2025 CVE Vulnerabilities
45,203 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-47913 | HIGH | 7.5 | 0.6% | Nov 13, 2025 | SSH clients receiving SSH_AGENT_SUCCESS when expecting a typed response will panic and cause early termination of the cl... |
| CVE-2025-36251 | CRITICAL | 9.8 | 0.5% | Nov 13, 2025 | IBM AIX 7.2, and 7.3 and IBM VIOS 3.1, and 4.1 nimsh service SSL/TLS implementations could allow a remote attacker to ex... |
| CVE-2025-36250 | CRITICAL | 9.8 | 0.6% | Nov 13, 2025 | IBM AIX 7.2, and 7.3 and IBM VIOS 3.1, and 4.1 NIM server (formerly known as NIM master) service (nimesis) could allow a... |
| CVE-2025-36236 | CRITICAL | 9.1 | 0.4% | Nov 13, 2025 | IBM AIX 7.2, and 7.3 and IBM VIOS 3.1, and 4.1 NIM server (formerly known as NIM master) service (nimesis) could allow a... |
| CVE-2025-36096 | HIGH | 8.1 | 0.3% | Nov 13, 2025 | IBM AIX 7.2, and 7.3 and IBM VIOS 3.1, and 4.1 stores NIM private keys used in NIM environments in an insecure way which... |
| CVE-2025-13131 | HIGH | 8.5 | 0.1% | Nov 13, 2025 | A vulnerability was found in Sonarr 4.0.15.2940. The impacted element is an unknown function of the file C:\ProgramData\... |
| CVE-2025-13130 | HIGH | 8.5 | 0.1% | Nov 13, 2025 | A vulnerability has been found in Radarr 5.28.0.10274. The affected element is an unknown function of the file C:\Progra... |
| CVE-2025-64746 | MEDIUM | 5.4 | 0.2% | Nov 13, 2025 | Directus is a real-time API and App dashboard for managing SQL database content. Prior to version 11.13.0, Directus does... |
| CVE-2025-64745 | MEDIUM | 6.1 | 0.2% | Nov 13, 2025 | Astro is a web framework. Starting in version 5.2.0 and prior to version 5.15.6, a Reflected Cross-Site Scripting (XSS) ... |
| CVE-2025-64744 | LOW | 3.5 | 0.2% | Nov 13, 2025 | OpenObserve is a cloud-native observability platform. In versions up to and including 0.16.1, when creating or renaming ... |
| CVE-2025-4619 | MEDIUM | 6.6 | 0.5% | Nov 13, 2025 | A denial-of-service (DoS) vulnerability in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to reb... |
| CVE-2025-47222 | MEDIUM | 6.5 | 0.3% | Nov 13, 2025 | A class name enumeration was found in Keyfactor SignServer versions prior to 7.3.2. Setting any chosen class name to any... |
| CVE-2025-47221 | MEDIUM | 5.3 | 0.2% | Nov 13, 2025 | An arbitrary file write was found in Keyfactor SignServer versions prior to 7.3.2. The properties ARCHIVETODISK_FILENAME... |
| CVE-2025-47220 | MEDIUM | 5.3 | 0.2% | Nov 13, 2025 | A local file enumeration was found in Keyfactor SignServer versions prior to 7.3.2 .The property VISIBLE_SIGNATURE_CUSTO... |
| CVE-2025-64726 | HIGH | 7.3 | 0.1% | Nov 13, 2025 | Socket Firewall is an HTTP/HTTPS proxy server that intercepts package manager requests and enforces security policies by... |
| CVE-2025-64709 | CRITICAL | 9.9 | 0.3% | Nov 13, 2025 | Typebot is an open-source chatbot builder. In versions prior to 3.13.1, a Server-Side Request Forgery (SSRF) vulnerabili... |
| CVE-2025-60702 | MEDIUM | 6.5 | 2.3% | Nov 13, 2025 | A command injection vulnerability exists in the TOTOLINK A950RG Router firmware V5.9c.4592_B20191022_ALL within the `sys... |
| CVE-2025-60699 | MEDIUM | 6.5 | 0.8% | Nov 13, 2025 | A buffer overflow vulnerability exists in the TOTOLINK A950RG Router firmware V5.9c.4592_B20191022_ALL within the `globa... |
| CVE-2025-60679 | HIGH | 8.8 | 0.6% | Nov 13, 2025 | A stack buffer overflow vulnerability exists in the D-Link DIR-816A2 router firmware DIR-816A2_FWv1.10CNB05_R1B011D88210... |
| CVE-2025-59840 | HIGH | 8.1 | 0.3% | Nov 13, 2025 | Vega is a visualization grammar, a declarative format for creating, saving, and sharing interactive visualization design... |
| CVE-2025-55810 | MEDIUM | 6.8 | 0.2% | Nov 13, 2025 | A vulnerability was found in Alaga Home Security WiFi Camera 3K (model S-CW2503C-H) with hardware version V03 and firmwa... |
| CVE-2025-46370 | MEDIUM | 5.5 | 0.1% | Nov 13, 2025 | Dell Alienware Command Center 6.x (AWCC), versions prior to 6.10.15.0, contain a Process Control vulnerability. A low pr... |
| CVE-2025-46369 | HIGH | 7.8 | 0.1% | Nov 13, 2025 | Dell Alienware Command Center 6.x (AWCC), versions prior to 6.10.15.0, contains an Insecure Temporary File vulnerability... |
| CVE-2025-46368 | MEDIUM | 5.5 | 0.1% | Nov 13, 2025 | Dell Alienware Command Center 6.x (AWCC), versions prior to 6.10.15.0, contains an Insecure Temporary File vulnerability... |
| CVE-2025-46367 | HIGH | 7.8 | 0.1% | Nov 13, 2025 | Dell Alienware Command Center 6.x (AWCC), versions prior to 6.10.15.0, contain a Detection of Error Condition Without Ac... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now