2025 CVE Vulnerabilities

45,172 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-21422HIGH7.8Cryptographic issue while processing crypto API calls, missing checks may lead to corrupted key usage or IV reuses.
CVE-2025-7177HIGH7.2A vulnerability was found in PHPGurukul Car Washing Management System 1.0. It has been rated as critical. Affected by th...
CVE-2025-40718HIGH7.5Improper error handling vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows ...
CVE-2025-7175HIGH7.2A vulnerability was found in code-projects E-Commerce Site 1.0. It has been classified as critical. Affected is an unkno...
CVE-2025-41224HIGH8.8A vulnerability has been identified in RUGGEDCOM RMC8388 V5.X (All versions < V5.10.0), RUGGEDCOM RMC8388NC V5.X (All ve...
CVE-2025-40741HIGH7.8A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 5). The affected applications con...
CVE-2025-40740HIGH7.8A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 5). The affected applications con...
CVE-2025-40739HIGH7.8A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 5). The affected applications con...
CVE-2025-40738HIGH8.8A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected application does not properly valid...
CVE-2025-40737HIGH8.8A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected application does not properly valid...
CVE-2025-40735HIGH8.8A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected devices are vulnerable to SQL injec...
CVE-2025-40593HIGH7.1A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0). The affected application allows to control...
CVE-2025-23365HIGH8.5A vulnerability has been identified in TIA Administrator (All versions < V3.0.6). The affected application allows low-pr...
CVE-2025-23364HIGH8.4A vulnerability has been identified in TIA Administrator (All versions < V3.0.6). The affected application improperly va...
CVE-2025-21006HIGH7.8Out-of-bounds write in handling of macro blocks for MPEG4 codec in libsavsvc.so prior to Android 15 allows local attacke...
CVE-2025-6744HIGH7.3The The Woodmart theme for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including...
CVE-2025-38236HIGH7.8In the Linux kernel, the following vulnerability has been resolved: af_unix: Don't leave consecutive consumed OOB skbs....
CVE-2025-7346HIGH8.7Any unauthenticated attacker can bypass the localhost restrictions posed by the application and utilize this to create ...
CVE-2025-7167HIGH8.8A vulnerability was found in code-projects Responsive Blog Site 1.0. It has been declared as critical. This vulnerabilit...
CVE-2025-7166HIGH8.8A vulnerability was found in code-projects Responsive Blog Site 1.0. It has been classified as critical. This affects an...
CVE-2025-6746HIGH8.8The WoodMart plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 8.2.3 via ...
CVE-2025-41668HIGH8.8A low privileged remote attacker with file access can replace a critical file or folder used by the service security-pro...
CVE-2025-41667HIGH8.8A low privileged remote attacker with file access can replace a critical file used by the arp-preinit script to get read...
CVE-2025-41666HIGH8.8A low privileged remote attacker with file access can replace a critical file used by the watchdog to get read, write an...
CVE-2025-25271HIGH8.8An unauthenticated adjacent attacker is able to configure a new OCPP backend, due to insecure defaults for the configura...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now