2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-65411HIGH7.5A NULL pointer dereference in the src/path.c component of GNU Unrtf v0.21.10 allows attackers to cause a Denial of Servi...
CVE-2025-65409HIGH7.5A divide-by-zero in the encryption/decryption routines of GNU Recutils v1.9 allows attackers to cause a Denial of Servic...
CVE-2025-15262HIGH7.2A security flaw has been discovered in BiggiDroid Simple PHP CMS 1.0. This impacts an unknown function of the file /admi...
CVE-2025-69204HIGH7.5ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-12...
CVE-2025-68618HIGH7.5ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-12...
CVE-2025-59129HIGH7.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in appointify Appoint...
CVE-2025-61557HIGH7.5nixseparatedebuginfod before v0.4.1 is vulnerable to Directory Traversal.
CVE-2025-15254HIGH8.8A vulnerability was found in Tenda W6-S 1.0.0.4(510). This affects the function TendaAte of the file /goform/ate of the ...
CVE-2025-15253HIGH8.8A vulnerability has been found in Tenda M3 1.0.0.13(4903). The impacted element is an unknown function of the file /gofo...
CVE-2025-15252HIGH8.8A flaw has been found in Tenda M3 1.0.0.13(4903). The affected element is the function formSetRemoteDhcpForAp of the fil...
CVE-2025-14509HIGH7.2The Lucky Wheel for WooCommerce – Spin a Sale plugin for WordPress is vulnerable to PHP Code Injection in all versions u...
CVE-2025-69034HIGH8.1Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2025-68996HIGH7.5Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2025-68990HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in xenioushk BWL Pro ...
CVE-2025-68987HIGH7.5Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2025-68985HIGH7.5Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2025-68984HIGH7.5Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2025-68983HIGH7.5Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2025-15358HIGH7.5DVP-12SE11T - Denial of Service Vulnerability
CVE-2025-15234HIGH8.8A weakness has been identified in Tenda M3 1.0.0.13(4903). Impacted is the function formSetRemoteInternetLanInfo of the ...
CVE-2025-15233HIGH8.8A security flaw has been discovered in Tenda M3 1.0.0.13(4903). This issue affects the function formSetAdInfoDetails of ...
CVE-2025-15232HIGH8.8A vulnerability was identified in Tenda M3 1.0.0.13(4903). This vulnerability affects the function formSetAdPushInfo of ...
CVE-2025-15231HIGH8.8A vulnerability was determined in Tenda M3 1.0.0.13(4903). This affects the function formSetRemoteVlanInfo of the file /...
CVE-2025-15230HIGH8.8A vulnerability was found in Tenda M3 1.0.0.13(4903). Affected by this issue is the function formSetVlanPolicy of the fi...
CVE-2025-15229HIGH7.5A vulnerability has been found in Tenda CH22 up to 1.0.0.1. Affected by this vulnerability is the function fromDhcpListC...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now