2025 CVE Vulnerabilities

45,227 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-11020HIGH8.8An attacker can obtain server information using Path Traversal vulnerability to conduct SQL Injection, which possibly ex...
CVE-2025-61855Rejected reason: Not used
CVE-2025-61854Rejected reason: Not used
CVE-2025-61853Rejected reason: Not used
CVE-2025-61852Rejected reason: Not used
CVE-2025-61851Rejected reason: Not used
CVE-2025-61850Rejected reason: Not used
CVE-2025-61849Rejected reason: Not used
CVE-2025-61588CRITICAL9.3RISC Zero is a zero-knowledge verifiable general computing platform based on zk-STARKs and the RISC-V microarchitecture....
CVE-2025-61583MEDIUM6.1TS3 Manager is modern web interface for maintaining Teamspeak3 servers. A reflected cross-site scripting vulnerability h...
CVE-2025-61582HIGH7.5TS3 Manager is modern web interface for maintaining Teamspeak3 servers. A Denial of Dervice vulnerability has been ident...
CVE-2025-61587MEDIUM6.1Weblate is a web based localization tool. An open redirect exists in versions 5.13.2 and below via the redir parameter o...
CVE-2025-59951CRITICAL9.1Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. The offici...
CVE-2025-54811HIGH7.1OpenPLC_V3 has a vulnerability in the enipThread function that occurs due to the lack of a return value. This leads to a...
CVE-2025-23355HIGH7.8NVIDIA Nsight Graphics for Windows contains a vulnerability in an ngfx component, where an attacker could cause a DLL hi...
CVE-2025-23297HIGH7.8NVIDIA Installer for NvAPP for Windows contains a vulnerability in the FrameviewSDK installation process, where an attac...
CVE-2025-59538HIGH7.5Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. For versions 2.9.0-rc1 through 2.14.19, 3.0.0-...
CVE-2025-59537HIGH7.5Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Versions 1.2.0 through 1.8.7, 2.0.0-rc1 throug...
CVE-2025-59531HIGH7.5Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Versions 1.2.0 through 1.8.7, 2.0.0-rc1 throug...
CVE-2025-59337MEDIUM6.8Discourse is an open-source community discussion platform. In versions 3.5.0 and below, malicious meta-commands could be...
CVE-2025-59150HIGH7.5Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suric...
CVE-2025-57389MEDIUM5.4A reflected cross-site scripting (XSS) vulnerability in the /admin/system/packages endpoint of Luci OpenWRT v18.06.2 all...
CVE-2025-61189MEDIUM6.3Jeecgboot versions 3.8.2 and earlier are affected by a path traversal vulnerability. The endpoint is /sys/comment/addFil...
CVE-2025-61188MEDIUM6.3Jeecgboot versions 3.8.2 and earlier are affected by a path traversal vulnerability. This vulnerability allows attackers...
CVE-2025-59149MEDIUM6.2Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suric...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now