2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-7631HIGH8.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Tumeva Internet Te...
CVE-2025-12062HIGH8.8The WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters plugin for WordPress is vulnera...
CVE-2025-65716HIGH8.8An issue in Visual Studio Code Extensions Markdown Preview Enhanced v0.8.18 allows attackers to execute arbitrary code v...
CVE-2025-65715HIGH7.8An issue in the code-runner.executorMap setting of Visual Studio Code Extensions Code Runner v0.12.2 allows attackers to...
CVE-2025-32062HIGH8.8The specific flaw exists within the Bluetooth stack developed by Alps Alpine of the Infotainment ECU manufactured by Bos...
CVE-2025-32061HIGH8.8The specific flaw exists within the Bluetooth stack developed by Alps Alpine of the Infotainment ECU manufactured by Bos...
CVE-2025-32059HIGH8.8The specific flaw exists within the Bluetooth stack developed by Alps Alpine of the Infotainment ECU manufactured by Bos...
CVE-2025-71221HIGH7In the Linux kernel, the following vulnerability has been resolved: dmaengine: mmp_pdma: Fix race condition in mmp_pdma...
CVE-2025-71220HIGH7.8In the Linux kernel, the following vulnerability has been resolved: smb/server: call ksmbd_session_rpc_close() on error...
CVE-2025-71203HIGH7In the Linux kernel, the following vulnerability has been resolved: riscv: Sanitize syscall table indexing under specul...
CVE-2025-71201HIGH7.1In the Linux kernel, the following vulnerability has been resolved: netfs: Fix early read unlock of page with EOF in mi...
CVE-2025-70957HIGH7.5A Denial of Service (DoS) vulnerability was discovered in the TON Lite Server before v2024.09. The vulnerability arises ...
CVE-2025-70956HIGH7.5A State Pollution vulnerability was discovered in the TON Virtual Machine (TVM) before v2025.04. The issue exists in the...
CVE-2025-70955HIGH7.5A Stack Overflow vulnerability was discovered in the TON Virtual Machine (TVM) before v2024.10. The vulnerability stems ...
CVE-2025-70954HIGH7.5A Null Pointer Dereference vulnerability exists in the TON Virtual Machine (TVM) within the TON Blockchain before v2025....
CVE-2025-70866HIGH8.8LavaLite CMS 10.1.0 is vulnerable to Incorrect Access Control. An authenticated user with low-level privileges (User rol...
CVE-2025-15157HIGH8.8The Starfish Review Generation & Marketing for WordPress plugin for WordPress is vulnerable to unauthorized modification...
CVE-2025-70123HIGH7.5An improper input validation and protocol compliance vulnerability in free5GC v4.0.1 allows remote attackers to cause a ...
CVE-2025-70122HIGH7.5A heap buffer overflow vulnerability in the UPF component of free5GC v4.0.1 allows remote attackers to cause a denial of...
CVE-2025-70121HIGH7.5An array index out of bounds vulnerability in the AMF component of free5GC v4.0.1 allows remote attackers to cause a den...
CVE-2025-70093HIGH7.4An issue in OpenSourcePOS v3.4.1 allows attackers to execute arbitrary code via returning a crafted AJAX response.
CVE-2025-14349HIGH8.8Privilege Defined With Unsafe Actions, Missing Authentication for Critical Function vulnerability in Universal Software ...
CVE-2025-33042HIGH7.3Improper Control of Generation of Code ('Code Injection') vulnerability in Apache Avro Java SDK when generating specific...
CVE-2025-1924HIGH8.2A vulnerability has been found in Vnet/IP Interface Package provided by Yokogawa Electric Corporation. If affected produ...
CVE-2025-9293HIGH8.1A vulnerability in the certificate validation logic may allow applications to accept untrusted or improperly validated s...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now