2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-14858 | MEDIUM | 5.1 | 0.1% | Apr 7, 2026 | The Semtech LR11xx LoRa transceivers running early versions of firmware contains an information disclosure vulnerability... |
| CVE-2025-14857 | MEDIUM | 5.4 | 0.2% | Apr 7, 2026 | An improper access control vulnerability exists in Semtech LoRa LR11xxx transceivers running early versions of firmware ... |
| CVE-2025-71058 | CRITICAL | 9.1 | 0.5% | Apr 7, 2026 | Dual DHCP DNS Server 8.01 improperly accepts and caches UDP DNS responses without validating that the response originate... |
| CVE-2025-70844 | MEDIUM | 6.1 | 0.3% | Apr 7, 2026 | yaffa v2.0.0 is vulnerable to Cross Site Scripting (XSS). An attacker can inject malicious JavaScript into the "Add Acco... |
| CVE-2025-14944 | MEDIUM | 5.3 | 0.6% | Apr 7, 2026 | The Backup Migration plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 2... |
| CVE-2025-14821 | HIGH | 7 | 0.1% | Apr 7, 2026 | A flaw was found in libssh. This vulnerability allows local man-in-the-middle attacks, security downgrades of SSH (Secur... |
| CVE-2025-52908 | CRITICAL | 9.8 | 0.5% | Apr 7, 2026 | An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1280, 13... |
| CVE-2025-24819 | MEDIUM | 5.7 | 0.2% | Apr 7, 2026 | Nokia MantaRay NM is vulnerable to a Relative Path Traversal vulnerability due to improper validation of input parameter... |
| CVE-2025-24818 | HIGH | 8 | 1.0% | Apr 7, 2026 | Nokia MantaRay NM is vulnerable to an OS command injection vulnerability due to improper neutralization of special eleme... |
| CVE-2025-24817 | HIGH | 8 | 1.0% | Apr 7, 2026 | Nokia MantaRay NM is vulnerable to an OS command injection vulnerability due to improper neutralization of special eleme... |
| CVE-2025-62818 | CRITICAL | 9.8 | 0.5% | Apr 7, 2026 | An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 128... |
| CVE-2025-52909 | CRITICAL | 9.8 | 0.5% | Apr 7, 2026 | An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1280, 13... |
| CVE-2025-39666 | HIGH | 7.3 | 0.1% | Apr 7, 2026 | Local privilege escalation in Checkmk 2.2.0 (EOL), Checkmk 2.3.0 before 2.3.0p46, Checkmk 2.4.0 before 2.4.0p25, and Che... |
| CVE-2025-15611 | MEDIUM | 5.4 | 0.1% | Apr 7, 2026 | The Popup Box WordPress plugin before 5.5.0 does not properly validate nonces in the add_or_edit_popupbox() function be... |
| CVE-2025-65116 | MEDIUM | 5.5 | 0.1% | Apr 7, 2026 | Buffer Overflow Vulnerability in JP1/IT Desktop Management 2 - Manager on Windows, JP1/IT Desktop Management 2 - Operati... |
| CVE-2025-65115 | CRITICAL | 9.8 | 0.6% | Apr 7, 2026 | Remote Code Execution Vulnerability in JP1/IT Desktop Management 2 - Manager on Windows, JP1/IT Desktop Management 2 - O... |
| CVE-2025-13044 | MEDIUM | 6.2 | 0.1% | Apr 7, 2026 | IBM Concert 1.0.0 through 2.2.0 creates temporary files with predictable names, which allows local users to overwrite ar... |
| CVE-2025-54601 | HIGH | 7 | 0.1% | Apr 6, 2026 | An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor amd Wearable Processor Exynos 980, 850, 1080, 12... |
| CVE-2025-57834 | HIGH | 7.5 | 0.4% | Apr 6, 2026 | An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem (Exynos 980, 850, 990, 1080, 2100, 12... |
| CVE-2025-54602 | HIGH | 7 | 0.1% | Apr 6, 2026 | An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12... |
| CVE-2025-54328 | CRITICAL | 10 | 0.5% | Apr 6, 2026 | An issue was discovered in SMS in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 21... |
| CVE-2025-58349 | CRITICAL | 9.1 | 0.3% | Apr 6, 2026 | An issue was discovered in L2 in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 210... |
| CVE-2025-54324 | HIGH | 7.5 | 0.3% | Apr 6, 2026 | An issue was discovered in NAS in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 21... |
| CVE-2025-48651 | MEDIUM | 5.5 | 0.1% | Apr 6, 2026 | In importWrappedKey of KMKeymasterApplet.java, there is a possible way access keys that should be restricted due to impr... |
| CVE-2025-61166 | MEDIUM | 6.1 | 0.2% | Apr 6, 2026 | An open redirect in Ascertia SigningHub User v10.0 allows attackers to redirect users to a malicious site via a crafted ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now