2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-15392HIGH8.8A weakness has been identified in Kohana KodiCMS up to 13.82.135. This affects the function like of the file cms/modules...
CVE-2025-64699HIGH7.8An incorrect NULL DACL issue exists in SevenCs ORCA G2 2.0.1.35 (EC2007 Kernel v5.22). The regService process, which run...
CVE-2025-62751HIGH8.8Missing Authorization vulnerability in extendthemes Vireo vireo allows Exploiting Incorrectly Configured Access Control ...
CVE-2025-61037HIGH7A local privilege escalation vulnerability exists in SevenCs ORCA G2 2.0.1.35 (EC2007 Kernel v5.22). The flaw is a Time-...
CVE-2025-15390HIGH8.8A security flaw has been discovered in PHPGurukul Small CRM 4.0. This impacts an unknown function of the file /admin/edi...
CVE-2025-15389HIGH8.8VPN Firewall developed by QNO Technology has an OS Command Injection vulnerability, allowing authenticated remote attack...
CVE-2025-62992HIGH8.1Cross-Site Request Forgery (CSRF) vulnerability in everestthemes Everest Backup everest-backup allows Path Traversal.Thi...
CVE-2025-49028HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in Zoho Mail Zoho ZeptoMail transmail allows Stored XSS.This issue affec...
CVE-2025-15388HIGH8.8VPN Firewall developed by QNO Technology has an OS Command Injection vulnerability, allowing authenticated remote attack...
CVE-2025-15387HIGH8.8VPN Firewall developed by QNO Technology has a Insufficient Entropy vulnerability, allowing unauthenticated remote attac...
CVE-2025-2026HIGH7.1The NPort 6100-G2/6200-G2 Series is affected by a high-severity vulnerability (CVE-2025-2026) that allows remote attacke...
CVE-2025-1977HIGH7.7The NPort 6100-G2/6200-G2 Series is affected by an execution with unnecessary privileges vulnerability (CVE-2025-1977) t...
CVE-2025-15017HIGH7A vulnerability exists in serial device servers where active debug code remains enabled in the UART interface. An attack...
CVE-2025-15280HIGH8.8FontForge SFD File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attacker...
CVE-2025-15279HIGH7.8FontForge GUtils BMP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability all...
CVE-2025-15278HIGH7.8FontForge GUtils XBM File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote...
CVE-2025-15277HIGH7.8FontForge GUtils SGI File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability all...
CVE-2025-15276HIGH7.8FontForge SFD File Parsing Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability all...
CVE-2025-15275HIGH8.8FontForge SFD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows rem...
CVE-2025-15274HIGH8.8FontForge SFD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows rem...
CVE-2025-15273HIGH8.8FontForge PFB File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows re...
CVE-2025-15272HIGH8.8FontForge SFD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows rem...
CVE-2025-15271HIGH8.8FontForge SFD File Parsing Improper Validation of Array Index Remote Code Execution Vulnerability. This vulnerability al...
CVE-2025-15270HIGH8.8FontForge SFD File Parsing Improper Validation of Array Index Remote Code Execution Vulnerability. This vulnerability al...
CVE-2025-15269HIGH8.8FontForge SFD File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attacker...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now