2025 CVE Vulnerabilities

45,255 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-8729CRITICAL9.1A vulnerability has been found in MigoXLab LMeterX 1.2.0 and classified as critical. Affected by this vulnerability is t...
CVE-2025-8749MEDIUM6.5Path Traversal vulnerability in API Endpoint in Mobile Industrial Robots (MiR) Software Versions prior to 3.0.0 on MiR R...
CVE-2025-8088HIGH8.8A path traversal vulnerability affecting the Windows version of WinRAR allows the attackers to execute arbitrary code by...
CVE-2025-8748HIGH8.8MiR software versions prior to version 3.0.0 are affected by a command injection vulnerability. A malicious HTTP reques...
CVE-2025-53606CRITICAL9.8Deserialization of Untrusted Data vulnerability in Apache Seata (incubating). This issue affects Apache Seata (incubati...
CVE-2025-48913CRITICAL9.8If untrusted users are allowed to configure JMS for Apache CXF, previously they could use RMI or LDAP URLs, potentially ...
CVE-2025-6572MEDIUM5.9The OpenStreetMap for Gutenberg and WPBakery Page Builder (formerly Visual Composer) WordPress plugin through 1.2.0 does...
CVE-2025-54959MEDIUM5.3Powered BLUE Server versions 0.20130927 and prior contain a path traversal vulnerability. If this vulnerability is explo...
CVE-2025-54958MEDIUM6.3Powered BLUE 870 versions 0.20130927 and prior contain an OS command injection vulnerability. If this vulnerability is e...
CVE-2025-54940MEDIUM4.6An HTML injection vulnerability exists in WordPress plugin "Advanced Custom Fields" prior to 6.4.3. If this vulnerabilit...
CVE-2025-8708HIGH7.5A vulnerability was found in Antabot White-Jotter 0.22. It has been declared as critical. This vulnerability affects the...
CVE-2025-8707MEDIUM5.5A vulnerability was found in Huuge Box App 1.0.3 on Android. It has been classified as problematic. This affects an unkn...
CVE-2025-8706HIGH8.8A vulnerability has been found in Wanzhou WOES Intelligent Optimization Energy Saving System 1.0 and classified as criti...
CVE-2025-8705HIGH8.8A vulnerability, which was classified as critical, was found in Wanzhou WOES Intelligent Optimization Energy Saving Syst...
CVE-2025-8704HIGH8.8A vulnerability, which was classified as critical, has been found in Wanzhou WOES Intelligent Optimization Energy Saving...
CVE-2025-8703HIGH8.8A vulnerability classified as critical was found in Wanzhou WOES Intelligent Optimization Energy Saving System 1.0. This...
CVE-2025-54887CRITICAL9.1jwe is a Ruby implementation of the RFC 7516 JSON Web Encryption (JWE) standard. In versions 1.1.0 and below, authentica...
CVE-2025-54886HIGH8.4skops is a Python library which helps users share and ship their scikit-learn based models. In versions 0.12.0 and below...
CVE-2025-54793MEDIUM6.1Astro is a web framework for content-driven websites. In versions 5.2.0 through 5.12.7, there is an Open Redirect vulner...
CVE-2025-8702HIGH8.8A vulnerability classified as critical has been found in Wanzhou WOES Intelligent Optimization Energy Saving System 1.0....
CVE-2025-54952CRITICAL9.8An integer overflow vulnerability in the loading of ExecuTorch models can cause smaller-than-expected memory regions to ...
CVE-2025-54368MEDIUM6.8uv is a Python package and project manager written in Rust. In versions 0.8.5 and earlier, remote ZIP archives were hand...
CVE-2025-54951CRITICAL9.8A group of related buffer overflow vulnerabilities in the loading of ExecuTorch models can cause the runtime to crash an...
CVE-2025-54950CRITICAL9.8An out-of-bounds access vulnerability in the loading of ExecuTorch models can cause the runtime to crash and potentially...
CVE-2025-54949CRITICAL9.8A heap buffer overflow vulnerability in the loading of ExecuTorch models can potentially result in code execution or oth...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now