2025 CVE Vulnerabilities

45,345 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-52953HIGH7.1An Expected Behavior Violation vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos...
CVE-2025-52952HIGH7.1An Out-of-bounds Write vulnerability in the connectivity fault management (CFM) daemon of Juniper Networks Junos OS on M...
CVE-2025-52949HIGH7.1An Improper Handling of Length Parameter Inconsistency vulnerability in the routing protocol daemon (rpd) of Juniper Net...
CVE-2025-52948HIGH8.2An Improper Handling of Exceptional Conditions vulnerability in Berkeley Packet Filter (BPF) processing of Juniper Netwo...
CVE-2025-52947HIGH7.1An Improper Handling of Exceptional Conditions vulnerability in route processing of Juniper Networks Junos OS on specifi...
CVE-2025-52946HIGH8.7A Use After Free vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Juniper Networks Ju...
CVE-2025-52089HIGH8.8A hidden remote support feature protected by a static secret in TOTOLINK N300RB firmware version 8.54 allows an authenti...
CVE-2025-30661HIGH8.5An Incorrect Permission Assignment for Critical Resource vulnerability in line card script processing of Juniper Network...
CVE-2025-50124HIGH7.2A CWE-269: Improper Privilege Management vulnerability exists that could cause privilege escalation when the server...
CVE-2025-50123HIGH7.2A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists that could cause remote comman...
CVE-2025-50122HIGH8.9A CWE-331: Insufficient Entropy vulnerability exists that could cause root password discovery when the password generati...
CVE-2025-7442HIGH7.5The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to SQL Injection via several parameters i...
CVE-2025-30025HIGH7.8The communication protocol used between the server process and the service control had a flaw that could lead to a local...
CVE-2025-7434HIGH8.8A vulnerability was found in Tenda FH451 up to 1.0.0.9 and classified as critical. Affected by this issue is the functio...
CVE-2025-7423HIGH8.8A vulnerability classified as critical was found in Tenda O3V2 1.0.0.12(3880). Affected by this vulnerability is the fun...
CVE-2025-7422HIGH8.8A vulnerability classified as critical has been found in Tenda O3V2 1.0.0.12(3880). Affected is the function setAutoRebo...
CVE-2025-7421HIGH8.8A vulnerability was found in Tenda O3V2 1.0.0.12(3880). It has been rated as critical. This issue affects the function f...
CVE-2025-7420HIGH8.8A vulnerability was found in Tenda O3V2 1.0.0.12(3880). It has been declared as critical. This vulnerability affects the...
CVE-2025-53515HIGH8.8A vulnerability exists in Advantech iView that allows for SQL injection and remote code execution through NetworkServle...
CVE-2025-53509HIGH7.1A vulnerability exists in Advantech iView that allows for argument injection in the NetworkServlet.restoreDatabase(). T...
CVE-2025-53475HIGH8.8A vulnerability exists in Advantech iView that could allow for SQL injection and remote code execution through Network...
CVE-2025-52577HIGH8.8A vulnerability exists in Advantech iView that could allow SQL injection and remote code execution through NetworkServl...
CVE-2025-52459HIGH7.1A vulnerability exists in Advantech iView that allows for argument injection in NetworkServlet.backupDatabase(). This i...
CVE-2025-50109HIGH8.5Emerson ValveLink Products store sensitive information in cleartext within a resource that might be accessible to anothe...
CVE-2025-48891HIGH7.6A vulnerability exists in Advantech iView that could allow for SQL injection through the CUtils.checkSQLInjection() fun...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now