2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-37178 | HIGH | 7.5 | 0.3% | Jan 13, 2026 | Multiple out-of-bounds read vulnerabilities were identified in a system component responsible for handling certain data ... |
| CVE-2025-37176 | HIGH | 7.2 | 1.2% | Jan 13, 2026 | A command injection vulnerability in AOS-8 allows an authenticated privileged user to alter a package header to inject s... |
| CVE-2025-37175 | HIGH | 7.2 | 0.4% | Jan 13, 2026 | Arbitrary file upload vulnerability exists in the web-based management interface of mobility conductors running either A... |
| CVE-2025-37174 | HIGH | 7.2 | 0.5% | Jan 13, 2026 | Authenticated arbitrary file write vulnerability exists in the web-based management interface of mobility conductors run... |
| CVE-2025-37173 | HIGH | 7.2 | 0.4% | Jan 13, 2026 | An improper input handling vulnerability exists in the web-based management interface of mobility conductors running eit... |
| CVE-2025-37172 | HIGH | 7.2 | 1.1% | Jan 13, 2026 | Authenticated command injection vulnerabilities exist in the web-based management interface of mobility conductors runni... |
| CVE-2025-37171 | HIGH | 7.2 | 1.2% | Jan 13, 2026 | Authenticated command injection vulnerabilities exist in the web-based management interface of mobility conductors runni... |
| CVE-2025-37170 | HIGH | 7.2 | 1.1% | Jan 13, 2026 | Authenticated command injection vulnerabilities exist in the web-based management interface of mobility conductors runni... |
| CVE-2025-37169 | HIGH | 7.2 | 0.5% | Jan 13, 2026 | A stack overflow vulnerability exists in the AOS-10 web-based management interface of a Mobility Gateway. Successful exp... |
| CVE-2025-37166 | HIGH | 7.5 | 0.4% | Jan 13, 2026 | A vulnerability affecting HPE Networking Instant On Access Points has been identified where a device processing a specia... |
| CVE-2025-37165 | HIGH | 7.5 | 0.3% | Jan 13, 2026 | A vulnerability in the router mode configuration of HPE Instant On Access Points exposed certain network configuration d... |
| CVE-2025-10865 | HIGH | 7.8 | 0.1% | Jan 13, 2026 | Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of refe... |
| CVE-2025-68707 | HIGH | 8.8 | 0.4% | Jan 13, 2026 | An authentication bypass vulnerability in the Tongyu AX1800 Wi-Fi 6 Router with firmware 1.0.0 allows unauthenticated ne... |
| CVE-2025-59922 | HIGH | 7.2 | 7.0% | Jan 13, 2026 | An improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability [CWE-89] vulnerabi... |
| CVE-2025-58411 | HIGH | 8.8 | 0.1% | Jan 13, 2026 | Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of reso... |
| CVE-2025-46685 | HIGH | 7.8 | 0.1% | Jan 13, 2026 | Dell SupportAssist OS Recovery, versions prior to 5.5.15.1, contain a Creation of Temporary File With Insecure Permissio... |
| CVE-2025-25652 | HIGH | 7.5 | 0.7% | Jan 13, 2026 | In Eptura Archibus 2024.03.01.109, the "Run script" and "Server File" components of the "Database Update Wizard" are vul... |
| CVE-2025-71101 | HIGH | 7.1 | 0.1% | Jan 13, 2026 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: hp-bioscfg: Fix out-of-bounds array a... |
| CVE-2025-71100 | HIGH | 7.8 | 0.1% | Jan 13, 2026 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtlwifi: 8192cu: fix tid out of range in rtl9... |
| CVE-2025-71099 | HIGH | 7.8 | 0.1% | Jan 13, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/xe/oa: Fix potential UAF in xe_oa_add_config_io... |
| CVE-2025-71093 | HIGH | 7.1 | 0.1% | Jan 13, 2026 | In the Linux kernel, the following vulnerability has been resolved: e1000: fix OOB in e1000_tbi_should_accept() In e10... |
| CVE-2025-71092 | HIGH | 7.8 | 0.1% | Jan 13, 2026 | In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Fix OOB write in bnxt_re_copy_err_sta... |
| CVE-2025-71091 | HIGH | 7.8 | 0.1% | Jan 13, 2026 | In the Linux kernel, the following vulnerability has been resolved: team: fix check for port enabled in team_queue_over... |
| CVE-2025-71089 | HIGH | 7.8 | 0.1% | Jan 13, 2026 | In the Linux kernel, the following vulnerability has been resolved: iommu: disable SVA when CONFIG_X86 is set Patch se... |
| CVE-2025-71086 | HIGH | 7.8 | 0.1% | Jan 13, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: rose: fix invalid array index in rose_kill_by_... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now