2025 CVE Vulnerabilities

45,172 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-5475HIGH7.5Sony XAV-AX8500 Bluetooth Packet Handling Integer Overflow Remote Code Execution Vulnerability. This vulnerability allow...
CVE-2025-6373HIGH8.8A vulnerability has been found in D-Link DIR-619L 2.06B01 and classified as critical. This vulnerability affects the fun...
CVE-2025-6372HIGH8.8A vulnerability, which was classified as critical, was found in D-Link DIR-619L 2.06B01. This affects the function formS...
CVE-2025-6371HIGH8.8A vulnerability, which was classified as critical, has been found in D-Link DIR-619L 2.06B01. Affected by this issue is ...
CVE-2025-6370HIGH8.8A vulnerability classified as critical was found in D-Link DIR-619L 2.06B01. Affected by this vulnerability is the funct...
CVE-2025-6369HIGH8.8A vulnerability classified as critical has been found in D-Link DIR-619L 2.06B01. Affected is the function formdumpeasys...
CVE-2025-6368HIGH8.8A vulnerability was found in D-Link DIR-619L 2.06B01. It has been rated as critical. This issue affects the function for...
CVE-2025-6367HIGH8.8A vulnerability was found in D-Link DIR-619L 2.06B01. It has been declared as critical. This vulnerability affects unkno...
CVE-2025-6365HIGH7.5A vulnerability was found in HobbesOSR Kitten up to c4f8b7c3158983d1020af432be1b417b28686736 and classified as critical....
CVE-2025-48945HIGH8.2pycares is a Python module which provides an interface to c-ares. c-ares is a C library that performs DNS requests and n...
CVE-2025-34029HIGH8.8An OS command injection vulnerability exists in the Edimax EW-7438RPn Mini firmware version 1.13 and prior via the syscm...
CVE-2025-34024HIGH8.8An OS command injection vulnerability exists in the Edimax EW-7438RPn firmware version 1.13 and prior via the mp.asp for...
CVE-2025-34023HIGH8.5A path traversal vulnerability exists in the Karel IP1211 IP Phone's web management panel. The /cgi-bin/cgiServer.exx en...
CVE-2025-34021HIGH7.8A server-side request forgery (SSRF) vulnerability exists in multiple Selea Targa IP OCR-ANPR camera models, including i...
CVE-2025-45331HIGH7.5brplot v420.69.1 contains a Null Pointer Dereference (NPD) vulnerability in the br_dagens_handle_once function of its da...
CVE-2025-44203HIGH7.5In HotelDruid 3.0.0 and 3.0.7, the unauthenticated database-setup endpoint creadb.php can be reached before setup is com...
CVE-2025-52825HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Rameez Iqbal Real Estate Manager real-estate-manager allows Privilege...
CVE-2025-52822HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Iqonic Design WP R...
CVE-2025-52821HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in thanhtungtnt Video...
CVE-2025-52802HIGH7.5Missing Authorization vulnerability in enguerranws Import YouTube videos as WP Posts import-youtube-videos-as-wp-post al...
CVE-2025-52795HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in aharonyan WP Front User Submit / Front Editor front-editor allows Cro...
CVE-2025-52794HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in Creative-Solutions Creative Contact Form sexy-contact-form allows Sto...
CVE-2025-52793HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in Esselink.nu Esselink.nu Settings esselinknu-settings allows Reflected...
CVE-2025-52792HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in vgstef WP User Stylesheet Switcher wp-user-stylesheet-switcher allows...
CVE-2025-52791HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in devfelixmoira Knowledge Base – Knowledge Base Maker knowledge-base-ma...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now