2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-67158 | HIGH | 7.5 | 0.5% | Jan 2, 2026 | An authentication bypass in the /cgi-bin/jvsweb.cgi endpoint of Revotech I6032W-FHW v1.0.0014 - 20210517 allows attacker... |
| CVE-2025-9110 | HIGH | 7.5 | 0.4% | Jan 2, 2026 | An exposure of sensitive system information to an unauthorized control sphere vulnerability has been reported to affect ... |
| CVE-2025-67269 | HIGH | 7.5 | 0.5% | Jan 2, 2026 | An integer underflow vulnerability exists in the `nextstate()` function in `gpsd/packet.c` of gpsd versions prior to com... |
| CVE-2025-62842 | HIGH | 7.8 | 0.2% | Jan 2, 2026 | An external control of file name or path vulnerability has been reported to affect HBS 3 Hybrid Backup Sync. If an attac... |
| CVE-2025-59387 | HIGH | 8.1 | 0.3% | Jan 2, 2026 | An SQL injection vulnerability has been reported to affect MARS (Multi-Application Recovery Service). The remote attacke... |
| CVE-2025-59384 | HIGH | 7.5 | 0.4% | Jan 2, 2026 | A path traversal vulnerability has been reported to affect Qfiling. The remote attackers can then exploit the vulnerabil... |
| CVE-2025-52872 | HIGH | 8.1 | 0.3% | Jan 2, 2026 | A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker... |
| CVE-2025-52864 | HIGH | 8.1 | 0.3% | Jan 2, 2026 | A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker... |
| CVE-2025-52863 | HIGH | 8.1 | 0.3% | Jan 2, 2026 | A buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker... |
| CVE-2025-15438 | HIGH | 7.2 | 0.4% | Jan 2, 2026 | A vulnerability was determined in PluXml up to 5.8.22. Affected is the function FileCookieJar::__destruct of the file co... |
| CVE-2025-15432 | HIGH | 7.5 | 0.6% | Jan 2, 2026 | A vulnerability has been found in yeqifu carRental up to 3fabb7eae93d209426638863980301d6f99866b3. This vulnerability af... |
| CVE-2025-15431 | HIGH | 8.8 | 0.7% | Jan 2, 2026 | A flaw has been found in UTT 进取 512W 1.7.7-171114. This affects the function strcpy of the file /goform/formFtpServerDir... |
| CVE-2025-15430 | HIGH | 8.8 | 0.7% | Jan 2, 2026 | A vulnerability was detected in UTT 进取 512W 1.7.7-171114. Affected by this issue is the function strcpy of the file /gof... |
| CVE-2025-15429 | HIGH | 8.8 | 0.8% | Jan 2, 2026 | A security vulnerability has been detected in UTT 进取 512W 1.7.7-171114. Affected by this vulnerability is the function s... |
| CVE-2025-15428 | HIGH | 8.8 | 0.8% | Jan 2, 2026 | A weakness has been identified in UTT 进取 512W 1.7.7-171114. Affected is the function strcpy of the file /goform/formRemo... |
| CVE-2025-15426 | HIGH | 7.3 | 0.4% | Jan 2, 2026 | A vulnerability was identified in jackying H-ui.admin up to 3.1. This affects an unknown function in the library /lib/we... |
| CVE-2025-15423 | HIGH | 8.8 | 0.3% | Jan 2, 2026 | A vulnerability has been found in EmpireSoft EmpireCMS up to 8.0. Impacted is the function CheckSaveTranFiletype of the ... |
| CVE-2025-15422 | HIGH | 7.5 | 1.1% | Jan 2, 2026 | A flaw has been found in EmpireSoft EmpireCMS up to 8.0. This issue affects the function egetip of the file e/class/conn... |
| CVE-2025-15413 | HIGH | 7.8 | 0.2% | Jan 1, 2026 | A vulnerability was detected in wasm3 up to 0.5.0. Impacted is the function op_SetSlot_i32/op_CallIndirect of the file m... |
| CVE-2025-15412 | HIGH | 7.8 | 0.2% | Jan 1, 2026 | A security vulnerability has been detected in WebAssembly wabt up to 1.0.39. This issue affects the function wabt::Decom... |
| CVE-2025-15411 | HIGH | 7.8 | 0.2% | Jan 1, 2026 | A weakness has been identified in WebAssembly wabt up to 1.0.39. This vulnerability affects the function wabt::AST::Inse... |
| CVE-2025-69203 | HIGH | 8.8 | 0.3% | Jan 1, 2026 | Signal K Server is a server application that runs on a central hub in a boat. Versions prior to 2.19.0 of the access req... |
| CVE-2025-68619 | HIGH | 7.2 | 0.6% | Jan 1, 2026 | Signal K Server is a server application that runs on a central hub in a boat. Versions prior to 2.19.0 of the appstore i... |
| CVE-2025-55065 | HIGH | 7.5 | 0.2% | Jan 1, 2026 | CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') |
| CVE-2025-68272 | HIGH | 7.5 | 0.5% | Jan 1, 2026 | Signal K Server is a server application that runs on a central hub in a boat. A Denial of Service (DoS) vulnerability in... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now