2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-8640 | MEDIUM | 6.8 | 1.0% | Aug 6, 2025 | Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers... |
| CVE-2025-8639 | MEDIUM | 6.8 | 1.0% | Aug 6, 2025 | Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers... |
| CVE-2025-8638 | MEDIUM | 6.8 | 1.0% | Aug 6, 2025 | Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers... |
| CVE-2025-8637 | MEDIUM | 6.8 | 1.0% | Aug 6, 2025 | Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers... |
| CVE-2025-8636 | MEDIUM | 6.8 | 1.0% | Aug 6, 2025 | Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers... |
| CVE-2025-8635 | MEDIUM | 6.8 | 1.0% | Aug 6, 2025 | Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers... |
| CVE-2025-8634 | MEDIUM | 6.8 | 1.0% | Aug 6, 2025 | Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers... |
| CVE-2025-8633 | MEDIUM | 6.8 | 1.0% | Aug 6, 2025 | Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers... |
| CVE-2025-8632 | MEDIUM | 6.8 | 1.0% | Aug 6, 2025 | Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers... |
| CVE-2025-8631 | MEDIUM | 6.8 | 1.0% | Aug 6, 2025 | Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers... |
| CVE-2025-8630 | MEDIUM | 6.8 | 1.0% | Aug 6, 2025 | Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers... |
| CVE-2025-8629 | MEDIUM | 6.8 | 1.0% | Aug 6, 2025 | Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers... |
| CVE-2025-8628 | MEDIUM | 6.8 | 1.0% | Aug 6, 2025 | Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers... |
| CVE-2025-7502 | MEDIUM | 5.4 | 0.2% | Aug 6, 2025 | The WPBakery Page Builder for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several sh... |
| CVE-2025-7036 | HIGH | 7.5 | 0.5% | Aug 6, 2025 | The CleverReach® WP plugin for WordPress is vulnerable to time-based SQL Injection via the ‘title’ parameter in all vers... |
| CVE-2025-6986 | MEDIUM | 6.5 | 0.3% | Aug 6, 2025 | The FileBird – WordPress Media Library Folders & File Manager plugin for WordPress is vulnerable to SQL Injection via th... |
| CVE-2025-6690 | MEDIUM | 6.4 | 0.2% | Aug 6, 2025 | The WP Tournament Registration plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘field’ paramet... |
| CVE-2025-6259 | MEDIUM | 6.4 | 0.2% | Aug 6, 2025 | The esri-map-view plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's esri-map-view short... |
| CVE-2025-6256 | MEDIUM | 6.4 | 0.3% | Aug 6, 2025 | The Flex Guten plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘thumbnailHoverEffect’ paramete... |
| CVE-2025-54623 | MEDIUM | 6.5 | 0.1% | Aug 6, 2025 | Out-of-bounds read vulnerability in the devicemanager module. Impact: Successful exploitation of this vulnerability may ... |
| CVE-2025-54622 | HIGH | 7.4 | 0.1% | Aug 6, 2025 | Binding authentication bypass vulnerability in the devicemanager module. Impact: Successful exploitation of this vulnera... |
| CVE-2025-54621 | LOW | 3.3 | 0.1% | Aug 6, 2025 | Iterator failure issue in the WantAgent module. Impact: Successful exploitation of this vulnerability may cause memory r... |
| CVE-2025-54620 | MEDIUM | 5.5 | 0.1% | Aug 6, 2025 | Deserialization vulnerability of untrusted data in the ability module. Impact: Successful exploitation of this vulnerabi... |
| CVE-2025-54619 | LOW | 3.3 | 0.1% | Aug 6, 2025 | Iterator failure issue in the multi-mode input module. Impact: Successful exploitation of this vulnerability may cause i... |
| CVE-2025-54618 | MEDIUM | 5.7 | 0.1% | Aug 6, 2025 | Permission control vulnerability in the distributed clipboard module. Impact: Successful exploitation of this vulnerabil... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now