2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-1815 | HIGH | 7.3 | 0.5% | Mar 2, 2025 | A vulnerability, which was classified as critical, was found in pbrong hrms up to 1.0.1. This affects the function HrmsD... |
| CVE-2025-1812 | HIGH | 8.8 | 0.5% | Mar 2, 2025 | A vulnerability classified as critical has been found in zj1983 zz up to 2024-08. Affected is the function GetUserOrg of... |
| CVE-2025-1811 | HIGH | 7.3 | 0.5% | Mar 2, 2025 | A vulnerability was found in AT Software Solutions ATSVD up to 3.4.1. It has been declared as critical. Affected by this... |
| CVE-2025-1809 | HIGH | 7.3 | 0.5% | Mar 2, 2025 | A vulnerability was found in Pixsoft Sol up to 7.6.6c and classified as critical. This issue affects some unknown proces... |
| CVE-2025-25724 | HIGH | 7.8 | 0.3% | Mar 2, 2025 | list_item_verbose in tar/util.c in libarchive through 3.7.7 does not check an strftime return value, which can lead to a... |
| CVE-2025-1808 | HIGH | 7.3 | 0.5% | Mar 2, 2025 | A vulnerability has been found in Pixsoft E-Saphira 1.7.24 and classified as critical. This vulnerability affects unknow... |
| CVE-2025-1804 | HIGH | 7.3 | 0.2% | Mar 1, 2025 | A vulnerability was found in Blizzard Battle.Net up to 2.39.0.15212 on Windows and classified as critical. Affected by t... |
| CVE-2025-1800 | HIGH | 8.8 | 5.4% | Mar 1, 2025 | A vulnerability has been found in D-Link DAR-7000 3.2 and classified as critical. This vulnerability affects the functio... |
| CVE-2025-1788 | HIGH | 7.8 | 0.3% | Mar 1, 2025 | A vulnerability, which was classified as critical, was found in rizinorg rizin up to 0.8.0. This affects the function rz... |
| CVE-2025-1786 | HIGH | 7.8 | 0.3% | Mar 1, 2025 | A vulnerability was found in rizinorg rizin up to 0.7.4. It has been rated as critical. This issue affects the function ... |
| CVE-2025-23119 | HIGH | 7.5 | 0.7% | Mar 1, 2025 | An Improper Neutralization of Escape Sequences vulnerability could allow an Authentication Bypass with a Remote Code Exe... |
| CVE-2025-25723 | HIGH | 8.4 | 0.4% | Feb 28, 2025 | Buffer Overflow vulnerability in GPAC version 2.5 allows a local attacker to execute arbitrary code. |
| CVE-2025-25635 | HIGH | 8 | 0.4% | Feb 28, 2025 | TOTOlink A3002R V1.1.1-B20200824.0128 contains a buffer overflow vulnerability. The vulnerability arises from the improp... |
| CVE-2025-25610 | HIGH | 8 | 0.3% | Feb 28, 2025 | TOTOlink A3002R V1.1.1-B20200824.0128 contains a buffer overflow vulnerability. The vulnerability arises from the improp... |
| CVE-2025-25609 | HIGH | 8 | 0.3% | Feb 28, 2025 | TOTOlink A3002R V1.1.1-B20200824.0128 contains a buffer overflow vulnerability. The vulnerability arises from the improp... |
| CVE-2025-25428 | HIGH | 8 | 0.3% | Feb 28, 2025 | TRENDnet TEW-929DRU 1.0.0.10 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows a... |
| CVE-2025-24849 | HIGH | 7.5 | 0.1% | Feb 28, 2025 | Lack of encryption in transit for cloud infrastructure facilitating potential for sensitive data manipulation or exposur... |
| CVE-2025-20060 | HIGH | 8.7 | 0.4% | Feb 28, 2025 | An attacker could expose cross-user personal identifiable information (PII) and personal health information transmitted ... |
| CVE-2025-20049 | HIGH | 7.1 | 0.3% | Feb 28, 2025 | The Dario Health portal service application is vulnerable to XSS, which could allow an attacker to obtain sensitive info... |
| CVE-2025-26326 | HIGH | 8.8 | 1.4% | Feb 28, 2025 | A vulnerability was identified in the NVDA Remote (version 2.6.4) and Tele NVDA Remote (version 2025.3.3) remote connect... |
| CVE-2025-22270 | HIGH | 7.3 | 0.6% | Feb 28, 2025 | An attacker with access to the Administration panel, specifically the "Role Management" tab, can inject code by adding a... |
| CVE-2025-1319 | HIGH | 7.2 | 0.4% | Feb 28, 2025 | The Site Mailer – SMTP Replacement, Email API Deliverability & Email Log plugin for WordPress is vulnerable to Stored Cr... |
| CVE-2025-1413 | HIGH | 8.4 | 0.2% | Feb 28, 2025 | DaVinci Resolve on MacOS was found to be installed with incorrect file permissions (rwxrwxrwx). This is inconsistent wit... |
| CVE-2025-1572 | HIGH | 8.8 | 0.5% | Feb 28, 2025 | The KiviCare – Clinic & Patient Management System (EHR) plugin for WordPress is vulnerable to SQL Injection via the ‘u_i... |
| CVE-2025-0975 | HIGH | 8.8 | 0.6% | Feb 28, 2025 | IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD console could allow an authenticated user to execute code due to improper ne... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now