2025 CVE Vulnerabilities

45,184 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-65408MEDIUM6.5A NULL pointer dereference in the ADTSAudioFileServerMediaSubsession::createNewRTPSink() function of Live555 Streaming M...
CVE-2025-65406MEDIUM6.5A heap overflow in the MatroskaFile::createRTPSinkForTrackNumber() function of Live555 Streaming Media v2018.09.02 allow...
CVE-2025-8351HIGH7.8Heap-based Buffer Overflow, Out-of-bounds Read vulnerability in Avira Antivirus engine when scanning a malformed file ma...
CVE-2025-65405MEDIUM6.5A use-after-free in the ADTSAudioFileSource::samplingFrequency() function of Live555 Streaming Media v2018.09.02 allows ...
CVE-2025-65404MEDIUM6.5A buffer overflow in the getSideInfo2() function of Live555 Streaming Media v2018.09.02 allows attackers to cause a Deni...
CVE-2025-65403MEDIUM6.5A buffer overflow in the g_cfg.MaxUsers component of LightFTP v2.0 allows attackers to cause a Denial of Service (DoS) v...
CVE-2025-64775HIGH7.5Denial of Service vulnerability in Apache Struts, file leak in multipart request processing causes disk exhaustion. Thi...
CVE-2025-63535HIGH8.8A SQL injection vulnerability exists in the Blood Bank Management System 1.0 within the abs.php component. The applicati...
CVE-2025-63534MEDIUM5.4A cross-site scripting (XSS) vulnerability exists in the Blood Bank Management System 1.0 within the login.php component...
CVE-2025-63533MEDIUM5.4A cross-site scripting (XSS) vulnerability exists in the Blood Bank Management System 1.0 within the updateprofile.php a...
CVE-2025-63532HIGH8.8A SQL injection vulnerability exists in the Blood Bank Management System 1.0 within the cancel.php component. The applic...
CVE-2025-63095MEDIUM6.5Improper input validation in the BitstreamWriter::write_bits() function of Tempus Ex hello-video-codec v0.1.0 allows att...
CVE-2025-61229HIGH7.8An issue in Shirt Pocket's SuperDuper! 3.10 and earlier allow a local attacker to modify the default task template to ex...
CVE-2025-61228HIGH7.8An issue in Shirt Pocket SuperDuper! V.3.10 and before allows a local attacker to execute arbitrary code via the softwar...
CVE-2025-57489HIGH8.1Incorrect access control in the SDAgent component of Shirt Pocket SuperDuper! v3.10 allows attackers to escalate privile...
CVE-2025-55222HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP USB Function functionality of Socomec...
CVE-2025-55221HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP USB Function functionality of Socomec...
CVE-2025-54851HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP functionality of Socomec DIRIS Digiwa...
CVE-2025-54850HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP functionality of Socomec DIRIS Digiwa...
CVE-2025-54849HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP functionality of Socomec DIRIS Digiwa...
CVE-2025-54848HIGH7.5A denial of service vulnerability exists in the Modbus TCP and Modbus RTU over TCP functionality of Socomec DIRIS Digiwa...
CVE-2025-3500CRITICAL9.8Integer Overflow or Wraparound vulnerability in Avast Antivirus (25.1.981.6) on Windows allows Privilege Escalation.This...
CVE-2025-26858HIGH7.5A buffer overflow vulnerability exists in the Modbus TCP functionality of Socomec DIRIS Digiware M-70 1.6.9. A specially...
CVE-2025-23417HIGH7.5A denial of service vulnerability exists in the Modbus RTU over TCP functionality of Socomec DIRIS Digiware M-70 1.6.9. ...
CVE-2025-20085MEDIUM6.5A denial of service vulnerability exists in the Modbus RTU over TCP functionality of Socomec DIRIS Digiware M-70 1.6.9. ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now