2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-1433 | HIGH | 7.8 | 0.2% | Mar 13, 2025 | A maliciously crafted MODEL file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerability. A... |
| CVE-2025-1432 | HIGH | 7.8 | 0.3% | Mar 13, 2025 | A maliciously crafted 3DM file, when parsed through Autodesk AutoCAD, can force a Use-After-Free vulnerability. A malici... |
| CVE-2025-1431 | HIGH | 7.8 | 0.2% | Mar 13, 2025 | A maliciously crafted SLDPRT file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerability. ... |
| CVE-2025-1430 | HIGH | 7.8 | 0.2% | Mar 13, 2025 | A maliciously crafted SLDPRT file, when parsed through Autodesk AutoCAD, can force a Memory Corruption vulnerability. A ... |
| CVE-2025-1429 | HIGH | 7.8 | 0.2% | Mar 13, 2025 | A maliciously crafted MODEL file, when parsed through Autodesk AutoCAD, can force a Heap-Based Overflow vulnerability. A... |
| CVE-2025-1428 | HIGH | 7.8 | 0.4% | Mar 13, 2025 | A maliciously crafted CATPART file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerability.... |
| CVE-2025-1427 | HIGH | 7.8 | 0.2% | Mar 13, 2025 | A maliciously crafted CATPRODUCT file, when parsed through Autodesk AutoCAD, can force an Uninitialized Variable vulnera... |
| CVE-2025-29363 | HIGH | 7.5 | 0.5% | Mar 13, 2025 | Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to buffer overflow via the schedStartTime and schedEndTime... |
| CVE-2025-29362 | HIGH | 7.5 | 0.5% | Mar 13, 2025 | Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the list parameter at /goform/setPp... |
| CVE-2025-29361 | HIGH | 7.5 | 0.8% | Mar 13, 2025 | Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the list parameter at /goform/SetVi... |
| CVE-2025-29360 | HIGH | 7.5 | 0.5% | Mar 13, 2025 | Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the time and timeZone parameters at... |
| CVE-2025-29359 | HIGH | 7.5 | 0.5% | Mar 13, 2025 | Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the deviceId parameter at /goform/s... |
| CVE-2025-29358 | HIGH | 7.5 | 0.8% | Mar 13, 2025 | Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the firewallEn parameter at /goform... |
| CVE-2025-29357 | HIGH | 7.5 | 0.5% | Mar 13, 2025 | Tenda RX3 US_RX3V1.0br_V16.03.13.11_multi_TDE01 is vulnerable to Buffer Overflow via the startIp and endIp parameters at... |
| CVE-2025-2280 | HIGH | 8.1 | 0.5% | Mar 13, 2025 | Improper access control in web extension restriction feature in Devolutions Server 2024.3.4.0 and earlier allows an au... |
| CVE-2025-2277 | HIGH | 7.5 | 0.5% | Mar 13, 2025 | Exposure of password in web-based SSH authentication component in Devolutions Server 2024.3.13 and earlier allows a user... |
| CVE-2025-29998 | HIGH | 8.2 | 0.4% | Mar 13, 2025 | This vulnerability exists in the CAP back office application due to missing rate limiting on OTP requests in an API endp... |
| CVE-2025-29997 | HIGH | 8.2 | 0.3% | Mar 13, 2025 | This vulnerability exists in the CAP back office application due to improper authorization checks on certain API endpoin... |
| CVE-2025-29996 | HIGH | 8.2 | 0.4% | Mar 13, 2025 | This vulnerability exists in the CAP back office application due to improper implementation of OTP verification mechanis... |
| CVE-2025-29995 | HIGH | 8.3 | 0.3% | Mar 13, 2025 | This vulnerability exists in the CAP back office application due to a weak password-reset mechanism implemented at API e... |
| CVE-2025-29994 | HIGH | 8.2 | 0.4% | Mar 13, 2025 | This vulnerability exists in the CAP back office application due to improper authentication check at the API endpoint. A... |
| CVE-2025-25175 | HIGH | 7.8 | 0.2% | Mar 13, 2025 | A vulnerability has been identified in Simcenter Femap V2401 (All versions < V2401.0003), Simcenter Femap V2406 (All ver... |
| CVE-2025-1785 | HIGH | 8.1 | 0.6% | Mar 13, 2025 | The Download Manager plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 3.3... |
| CVE-2025-2271 | HIGH | 7.7 | 0.3% | Mar 13, 2025 | A vulnerability exists in Issuetrak v17.2.2 and prior that allows a low-privileged user to access audit results of other... |
| CVE-2025-1119 | HIGH | 7.3 | 0.5% | Mar 13, 2025 | The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to arb... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now