVE-2025-14668CRITICAL9.8A vulnerability was detected in campcodes Advanced Online Examination System 1.0. This affects an unknown function of th...
CVE-2025-14667CRITICAL9.8A security vulnerability has been detected in itsourcecode COVID Tracking System 1.0. The impacted element is an unknown...
CVE-2025-14666CRITICAL9.8A weakness has been identified in itsourcecode COVID Tracking System 1.0. The affected element is an unknown function of...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now