2025 CVE Vulnerabilities

45,254 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-9481HIGH8.8A security vulnerability has been detected in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013.001/1.0....
CVE-2025-8424HIGH8.7Improper access control on the NetScaler Management Interface in NetScaler ADC and NetScaler Gateway when an attacker ca...
CVE-2025-55526CRITICAL9.1n8n-workflows Main Commit ee25413 allows attackers to execute a directory traversal via the download_workflow function w...
CVE-2025-50753HIGH8.4Mitrastar GPT-2741GNAC-N2 devices are provided with access through ssh into a restricted default shell.The command "devi...
CVE-2025-29992HIGH7.5Mahara before 24.04.9 exposes database connection information if the database becomes unreachable, e.g., due to the data...
CVE-2025-9190MEDIUM4.8The configuration of Cursor on macOS, specifically the "RunAsNode" fuse enabled, allows a local attacker with unprivileg...
CVE-2025-8700MEDIUM4.8Invoice Ninja's configuration on macOS, specifically the presence of entitlement "com.apple.security.get-task-allow", al...
CVE-2025-8597MEDIUM4.8MacVim's configuration on macOS, specifically the presence of entitlement "com.apple.security.get-task-allow", allows lo...
CVE-2025-7776CRITICAL9.8Memory overflow vulnerability leading to unpredictable or erroneous behavior and Denial of Service in NetScaler ADC and ...
CVE-2025-7775CRITICAL9.8Memory overflow vulnerability leading to Remote Code Execution and/or Denial of Service in NetScaler ADC and NetScaler G...
CVE-2025-53813MEDIUM4.8The configuration of Nozbe on macOS, specifically the "RunAsNode" fuse enabled, allows a local attacker with unprivilege...
CVE-2025-53811MEDIUM4.8The configuration of Mosh-Pro on macOS, specifically the "RunAsNode" fuse enabled, allows a local attacker with unprivil...
CVE-2025-38676HIGH7.8In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Avoid stack buffer overflow from kernel ...
CVE-2025-44002MEDIUM6.1Race Condition in the Directory Validation Logic in the TeamViewer Full Client and Host prior version 15.69 on Windows a...
CVE-2025-1501MEDIUM5.3An access control vulnerability was discovered in the Request Trace and Download Trace functionalities of CMC before 25....
CVE-2025-48108MEDIUM6.5Missing Authorization vulnerability in Mojoomla School Management allows Exploiting Incorrectly Configured Access Contro...
CVE-2025-29901MEDIUM6.5A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user a...
CVE-2025-6247MEDIUM4.7The WordPress Automatic Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, a...
CVE-2025-57704MEDIUM5.5Delta Electronics EIP Builder version 1.11 is vulnerable to a File Parsing XML External Entity Processing Information Di...
CVE-2025-53419HIGH7.8Delta Electronics COMMGR has Code Injection vulnerability.
CVE-2025-53418HIGH8.6Delta Electronics COMMGR has Stack-based Buffer Overflow vulnerability.
CVE-2025-9476CRITICAL9.8A vulnerability has been found in SourceCodester Human Resource Information System 1.0. Affected by this issue is some u...
CVE-2025-9475CRITICAL9.8A flaw has been found in SourceCodester Human Resource Information System 1.0. Affected by this vulnerability is an unkn...
CVE-2025-41702CRITICAL9.8The JWT secret key is embedded in the egOS WebGUI backend and is readable to the default user. An unauthenticated remote...
CVE-2025-9474MEDIUM4.5A vulnerability was detected in Mihomo Party up to 1.8.1 on macOS. Affected is the function enableSysProxy of the file s...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now