2025 CVE Vulnerabilities
45,224 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-24055 | MEDIUM | 4.3 | 0.8% | Mar 11, 2025 | Out-of-bounds read in Windows USB Video Driver allows an authorized attacker to disclose information with a physical att... |
| CVE-2025-24054 | MEDIUM | 5.4 | 59.0% | Mar 11, 2025 | External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network... |
| CVE-2025-21247 | MEDIUM | 4.3 | 3.0% | Mar 11, 2025 | Improper resolution of path equivalence in Windows MapUrlToZone allows an unauthorized attacker to bypass a security fea... |
| CVE-2025-21199 | MEDIUM | 6.7 | 0.4% | Mar 11, 2025 | Improper privilege management in Azure Agent Installer allows an authorized attacker to elevate privileges locally. |
| CVE-2025-27602 | MEDIUM | 6.4 | 0.3% | Mar 11, 2025 | Umbraco is a free and open source .NET content management system. In versions of Umbraco's web backoffice program prior ... |
| CVE-2025-27601 | MEDIUM | 4.3 | 0.3% | Mar 11, 2025 | Umbraco is a free and open source .NET content management system. An improper API access control issue has been identifi... |
| CVE-2025-25747 | MEDIUM | 5.4 | 0.5% | Mar 11, 2025 | Cross Site Scripting vulnerability in DigitalDruid HotelDruid v.3.0.7 allows an attacker to execute arbitrary code and o... |
| CVE-2025-2196 | MEDIUM | 6.1 | 0.4% | Mar 11, 2025 | A vulnerability was found in MRCMS 3.1.2. It has been declared as problematic. Affected by this vulnerability is the fun... |
| CVE-2025-2195 | MEDIUM | 6.1 | 0.3% | Mar 11, 2025 | A vulnerability was found in MRCMS 3.1.2. It has been classified as problematic. Affected is the function rename of the ... |
| CVE-2025-2194 | MEDIUM | 6.1 | 0.3% | Mar 11, 2025 | A vulnerability was found in MRCMS 3.1.2 and classified as problematic. This issue affects the function list of the file... |
| CVE-2025-22370 | MEDIUM | 5.3 | 0.4% | Mar 11, 2025 | Many fields for the web configuration interface of the firmware for Mennekes Smart / Premium Chargingpoints can be abuse... |
| CVE-2025-2192 | MEDIUM | 5.3 | 0.4% | Mar 11, 2025 | A vulnerability, which was classified as problematic, was found in Stoque Zeev.it 4.24. This affects an unknown part of ... |
| CVE-2025-2191 | MEDIUM | 4.8 | 0.3% | Mar 11, 2025 | A vulnerability, which was classified as problematic, has been found in Claro A7600-A1 RNR4-A72T-2x16_v2110403_CLA_32_16... |
| CVE-2025-2189 | MEDIUM | 5.1 | 0.1% | Mar 11, 2025 | This vulnerability exists in the Tinxy smart devices due to storage of credentials in plaintext within the device firmwa... |
| CVE-2025-27493 | MEDIUM | 6.7 | 0.2% | Mar 11, 2025 | A vulnerability has been identified in SiPass integrated AC5102 (ACC-G2) (All versions < V6.4.9), SiPass integrated ACC-... |
| CVE-2025-27397 | MEDIUM | 5.1 | 0.4% | Mar 11, 2025 | A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0). Affected devices do ... |
| CVE-2025-27395 | MEDIUM | 6.5 | 0.6% | Mar 11, 2025 | A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions < V4.0). Affected devices do ... |
| CVE-2025-25267 | MEDIUM | 5.5 | 0.2% | Mar 11, 2025 | A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant S... |
| CVE-2025-25266 | MEDIUM | 6.1 | 0.1% | Mar 11, 2025 | A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant S... |
| CVE-2025-23384 | MEDIUM | 6.3 | 0.3% | Mar 11, 2025 | A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.2.1), RUGGEDC... |
| CVE-2025-27893 | MEDIUM | 4.3 | 0.4% | Mar 11, 2025 | In Archer Platform 6 through 6.14.00202.10024, an authenticated user with record creation privileges can manipulate immu... |
| CVE-2025-2177 | MEDIUM | 6.5 | 0.6% | Mar 11, 2025 | A vulnerability classified as critical was found in libzvbi up to 0.2.43. This vulnerability affects the function vbi_se... |
| CVE-2025-27911 | MEDIUM | 6.5 | 0.4% | Mar 11, 2025 | An issue was discovered in Datalust Seq before 2024.3.13545. Expansion of identifiers in message templates can be used t... |
| CVE-2025-1434 | MEDIUM | 6.1 | 0.3% | Mar 11, 2025 | The Spreadsheet view is vulnerable to a XSS attack, where a remote unauthorised attacker can read a limited amount of va... |
| CVE-2025-2175 | MEDIUM | 6.5 | 0.6% | Mar 11, 2025 | A vulnerability was found in libzvbi up to 0.2.43. It has been rated as problematic. Affected by this issue is the funct... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now