2025 CVE Vulnerabilities

45,206 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-24309HIGH7.8in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through o...
CVE-2025-24301HIGH7.8in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through u...
CVE-2025-23420HIGH7.8in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through o...
CVE-2025-23414HIGH7.8in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through u...
CVE-2025-23409HIGH7.8in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through u...
CVE-2025-23240HIGH7.8in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through o...
CVE-2025-22835HIGH7.8in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through o...
CVE-2025-21084HIGH7.8in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through t...
CVE-2025-20626HIGH7.8in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through u...
CVE-2025-20091HIGH7.8in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through u...
CVE-2025-1639HIGH8.8The Animation Addons for Elementor Pro plugin for WordPress is vulnerable to unauthorized arbitrary plugin installation ...
CVE-2025-1321HIGH8.8The teachPress plugin for WordPress is vulnerable to SQL Injection via the 'order' parameter of the 'tpsearch' shortcode...
CVE-2025-0587HIGH7.8in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through i...
CVE-2025-1899HIGH7.5A vulnerability has been found in Tenda TX3 16.03.13.11_multi and classified as critical. Affected by this vulnerability...
CVE-2025-1898HIGH7.5A vulnerability, which was classified as critical, was found in Tenda TX3 16.03.13.11_multi. Affected is an unknown func...
CVE-2025-1897HIGH7.5A vulnerability, which was classified as critical, has been found in Tenda TX3 16.03.13.11_multi. This issue affects som...
CVE-2025-1896HIGH7.5A vulnerability classified as critical was found in Tenda TX3 16.03.13.11_multi. This vulnerability affects unknown code...
CVE-2025-1895HIGH7.5A vulnerability classified as critical has been found in Tenda TX3 16.03.13.11_multi. This affects an unknown part of th...
CVE-2025-1893HIGH7.5A vulnerability was found in Open5GS up to 2.7.2. It has been declared as problematic. Affected by this vulnerability is...
CVE-2025-27220HIGH7.5In the CGI gem before 0.4.2 for Ruby, a Regular Expression Denial of Service (ReDoS) vulnerability exists in the Util#es...
CVE-2025-27219HIGH7.5In the CGI gem before 0.4.2 for Ruby, the CGI::Cookie.parse method in the CGI library contains a potential Denial of Ser...
CVE-2025-1882HIGH7A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been rated as critical. Affected by this issue i...
CVE-2025-27501HIGH8.6OpenZiti is a free and open source project focused on bringing zero trust to any application. An endpoint on the admin p...
CVE-2025-25967HIGH8.8Acora CMS version 10.1.1 is vulnerable to Cross-Site Request Forgery (CSRF). This flaw enables attackers to trick authen...
CVE-2025-1877HIGH7.5A vulnerability, which was classified as critical, was found in D-Link DAP-1562 1.10. This affects the function pure_aut...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now