2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-24886 | HIGH | 7.7 | 0.5% | Jan 30, 2025 | pwn.college is an education platform to learn about, and practice, core cybersecurity concepts in a hands-on fashion. In... |
| CVE-2025-24885 | HIGH | 7.6 | 0.2% | Jan 30, 2025 | pwn.college is an education platform to learn about, and practice, core cybersecurity concepts in a hands-on fashion. Mi... |
| CVE-2025-0882 | HIGH | 7.5 | 0.4% | Jan 30, 2025 | A vulnerability was found in code-projects Chat System up to 1.0. It has been declared as critical. Affected by this vul... |
| CVE-2025-0574 | HIGH | 7.5 | 0.8% | Jan 30, 2025 | Sante PACS Server URL path Memory Corruption Denial-of-Service Vulnerability. This vulnerability allows remote attackers... |
| CVE-2025-0569 | HIGH | 7.5 | 1.0% | Jan 30, 2025 | Sante PACS Server DCM File Parsing Memory Corruption Denial-of-Service Vulnerability. This vulnerability allows remote a... |
| CVE-2025-0568 | HIGH | 7.5 | 1.0% | Jan 30, 2025 | Sante PACS Server DCM File Parsing Memory Corruption Denial-of-Service Vulnerability. This vulnerability allows remote a... |
| CVE-2025-24802 | HIGH | 8.6 | 0.3% | Jan 30, 2025 | Plonky2 is a SNARK implementation based on techniques from PLONK and FRI. Lookup tables, whose length is not divisible b... |
| CVE-2025-0145 | HIGH | 7.8 | 0.2% | Jan 30, 2025 | Untrusted search path in the installer for some Zoom Workplace Apps for Windows may allow an authorized user to conduct ... |
| CVE-2025-24507 | HIGH | 8.9 | 0.2% | Jan 30, 2025 | This vulnerability allows appliance compromise at boot time. |
| CVE-2025-24505 | HIGH | 8.8 | 0.3% | Jan 30, 2025 | This vulnerability allows a high-privileged authenticated PAM user to achieve remote command execution on the affected P... |
| CVE-2025-24500 | HIGH | 8.7 | 0.2% | Jan 30, 2025 | The vulnerability allows an unauthenticated attacker to access information in PAM database. |
| CVE-2025-0683 | HIGH | 8.2 | 0.8% | Jan 30, 2025 | In its default configuration, Contec Health CMS8000 Patient Monitor transmits plain-text patient data to a hard-coded p... |
| CVE-2025-0626 | HIGH | 7.7 | 1.1% | Jan 30, 2025 | The "monitor" binary in the firmware of the affected product attempts to mount to a hard-coded, routable IP address, byp... |
| CVE-2025-24883 | HIGH | 8.7 | 0.7% | Jan 30, 2025 | go-ethereum (geth) is a golang execution layer implementation of the Ethereum protocol. A vulnerable node can be forced ... |
| CVE-2025-22218 | HIGH | 7.7 | 0.7% | Jan 30, 2025 | VMware Aria Operations for Logs contains an information disclosure vulnerability. A malicious actor with View Only Admin... |
| CVE-2025-21107 | HIGH | 7.8 | 0.2% | Jan 30, 2025 | Dell NetWorker, version(s) prior to 19.11.0.3, all versions of 19.10 & prior versions contain(s) an Unquoted Search Path... |
| CVE-2025-0861 | HIGH | 7.2 | 0.5% | Jan 30, 2025 | The VR-Frases (collect & share quotes) plugin for WordPress is vulnerable to SQL Injection via several parameters in all... |
| CVE-2025-0834 | HIGH | 7.8 | 0.2% | Jan 30, 2025 | Privilege escalation vulnerability has been found in Wondershare Dr.Fone version 13.5.21. This vulnerability could allow... |
| CVE-2025-0849 | HIGH | 8.1 | 0.4% | Jan 30, 2025 | A vulnerability classified as critical has been found in CampCodes School Management Software 1.0. Affected is an unknow... |
| CVE-2025-21415 | HIGH | 8.8 | 0.9% | Jan 29, 2025 | Authentication bypass by spoofing in Azure AI Face Service allows an authorized attacker to elevate privileges over a ne... |
| CVE-2025-21396 | HIGH | 8.2 | 0.7% | Jan 29, 2025 | Missing authorization in Microsoft Account allows an unauthorized attacker to elevate privileges over a network. |
| CVE-2025-24794 | HIGH | 7.8 | 0.2% | Jan 29, 2025 | The Snowflake Connector for Python provides an interface for developing Python applications that can connect to Snowflak... |
| CVE-2025-24793 | HIGH | 7 | 0.3% | Jan 29, 2025 | The Snowflake Connector for Python provides an interface for developing Python applications that can connect to Snowflak... |
| CVE-2025-0841 | HIGH | 7.3 | 0.5% | Jan 29, 2025 | A vulnerability has been found in Aridius XYZ up to 20240927 on OpenCart and classified as critical. This vulnerability ... |
| CVE-2025-0840 | HIGH | 7.5 | 0.7% | Jan 29, 2025 | A vulnerability, which was classified as problematic, was found in GNU Binutils up to 2.43. This affects the function di... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now