2025 CVE Vulnerabilities

45,347 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-50260HIGH7.5Tenda AC6 v15.03.05.16_multi is vulnerable to Buffer Overflow in the formSetFirewallCfg function via the firewallEn para...
CVE-2025-50258HIGH8.1Tenda AC6 v15.03.05.16_multi is vulnerable to Buffer Overflow in the SetSysTimeCfg function via the time parameter.
CVE-2025-2932HIGH8.8The JKDEVKIT plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in t...
CVE-2025-27459HIGH7.5The VNC application stores its passwords encrypted within the registry but uses DES for encryption. As DES is broken, th...
CVE-2025-27458HIGH7.5The VNC authentication mechanism bases on a challenge-response system where both server and client use the same password...
CVE-2025-27457HIGH7.5All communication between the VNC server and client(s) is unencrypted. This allows an attacker to intercept the traffic ...
CVE-2025-27452HIGH7.5The configuration of the Apache httpd webserver which serves the MEAC300-FNADE4 web application, is partly insecure. The...
CVE-2025-1711HIGH7.5Multiple services of the DUT as well as different scopes of the same service reuse the same credentials.
CVE-2025-1708HIGH7.5The application is vulnerable to SQL injection attacks. An attacker is able to dump the PostgreSQL database and read its...
CVE-2025-38172HIGH7.8In the Linux kernel, the following vulnerability has been resolved: erofs: avoid using multiple devices with different ...
CVE-2025-38159HIGH7.1In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: fix the 'para' buffer size to avoid re...
CVE-2025-38157HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: ath9k_htc: Abort software beacon handling if ...
CVE-2025-38154HIGH7.8In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Avoid using sk_socket after free when...
CVE-2025-38153HIGH7.1In the Linux kernel, the following vulnerability has been resolved: net: usb: aqc111: fix error handling of usbnet read...
CVE-2025-38146HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: Fix the dead loop of MPLS parse ...
CVE-2025-38141HIGH7.8In the Linux kernel, the following vulnerability has been resolved: dm: fix dm_blk_report_zones If dm_get_live_table()...
CVE-2025-38139HIGH7.1In the Linux kernel, the following vulnerability has been resolved: netfs: Fix oops in write-retry from mis-resetting t...
CVE-2025-38137HIGH7.8In the Linux kernel, the following vulnerability has been resolved: PCI/pwrctrl: Cancel outstanding rescan work when un...
CVE-2025-38133HIGH7.8In the Linux kernel, the following vulnerability has been resolved: iio: adc: ad4851: fix ad4858 chan pointer handling ...
CVE-2025-38131HIGH7.8In the Linux kernel, the following vulnerability has been resolved: coresight: prevent deactivate active config while e...
CVE-2025-38129HIGH7.8In the Linux kernel, the following vulnerability has been resolved: page_pool: Fix use-after-free in page_pool_recycle_...
CVE-2025-38118HIGH7.8In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Fix UAF on mgmt_remove_adv_monitor...
CVE-2025-38117HIGH7.8In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Protect mgmt_pending list with its...
CVE-2025-38116HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix uaf in ath12k_core_init() When t...
CVE-2025-38111HIGH7.1In the Linux kernel, the following vulnerability has been resolved: net/mdiobus: Fix potential out-of-bounds read/write...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now