2025 CVE Vulnerabilities

45,224 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-24055MEDIUM4.3Out-of-bounds read in Windows USB Video Driver allows an authorized attacker to disclose information with a physical att...
CVE-2025-24054MEDIUM5.4External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network...
CVE-2025-21247MEDIUM4.3Improper resolution of path equivalence in Windows MapUrlToZone allows an unauthorized attacker to bypass a security fea...
CVE-2025-21199MEDIUM6.7Improper privilege management in Azure Agent Installer allows an authorized attacker to elevate privileges locally.
CVE-2025-27602MEDIUM6.4Umbraco is a free and open source .NET content management system. In versions of Umbraco's web backoffice program prior ...
CVE-2025-27601MEDIUM4.3Umbraco is a free and open source .NET content management system. An improper API access control issue has been identifi...
CVE-2025-25747MEDIUM5.4Cross Site Scripting vulnerability in DigitalDruid HotelDruid v.3.0.7 allows an attacker to execute arbitrary code and o...
CVE-2025-2196MEDIUM6.1A vulnerability was found in MRCMS 3.1.2. It has been declared as problematic. Affected by this vulnerability is the fun...
CVE-2025-2195MEDIUM6.1A vulnerability was found in MRCMS 3.1.2. It has been classified as problematic. Affected is the function rename of the ...
CVE-2025-2194MEDIUM6.1A vulnerability was found in MRCMS 3.1.2 and classified as problematic. This issue affects the function list of the file...
CVE-2025-22370MEDIUM5.3Many fields for the web configuration interface of the firmware for Mennekes Smart / Premium Chargingpoints can be abuse...
CVE-2025-2192MEDIUM5.3A vulnerability, which was classified as problematic, was found in Stoque Zeev.it 4.24. This affects an unknown part of ...
CVE-2025-2191MEDIUM4.8A vulnerability, which was classified as problematic, has been found in Claro A7600-A1 RNR4-A72T-2x16_v2110403_CLA_32_16...
CVE-2025-2189MEDIUM5.1This vulnerability exists in the Tinxy smart devices due to storage of credentials in plaintext within the device firmwa...
CVE-2025-27493MEDIUM6.7A vulnerability has been identified in SiPass integrated AC5102 (ACC-G2) (All versions < V6.4.9), SiPass integrated ACC-...
CVE-2025-27397MEDIUM5.1A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0). Affected devices do ...
CVE-2025-27395MEDIUM6.5A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0). Affected devices do ...
CVE-2025-25267MEDIUM5.5A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant S...
CVE-2025-25266MEDIUM6.1A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant S...
CVE-2025-23384MEDIUM6.3A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.2.1), RUGGEDC...
CVE-2025-27893MEDIUM4.3In Archer Platform 6 through 6.14.00202.10024, an authenticated user with record creation privileges can manipulate immu...
CVE-2025-2177MEDIUM6.5A vulnerability classified as critical was found in libzvbi up to 0.2.43. This vulnerability affects the function vbi_se...
CVE-2025-27911MEDIUM6.5An issue was discovered in Datalust Seq before 2024.3.13545. Expansion of identifiers in message templates can be used t...
CVE-2025-1434MEDIUM6.1The Spreadsheet view is vulnerable to a XSS attack, where a remote unauthorised attacker can read a limited amount of va...
CVE-2025-2175MEDIUM6.5A vulnerability was found in libzvbi up to 0.2.43. It has been rated as problematic. Affected by this issue is the funct...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now