2025 CVE Vulnerabilities
45,184 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-46628 | HIGH | 7.3 | 1.7% | May 1, 2025 | Lack of input validation/sanitization in the 'ate' management service in the Tenda RX2 Pro 16.03.30.14 allows an unautho... |
| CVE-2025-46627 | HIGH | 8.2 | 0.4% | May 1, 2025 | Use of weak credentials in the Tenda RX2 Pro 16.03.30.14 allows an unauthenticated attacker to authenticate to the telne... |
| CVE-2025-46626 | HIGH | 7.3 | 0.2% | May 1, 2025 | Reuse of a static AES key and initialization vector for encrypted traffic to the 'ate' management service of the Tenda R... |
| CVE-2025-46625 | HIGH | 8.8 | 0.8% | May 1, 2025 | Lack of input validation/sanitization in the 'setLanCfg' API endpoint in httpd in the Tenda RX2 Pro 16.03.30.14 allows a... |
| CVE-2025-46569 | HIGH | 7.4 | 0.4% | May 1, 2025 | Open Policy Agent (OPA) is an open source, general-purpose policy engine. Prior to version 1.4.0, when run as a server, ... |
| CVE-2025-36521 | HIGH | 8.8 | 0.4% | May 1, 2025 | MicroDicom DICOM Viewer is vulnerable to an out-of-bounds read which may allow an attacker to cause memory corruption wi... |
| CVE-2025-35975 | HIGH | 8.8 | 0.5% | May 1, 2025 | MicroDicom DICOM Viewer is vulnerable to an out-of-bounds write which may allow an attacker to execute arbitrary code. T... |
| CVE-2025-46568 | HIGH | 7.5 | 0.4% | May 1, 2025 | Stirling-PDF is a locally hosted web application that allows you to perform various operations on PDF files. Prior to ve... |
| CVE-2025-46567 | HIGH | 7.8 | 0.2% | May 1, 2025 | LLama Factory enables fine-tuning of large language models. Prior to version 1.0.0, a critical vulnerability exists in t... |
| CVE-2025-32889 | HIGH | 8.8 | 0.2% | May 1, 2025 | An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The verification token used for sendin... |
| CVE-2025-32888 | HIGH | 8.8 | 0.2% | May 1, 2025 | An issue was discovered on goTenna Mesh devices with app 5.5.3 and firmware 1.1.12. The verification token used for send... |
| CVE-2025-4173 | HIGH | 8.8 | 0.4% | May 1, 2025 | A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0. Affected by this vulnerabili... |
| CVE-2025-37796 | HIGH | 7.8 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: wifi: at76c50x: fix use after free access in at76_d... |
| CVE-2025-37789 | HIGH | 7.8 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: fix nested key length validation ... |
| CVE-2025-37786 | HIGH | 7.8 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: dsa: free routing table on probe failure If c... |
| CVE-2025-37780 | HIGH | 7.1 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: isofs: Prevent the use of too small fid syzbot rep... |
| CVE-2025-37778 | HIGH | 7.8 | 0.5% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix dangling pointer in krb_authenticate kr... |
| CVE-2025-37777 | HIGH | 7.8 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in __smb2_lease_break_not... |
| CVE-2025-37776 | HIGH | 7 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in smb_break_all_levII_op... |
| CVE-2025-37763 | HIGH | 7.8 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/imagination: take paired job reference For pai... |
| CVE-2025-37761 | HIGH | 7.1 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix an out-of-bounds shift when invalidatin... |
| CVE-2025-23254 | HIGH | 8.8 | 0.2% | May 1, 2025 | NVIDIA TensorRT-LLM for any platform contains a vulnerability in python executor where an attacker may cause a data vali... |
| CVE-2025-23244 | HIGH | 7.8 | 0.2% | May 1, 2025 | NVIDIA GPU Display Driver for Linux contains a vulnerability which could allow an unprivileged attacker to escalate perm... |
| CVE-2025-37752 | HIGH | 7.8 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: net_sched: sch_sfq: move the limit validation It i... |
| CVE-2025-37750 | HIGH | 7.8 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix UAF in decryption with multichanne... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now