2025 CVE Vulnerabilities
45,172 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-44179 | MEDIUM | 6.5 | 0.8% | Aug 25, 2025 | Hitron CGNF-TWN 3.1.1.43-TWN-pre3 contains a command injection vulnerability in the telnet service. The issue arises due... |
| CVE-2025-44178 | MEDIUM | 6.5 | 0.3% | Aug 25, 2025 | DASAN GPON ONU H660WM H660WMR210825 is susceptible to improper access control under its default settings. Attackers can ... |
| CVE-2025-29525 | MEDIUM | 5.3 | 0.3% | Aug 25, 2025 | DASAN GPON ONU H660WM OS version H660WMR210825 Hardware version DS-E5-583-A1 was discovered to contain insecure default ... |
| CVE-2025-29524 | MEDIUM | 6.5 | 0.3% | Aug 25, 2025 | Incorrect access control in the component /cgi-bin/system_diagnostic_main.asp of DASAN GPON ONU H660WM H660WMR210825 all... |
| CVE-2025-29522 | MEDIUM | 6.5 | 1.4% | Aug 25, 2025 | D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 was discovered to contain a command injection vulnerability vi... |
| CVE-2025-29521 | MEDIUM | 5.3 | 0.5% | Aug 25, 2025 | Insecure default credentials for the Adminsitrator account of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 ... |
| CVE-2025-29520 | MEDIUM | 5.3 | 0.5% | Aug 25, 2025 | Incorrect access control in the Maintenance module of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows a... |
| CVE-2025-29519 | MEDIUM | 5.3 | 1.7% | Aug 25, 2025 | A command injection vulnerability in the EXE parameter of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allo... |
| CVE-2025-29517 | MEDIUM | 6.8 | 1.6% | Aug 25, 2025 | D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 was discovered to contain a command injection vulnerability vi... |
| CVE-2025-9407 | MEDIUM | 5.4 | 0.2% | Aug 25, 2025 | A flaw has been found in mtons mblog up to 3.5.0. Affected by this vulnerability is an unknown functionality of the file... |
| CVE-2025-8562 | MEDIUM | 6.5 | 0.4% | Aug 25, 2025 | The Custom Query Shortcode plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 0.... |
| CVE-2025-48303 | MEDIUM | 4.3 | 0.1% | Aug 25, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Kevin Langley Jr. Post Type Converter post-type-converter allows Cros... |
| CVE-2025-8997 | MEDIUM | 5.7 | 0.3% | Aug 25, 2025 | An Information Exposure vulnerability has been identified in OpenText Enterprise Security Manager. The vulnerability cou... |
| CVE-2025-5514 | MEDIUM | 5.3 | 0.5% | Aug 25, 2025 | Improper Handling of Length Parameter Inconsistency vulnerability in web server function on Mitsubishi Electric Corporat... |
| CVE-2025-9405 | MEDIUM | 5.5 | 0.6% | Aug 25, 2025 | A security flaw has been discovered in Open5GS up to 2.7.5. The impacted element is the function gmm_state_exception of ... |
| CVE-2025-9404 | MEDIUM | 5.4 | 0.3% | Aug 25, 2025 | A vulnerability was identified in Scada-LTS up to 2.7.8.1. The affected element is an unknown function of the file /poin... |
| CVE-2025-9403 | MEDIUM | 5.5 | 0.2% | Aug 25, 2025 | A vulnerability was determined in jqlang jq up to 1.6. Impacted is the function run_jq_tests of the file jq_test.c of th... |
| CVE-2025-9396 | MEDIUM | 5.5 | 0.2% | Aug 24, 2025 | A security flaw has been discovered in ckolivas lrzip up to 0.651. This impacts the function __GI_____strtol_l_internal ... |
| CVE-2025-9395 | MEDIUM | 6.3 | 0.2% | Aug 24, 2025 | A vulnerability was identified in wangsongyan wblog 0.0.1. This affects the function RestorePost of the file backup.go. ... |
| CVE-2025-9394 | MEDIUM | 5.5 | 0.2% | Aug 24, 2025 | A flaw has been found in PoDoFo 1.1.0-dev. This issue affects the function PdfTokenizer::DetermineDataType of the file s... |
| CVE-2025-9390 | MEDIUM | 5.5 | 0.2% | Aug 24, 2025 | A security flaw has been discovered in vim up to 9.1.1615. Affected by this vulnerability is the function main of the fi... |
| CVE-2025-9389 | MEDIUM | 5.5 | 0.2% | Aug 24, 2025 | A vulnerability was identified in vim 9.1.0000. Affected is the function __memmove_avx_unaligned_erms of the file memmov... |
| CVE-2025-9388 | MEDIUM | 5.4 | 0.3% | Aug 24, 2025 | A vulnerability was determined in Scada-LTS up to 2.7.8.1. This impacts an unknown function of the file watch_list.shtm.... |
| CVE-2025-9386 | MEDIUM | 5.5 | 0.2% | Aug 24, 2025 | A vulnerability has been found in appneta tcpreplay up to 4.5.1. The impacted element is the function get_l2len_protocol... |
| CVE-2025-9385 | MEDIUM | 5.5 | 0.2% | Aug 24, 2025 | A flaw has been found in appneta tcpreplay up to 4.5.1. The affected element is the function fix_ipv6_checksums of the f... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now