2025 CVE Vulnerabilities
45,321 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-10358 | CRITICAL | 9.8 | 6.1% | Sep 13, 2025 | A security vulnerability has been detected in Wavlink WL-WN578W2 221110. This affects the function sub_404850 of the fil... |
| CVE-2025-10329 | CRITICAL | 9.8 | 0.4% | Sep 12, 2025 | A vulnerability was detected in cdevroe unmark up to 1.9.3. This affects an unknown part of the file /application/contro... |
| CVE-2025-10328 | CRITICAL | 9.8 | 9.4% | Sep 12, 2025 | A security vulnerability has been detected in MiczFlor RPi-Jukebox-RFID up to 2.8.0. Affected by this issue is some unkn... |
| CVE-2025-45583 | CRITICAL | 9.1 | 0.3% | Sep 12, 2025 | Incorrect access control in the FTP protocol of Audi UTR 2.0 Universal Traffic Recorder 2.0 allows attackers to authenti... |
| CVE-2025-10327 | CRITICAL | 9.8 | 10.2% | Sep 12, 2025 | A weakness has been identified in MiczFlor RPi-Jukebox-RFID up to 2.8.0. Affected by this vulnerability is an unknown fu... |
| CVE-2025-10326 | CRITICAL | 9.8 | 7.1% | Sep 12, 2025 | A security flaw has been discovered in MiczFlor RPi-Jukebox-RFID up to 2.8.0. Affected is an unknown function of the fil... |
| CVE-2025-10324 | CRITICAL | 9.8 | 8.1% | Sep 12, 2025 | A vulnerability was determined in Wavlink WL-WN578W2 221110. This affects the function sub_401C5C of the file firewall.c... |
| CVE-2025-10323 | CRITICAL | 9.8 | 8.1% | Sep 12, 2025 | A vulnerability was found in Wavlink WL-WN578W2 221110. The impacted element is the function sub_409184 of the file /wiz... |
| CVE-2025-58434 | CRITICAL | 9.8 | 49.9% | Sep 12, 2025 | Flowise is a drag & drop user interface to build a customized large language model flow. In version 3.0.5 and earlier, t... |
| CVE-2025-55835 | CRITICAL | 9.8 | 0.9% | Sep 12, 2025 | File Upload vulnerability in SueamCMS v.0.1.2 allows a remote attacker to execute arbitrary code via the lack of filteri... |
| CVE-2025-9556 | CRITICAL | 9.8 | 0.7% | Sep 12, 2025 | Langchaingo supports the use of jinja2 syntax when parsing prompts, which is in turn parsed using the gonja library v1.5... |
| CVE-2025-10365 | CRITICAL | 9.3 | 5.8% | Sep 12, 2025 | The Evertz SDVN 3080ipx-10G is a High Bandwidth Ethernet Switching Fabric for Video Application. This device exposes a w... |
| CVE-2025-10364 | CRITICAL | 9.3 | 6.3% | Sep 12, 2025 | The Evertz SDVN 3080ipx-10G is a High Bandwidth Ethernet Switching Fabric for Video Application. This device exposes a w... |
| CVE-2025-8699 | CRITICAL | 9.1 | 0.7% | Sep 12, 2025 | Some "Stored Value" Unattended Payment Solutions of KioSoft use vulnerable NFC cards. Attackers could potentially use th... |
| CVE-2025-10266 | CRITICAL | 9.8 | 0.5% | Sep 12, 2025 | NUP Pro developed by NewType Infortech has a SQL Injection vulnerability, allowing unauthenticated remote attackers to i... |
| CVE-2025-10264 | CRITICAL | 10 | 0.4% | Sep 12, 2025 | Certain models of NVR developed by Digiever has an Exposure of Sensitive Information vulnerability, allowing unauthentic... |
| CVE-2025-21043 | CRITICAL | 9.8 | 1.4% | Sep 12, 2025 | Out-of-bounds write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers to execute arbitra... |
| CVE-2025-21042 | CRITICAL | 9.8 | 11.6% | Sep 12, 2025 | Out-of-bounds write in libimagecodec.quram.so prior to SMR Apr-2025 Release 1 allows remote attackers to execute arbitra... |
| CVE-2025-55319 | CRITICAL | 9.8 | 0.8% | Sep 12, 2025 | Ai command injection in Agentic AI and Visual Studio Code allows an unauthorized attacker to execute code over a network... |
| CVE-2025-36222 | CRITICAL | 9.8 | 0.4% | Sep 11, 2025 | IBM Fusion 2.2.0 through 2.10.1, IBM Fusion HCI 2.2.0 through 2.10.0, and IBM Fusion HCI for watsonx 2.8.2 through 2.10.... |
| CVE-2025-10127 | CRITICAL | 9.8 | 0.6% | Sep 11, 2025 | Daikin Europe N.V Security Gateway is vulnerable to an authorization bypass through a user-controlled key vulnerabilit... |
| CVE-2025-59053 | CRITICAL | 9.6 | 0.5% | Sep 11, 2025 | AIRI is a self-hosted, artificial intelligence based Grok Companion. In v0.7.2-beta.2 in the `packages/stage-ui/src/comp... |
| CVE-2025-58143 | CRITICAL | 9.8 | 0.3% | Sep 11, 2025 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to whi... |
| CVE-2025-58142 | CRITICAL | 9.8 | 0.4% | Sep 11, 2025 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to whi... |
| CVE-2025-27466 | CRITICAL | 9.8 | 0.4% | Sep 11, 2025 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to whi... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now