2025 CVE Vulnerabilities
45,347 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-5474 | HIGH | 7.3 | 0.3% | Jun 6, 2025 | 2BrightSparks SyncBackFree Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local atta... |
| CVE-2025-5473 | HIGH | 8.8 | 10.6% | Jun 6, 2025 | GIMP ICO File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers t... |
| CVE-2025-3485 | HIGH | 8.8 | 1.8% | Jun 6, 2025 | Allegra extractFileFromZip Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote att... |
| CVE-2025-2766 | HIGH | 8.8 | 0.3% | Jun 6, 2025 | 70mai A510 Use of Default Password Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attac... |
| CVE-2025-47950 | HIGH | 7.5 | 1.1% | Jun 6, 2025 | CoreDNS is a DNS server that chains plugins. In versions prior to 1.12.2, a Denial of Service (DoS) vulnerability exists... |
| CVE-2025-5784 | HIGH | 8.8 | 0.3% | Jun 6, 2025 | A vulnerability has been found in PHPGurukul Employee Record Management System 1.3 and classified as critical. This vuln... |
| CVE-2025-5750 | HIGH | 8.8 | 0.3% | Jun 6, 2025 | WOLFBOX Level 2 EV Charger tuya_svc_devos_activate_result_parse Heap-based Buffer Overflow Remote Code Execution Vulnera... |
| CVE-2025-5749 | HIGH | 8.8 | 0.2% | Jun 6, 2025 | WOLFBOX Level 2 EV Charger BLE Encryption Keys Uninitialized Variable Authentication Bypass Vulnerability. This vulnerab... |
| CVE-2025-5748 | HIGH | 8 | 0.4% | Jun 6, 2025 | WOLFBOX Level 2 EV Charger LAN OTA Exposed Dangerous Method Remote Code Execution Vulnerability. This vulnerability allo... |
| CVE-2025-5747 | HIGH | 8 | 0.4% | Jun 6, 2025 | WOLFBOX Level 2 EV Charger MCU Command Parsing Misinterpretation of Input Remote Code Execution Vulnerability. This vuln... |
| CVE-2025-33031 | HIGH | 8.8 | 0.2% | Jun 6, 2025 | An improper certificate validation vulnerability has been reported to affect File Station 5. If a remote attacker gains ... |
| CVE-2025-30279 | HIGH | 8.8 | 0.2% | Jun 6, 2025 | An improper certificate validation vulnerability has been reported to affect File Station 5. If a remote attacker gains... |
| CVE-2025-29892 | HIGH | 8.8 | 0.4% | Jun 6, 2025 | An SQL injection vulnerability has been reported to affect Qsync Central. If exploited, the vulnerability could allow re... |
| CVE-2025-29885 | HIGH | 8.8 | 0.2% | Jun 6, 2025 | An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerabi... |
| CVE-2025-29884 | HIGH | 8.8 | 0.2% | Jun 6, 2025 | An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerabi... |
| CVE-2025-29883 | HIGH | 8.8 | 0.2% | Jun 6, 2025 | An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerabi... |
| CVE-2025-29877 | HIGH | 7.5 | 0.4% | Jun 6, 2025 | A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user ... |
| CVE-2025-29876 | HIGH | 7.5 | 0.4% | Jun 6, 2025 | A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user ... |
| CVE-2025-29873 | HIGH | 7.5 | 0.4% | Jun 6, 2025 | A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user ... |
| CVE-2025-29872 | HIGH | 7.5 | 0.4% | Jun 6, 2025 | An allocation of resources without limits or throttling vulnerability has been reported to affect File Station 5. If a r... |
| CVE-2025-22490 | HIGH | 7.5 | 0.4% | Jun 6, 2025 | A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user ... |
| CVE-2025-22486 | HIGH | 8.8 | 0.2% | Jun 6, 2025 | An improper certificate validation vulnerability has been reported to affect File Station 5. If exploited, the vulnerabi... |
| CVE-2025-22484 | HIGH | 7.1 | 0.3% | Jun 6, 2025 | An allocation of resources without limits or throttling vulnerability has been reported to affect File Station 5. If a r... |
| CVE-2025-22482 | HIGH | 8.1 | 0.3% | Jun 6, 2025 | A use of externally-controlled format string vulnerability has been reported to affect Qsync Central. If exploited, the ... |
| CVE-2025-22481 | HIGH | 8.8 | 0.9% | Jun 6, 2025 | A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now