2025 CVE Vulnerabilities

45,230 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-56769MEDIUM6.5An issue was discovered in chinabugotech hutool before 5.8.4 allowing attackers to execute arbitrary expressions that le...
CVE-2025-10979MEDIUM6.5A weakness has been identified in JeecgBoot up to 3.8.2. The impacted element is an unknown function of the file /sys/ro...
CVE-2025-10978MEDIUM6.5A security flaw has been discovered in JeecgBoot up to 3.8.2. The affected element is an unknown function of the file /s...
CVE-2025-10977MEDIUM5.3A vulnerability was identified in JeecgBoot up to 3.8.2. Impacted is an unknown function of the file /sys/tenant/deleteB...
CVE-2025-10976MEDIUM5.3A vulnerability was determined in JeecgBoot up to 3.8.2. This issue affects some unknown processing of the file /api/get...
CVE-2025-10975MEDIUM6.3A vulnerability was found in GuanxingLu vlarl up to 31abc0baf53ef8f5db666a1c882e1ea64def2997. This vulnerability affects...
CVE-2025-10974MEDIUM6.3A vulnerability has been found in giantspatula SewKinect up to 7fd963ceb3385af3706af02b8a128a13399dffb1. This affects th...
CVE-2025-59408HIGH7.3Flock Safety Bravo Edge AI Compute Device BRAVO_00.00_local_20241017 ships with Secure Boot disabled. This allows an att...
CVE-2025-59404HIGH7.5Flock Safety Bravo Edge AI Compute Device BRAVO_00.00_local_20241017 ships with its bootloader unlocked. This permits by...
CVE-2025-59402MEDIUM5.4Flock Safety Bravo Edge AI Compute Device BRAVO_00.00_local_20241017 accepts the default Thundercomm TurboX 6490 Firehos...
CVE-2025-26482MEDIUM4.9Dell PowerEdge Server BIOS and Dell iDRAC9, all versions, contains an Information Disclosure vulnerability. A high privi...
CVE-2025-11005CRITICAL9.8Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in TOTOLINK X60...
CVE-2025-10973HIGH7.3A flaw has been found in JackieDYH Resume-management-system up to fb6b857d852dd796e748ce30c606fe5e61c18273. Affected by ...
CVE-2025-59817HIGH8.4This vulnerability allows attackers to execute arbitrary commands on the underlying system. Because the web portal runs ...
CVE-2025-59816HIGH7.3This vulnerability allows attackers to directly query the underlying database, potentially retrieving all data stored in...
CVE-2025-59815HIGH8.4This vulnerability allows malicious actors to execute arbitrary commands on the underlying system of the Zenitel ICX500 ...
CVE-2025-59814HIGH8.8This vulnerability allows malicious actors to gain unauthorized access to the Zenitel ICX500 and ICX510 Gateway Billing ...
CVE-2025-57632HIGH7.5libsmb2 6.2+ is vulnerable to Buffer Overflow. When processing SMB2 chained PDUs (NextCommand), libsmb2 repeatedly calls...
CVE-2025-43993HIGH7.8Dell Wireless 5932e and Qualcomm Snapdragon X62 Firmware and GNSS/GPS Driver, versions prior to 3.2.0.22 contain an Unqu...
CVE-2025-43816HIGH7.5A memory leak in the headless API for StructuredContents in Liferay Portal 7.4.0 through 7.4.3.119, and older unsupporte...
CVE-2025-10967HIGH7.3A vulnerability was detected in MuFen-mker PHP-Usermm up to 37f2d24e51b04346dfc565b93fc2fc6b37bdaea9. This affects an un...
CVE-2025-10965MEDIUM6.3A security vulnerability has been detected in LazyAGI LazyLLM up to 0.6.1. Affected by this issue is the function lazyll...
CVE-2025-10964HIGH8.8A weakness has been identified in Wavlink NU516U1. Affected by this vulnerability is the function sub_401B30 of the file...
CVE-2025-29157MEDIUM6.5An issue in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via accessing a non-existent endpoint/ca...
CVE-2025-29156MEDIUM6.1Cross Site Scripting vulnerability in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via a crafted ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now