2025 CVE Vulnerabilities
45,254 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-9481 | HIGH | 8.8 | 1.3% | Aug 26, 2025 | A security vulnerability has been detected in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013.001/1.0.... |
| CVE-2025-8424 | HIGH | 8.7 | 2.7% | Aug 26, 2025 | Improper access control on the NetScaler Management Interface in NetScaler ADC and NetScaler Gateway when an attacker ca... |
| CVE-2025-55526 | CRITICAL | 9.1 | 0.8% | Aug 26, 2025 | n8n-workflows Main Commit ee25413 allows attackers to execute a directory traversal via the download_workflow function w... |
| CVE-2025-50753 | HIGH | 8.4 | 0.1% | Aug 26, 2025 | Mitrastar GPT-2741GNAC-N2 devices are provided with access through ssh into a restricted default shell.The command "devi... |
| CVE-2025-29992 | HIGH | 7.5 | 0.3% | Aug 26, 2025 | Mahara before 24.04.9 exposes database connection information if the database becomes unreachable, e.g., due to the data... |
| CVE-2025-9190 | MEDIUM | 4.8 | 0.1% | Aug 26, 2025 | The configuration of Cursor on macOS, specifically the "RunAsNode" fuse enabled, allows a local attacker with unprivileg... |
| CVE-2025-8700 | MEDIUM | 4.8 | 0.1% | Aug 26, 2025 | Invoice Ninja's configuration on macOS, specifically the presence of entitlement "com.apple.security.get-task-allow", al... |
| CVE-2025-8597 | MEDIUM | 4.8 | 0.1% | Aug 26, 2025 | MacVim's configuration on macOS, specifically the presence of entitlement "com.apple.security.get-task-allow", allows lo... |
| CVE-2025-7776 | CRITICAL | 9.8 | 6.7% | Aug 26, 2025 | Memory overflow vulnerability leading to unpredictable or erroneous behavior and Denial of Service in NetScaler ADC and ... |
| CVE-2025-7775 | CRITICAL | 9.8 | 19.0% | Aug 26, 2025 | Memory overflow vulnerability leading to Remote Code Execution and/or Denial of Service in NetScaler ADC and NetScaler G... |
| CVE-2025-53813 | MEDIUM | 4.8 | 0.1% | Aug 26, 2025 | The configuration of Nozbe on macOS, specifically the "RunAsNode" fuse enabled, allows a local attacker with unprivilege... |
| CVE-2025-53811 | MEDIUM | 4.8 | 0.1% | Aug 26, 2025 | The configuration of Mosh-Pro on macOS, specifically the "RunAsNode" fuse enabled, allows a local attacker with unprivil... |
| CVE-2025-38676 | HIGH | 7.8 | 0.4% | Aug 26, 2025 | In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Avoid stack buffer overflow from kernel ... |
| CVE-2025-44002 | MEDIUM | 6.1 | 0.1% | Aug 26, 2025 | Race Condition in the Directory Validation Logic in the TeamViewer Full Client and Host prior version 15.69 on Windows a... |
| CVE-2025-1501 | MEDIUM | 5.3 | 0.2% | Aug 26, 2025 | An access control vulnerability was discovered in the Request Trace and Download Trace functionalities of CMC before 25.... |
| CVE-2025-48108 | MEDIUM | 6.5 | 0.2% | Aug 26, 2025 | Missing Authorization vulnerability in Mojoomla School Management allows Exploiting Incorrectly Configured Access Contro... |
| CVE-2025-29901 | MEDIUM | 6.5 | 0.3% | Aug 26, 2025 | A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user a... |
| CVE-2025-6247 | MEDIUM | 4.7 | 0.2% | Aug 26, 2025 | The WordPress Automatic Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, a... |
| CVE-2025-57704 | MEDIUM | 5.5 | 0.2% | Aug 26, 2025 | Delta Electronics EIP Builder version 1.11 is vulnerable to a File Parsing XML External Entity Processing Information Di... |
| CVE-2025-53419 | HIGH | 7.8 | 0.2% | Aug 26, 2025 | Delta Electronics COMMGR has Code Injection vulnerability. |
| CVE-2025-53418 | HIGH | 8.6 | 0.4% | Aug 26, 2025 | Delta Electronics COMMGR has Stack-based Buffer Overflow vulnerability. |
| CVE-2025-9476 | CRITICAL | 9.8 | 0.5% | Aug 26, 2025 | A vulnerability has been found in SourceCodester Human Resource Information System 1.0. Affected by this issue is some u... |
| CVE-2025-9475 | CRITICAL | 9.8 | 0.5% | Aug 26, 2025 | A flaw has been found in SourceCodester Human Resource Information System 1.0. Affected by this vulnerability is an unkn... |
| CVE-2025-41702 | CRITICAL | 9.8 | 0.5% | Aug 26, 2025 | The JWT secret key is embedded in the egOS WebGUI backend and is readable to the default user. An unauthenticated remote... |
| CVE-2025-9474 | MEDIUM | 4.5 | 0.1% | Aug 26, 2025 | A vulnerability was detected in Mihomo Party up to 1.8.1 on macOS. Affected is the function enableSysProxy of the file s... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now