2025 CVE Vulnerabilities
45,172 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-6627 | HIGH | 8.8 | 3.2% | Jun 25, 2025 | A vulnerability has been found in TOTOLINK A702R 4.0.0-B20230721.1521 and classified as critical. This vulnerability aff... |
| CVE-2025-6678 | HIGH | 7.5 | 0.4% | Jun 25, 2025 | Autel MaxiCharger AC Wallbox Commercial PIN Missing Authentication Information Disclosure Vulnerability. This vulnerabil... |
| CVE-2025-6445 | HIGH | 8.1 | 1.1% | Jun 25, 2025 | ServiceStack FindType Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attacker... |
| CVE-2025-5834 | HIGH | 7.8 | 0.2% | Jun 25, 2025 | Pioneer DMH-WT7600NEX Missing Immutable Root of Trust in Hardware Local Privilege Escalation Vulnerability. This vulnera... |
| CVE-2025-5830 | HIGH | 8.8 | 0.3% | Jun 25, 2025 | Autel MaxiCharger AC Wallbox Commercial DLB_SlaveRegister Heap-based Buffer Overflow Remote Code Execution Vulnerability... |
| CVE-2025-5827 | HIGH | 8.8 | 0.3% | Jun 25, 2025 | Autel MaxiCharger AC Wallbox Commercial ble_process_esp32_msg Stack-based Buffer Overflow Remote Code Execution Vulnerab... |
| CVE-2025-5825 | HIGH | 7.5 | 0.2% | Jun 25, 2025 | Autel MaxiCharger AC Wallbox Commercial Firmware Downgrade Remote Code Execution Vulnerability. This vulnerability allow... |
| CVE-2025-5824 | HIGH | 7.5 | 0.1% | Jun 25, 2025 | Autel MaxiCharger AC Wallbox Commercial Origin Validation Error Authentication Bypass Vulnerability. This vulnerability ... |
| CVE-2025-5822 | HIGH | 8.8 | 0.3% | Jun 25, 2025 | Autel MaxiCharger AC Wallbox Commercial Technician API Incorrect Authorization Privilege Escalation Vulnerability. This ... |
| CVE-2025-45332 | HIGH | 7.5 | 0.3% | Jun 25, 2025 | vkoskiv c-ray 1.1 contains a Null Pointer Dereference (NPD) vulnerability in the parse_mtllib function of its data proce... |
| CVE-2025-6617 | HIGH | 8.8 | 0.8% | Jun 25, 2025 | A vulnerability was found in D-Link DIR-619L 2.06B01 and classified as critical. This issue affects the function formAdv... |
| CVE-2025-6616 | HIGH | 8.8 | 0.8% | Jun 25, 2025 | A vulnerability has been found in D-Link DIR-619L 2.06B01 and classified as critical. This vulnerability affects the fun... |
| CVE-2025-5015 | HIGH | 8.8 | 0.3% | Jun 25, 2025 | A cross-site scripting vulnerability exists in the AccuWeather and Custom RSS widget that allows an unauthenticated user... |
| CVE-2025-52999 | HIGH | 8.7 | 0.6% | Jun 25, 2025 | jackson-core contains core low-level incremental ("streaming") parser and generator abstractions used by Jackson Data Pr... |
| CVE-2025-52894 | HIGH | 7.5 | 0.3% | Jun 25, 2025 | OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certifi... |
| CVE-2025-52890 | HIGH | 8.1 | 0.2% | Jun 25, 2025 | Incus is a system container and virtual machine manager. When using an ACL on a device connected to a bridge, Incus vers... |
| CVE-2025-49152 | HIGH | 8.7 | 0.4% | Jun 25, 2025 | The affected products contain JSON Web Tokens (JWT) that do not expire, which could allow an attacker to gain access to ... |
| CVE-2025-6615 | HIGH | 8.8 | 0.8% | Jun 25, 2025 | A vulnerability, which was classified as critical, was found in D-Link DIR-619L 2.06B01. This affects the function formA... |
| CVE-2025-6614 | HIGH | 8.8 | 0.8% | Jun 25, 2025 | A vulnerability, which was classified as critical, has been found in D-Link DIR-619L 2.06B01. Affected by this issue is ... |
| CVE-2025-52479 | HIGH | 7.7 | 0.4% | Jun 25, 2025 | HTTP.jl provides HTTP client and server functionality for Julia, and URIs.jl parses and works with Uniform Resource Iden... |
| CVE-2025-49845 | HIGH | 7.5 | 0.3% | Jun 25, 2025 | Discourse is an open-source discussion platform. The visibility of posts typed `whisper` is controlled via the `whispers... |
| CVE-2025-25905 | HIGH | 7.1 | 0.4% | Jun 25, 2025 | Cross-Site Scripting (XSS) vulnerability in CADClick v1.13.0 and before allows remote attackers to inject arbitrary web ... |
| CVE-2025-6610 | HIGH | 7.2 | 0.3% | Jun 25, 2025 | A vulnerability was found in itsourcecode Employee Management System up to 1.0. It has been classified as critical. This... |
| CVE-2025-6609 | HIGH | 8.8 | 0.4% | Jun 25, 2025 | A vulnerability was found in SourceCodester Best Salon Management System 1.0 and classified as critical. Affected by thi... |
| CVE-2025-6608 | HIGH | 8.8 | 0.4% | Jun 25, 2025 | A vulnerability has been found in SourceCodester Best Salon Management System 1.0 and classified as critical. Affected b... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now