2025 CVE Vulnerabilities
45,230 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-56769 | MEDIUM | 6.5 | 0.3% | Sep 25, 2025 | An issue was discovered in chinabugotech hutool before 5.8.4 allowing attackers to execute arbitrary expressions that le... |
| CVE-2025-10979 | MEDIUM | 6.5 | 0.4% | Sep 25, 2025 | A weakness has been identified in JeecgBoot up to 3.8.2. The impacted element is an unknown function of the file /sys/ro... |
| CVE-2025-10978 | MEDIUM | 6.5 | 0.4% | Sep 25, 2025 | A security flaw has been discovered in JeecgBoot up to 3.8.2. The affected element is an unknown function of the file /s... |
| CVE-2025-10977 | MEDIUM | 5.3 | 0.4% | Sep 25, 2025 | A vulnerability was identified in JeecgBoot up to 3.8.2. Impacted is an unknown function of the file /sys/tenant/deleteB... |
| CVE-2025-10976 | MEDIUM | 5.3 | 0.3% | Sep 25, 2025 | A vulnerability was determined in JeecgBoot up to 3.8.2. This issue affects some unknown processing of the file /api/get... |
| CVE-2025-10975 | MEDIUM | 6.3 | 0.3% | Sep 25, 2025 | A vulnerability was found in GuanxingLu vlarl up to 31abc0baf53ef8f5db666a1c882e1ea64def2997. This vulnerability affects... |
| CVE-2025-10974 | MEDIUM | 6.3 | 0.3% | Sep 25, 2025 | A vulnerability has been found in giantspatula SewKinect up to 7fd963ceb3385af3706af02b8a128a13399dffb1. This affects th... |
| CVE-2025-59408 | HIGH | 7.3 | 0.2% | Sep 25, 2025 | Flock Safety Bravo Edge AI Compute Device BRAVO_00.00_local_20241017 ships with Secure Boot disabled. This allows an att... |
| CVE-2025-59404 | HIGH | 7.5 | 0.4% | Sep 25, 2025 | Flock Safety Bravo Edge AI Compute Device BRAVO_00.00_local_20241017 ships with its bootloader unlocked. This permits by... |
| CVE-2025-59402 | MEDIUM | 5.4 | 0.2% | Sep 25, 2025 | Flock Safety Bravo Edge AI Compute Device BRAVO_00.00_local_20241017 accepts the default Thundercomm TurboX 6490 Firehos... |
| CVE-2025-26482 | MEDIUM | 4.9 | 0.3% | Sep 25, 2025 | Dell PowerEdge Server BIOS and Dell iDRAC9, all versions, contains an Information Disclosure vulnerability. A high privi... |
| CVE-2025-11005 | CRITICAL | 9.8 | 1.3% | Sep 25, 2025 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in TOTOLINK X60... |
| CVE-2025-10973 | HIGH | 7.3 | 0.3% | Sep 25, 2025 | A flaw has been found in JackieDYH Resume-management-system up to fb6b857d852dd796e748ce30c606fe5e61c18273. Affected by ... |
| CVE-2025-59817 | HIGH | 8.4 | 0.2% | Sep 25, 2025 | This vulnerability allows attackers to execute arbitrary commands on the underlying system. Because the web portal runs ... |
| CVE-2025-59816 | HIGH | 7.3 | 0.2% | Sep 25, 2025 | This vulnerability allows attackers to directly query the underlying database, potentially retrieving all data stored in... |
| CVE-2025-59815 | HIGH | 8.4 | 0.3% | Sep 25, 2025 | This vulnerability allows malicious actors to execute arbitrary commands on the underlying system of the Zenitel ICX500 ... |
| CVE-2025-59814 | HIGH | 8.8 | 0.3% | Sep 25, 2025 | This vulnerability allows malicious actors to gain unauthorized access to the Zenitel ICX500 and ICX510 Gateway Billing ... |
| CVE-2025-57632 | HIGH | 7.5 | 0.5% | Sep 25, 2025 | libsmb2 6.2+ is vulnerable to Buffer Overflow. When processing SMB2 chained PDUs (NextCommand), libsmb2 repeatedly calls... |
| CVE-2025-43993 | HIGH | 7.8 | 0.2% | Sep 25, 2025 | Dell Wireless 5932e and Qualcomm Snapdragon X62 Firmware and GNSS/GPS Driver, versions prior to 3.2.0.22 contain an Unqu... |
| CVE-2025-43816 | HIGH | 7.5 | 0.3% | Sep 25, 2025 | A memory leak in the headless API for StructuredContents in Liferay Portal 7.4.0 through 7.4.3.119, and older unsupporte... |
| CVE-2025-10967 | HIGH | 7.3 | 0.3% | Sep 25, 2025 | A vulnerability was detected in MuFen-mker PHP-Usermm up to 37f2d24e51b04346dfc565b93fc2fc6b37bdaea9. This affects an un... |
| CVE-2025-10965 | MEDIUM | 6.3 | 0.3% | Sep 25, 2025 | A security vulnerability has been detected in LazyAGI LazyLLM up to 0.6.1. Affected by this issue is the function lazyll... |
| CVE-2025-10964 | HIGH | 8.8 | 6.8% | Sep 25, 2025 | A weakness has been identified in Wavlink NU516U1. Affected by this vulnerability is the function sub_401B30 of the file... |
| CVE-2025-29157 | MEDIUM | 6.5 | 0.5% | Sep 25, 2025 | An issue in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via accessing a non-existent endpoint/ca... |
| CVE-2025-29156 | MEDIUM | 6.1 | 0.4% | Sep 25, 2025 | Cross Site Scripting vulnerability in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via a crafted ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now