2025 CVE Vulnerabilities

45,255 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-8640MEDIUM6.8Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers...
CVE-2025-8639MEDIUM6.8Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers...
CVE-2025-8638MEDIUM6.8Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers...
CVE-2025-8637MEDIUM6.8Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers...
CVE-2025-8636MEDIUM6.8Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers...
CVE-2025-8635MEDIUM6.8Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers...
CVE-2025-8634MEDIUM6.8Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers...
CVE-2025-8633MEDIUM6.8Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers...
CVE-2025-8632MEDIUM6.8Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers...
CVE-2025-8631MEDIUM6.8Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers...
CVE-2025-8630MEDIUM6.8Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers...
CVE-2025-8629MEDIUM6.8Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers...
CVE-2025-8628MEDIUM6.8Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers...
CVE-2025-7502MEDIUM5.4The WPBakery Page Builder for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several sh...
CVE-2025-7036HIGH7.5The CleverReach® WP plugin for WordPress is vulnerable to time-based SQL Injection via the ‘title’ parameter in all vers...
CVE-2025-6986MEDIUM6.5The FileBird – WordPress Media Library Folders & File Manager plugin for WordPress is vulnerable to SQL Injection via th...
CVE-2025-6690MEDIUM6.4The WP Tournament Registration plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘field’ paramet...
CVE-2025-6259MEDIUM6.4The esri-map-view plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's esri-map-view short...
CVE-2025-6256MEDIUM6.4The Flex Guten plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘thumbnailHoverEffect’ paramete...
CVE-2025-54623MEDIUM6.5Out-of-bounds read vulnerability in the devicemanager module. Impact: Successful exploitation of this vulnerability may ...
CVE-2025-54622HIGH7.4Binding authentication bypass vulnerability in the devicemanager module. Impact: Successful exploitation of this vulnera...
CVE-2025-54621LOW3.3Iterator failure issue in the WantAgent module. Impact: Successful exploitation of this vulnerability may cause memory r...
CVE-2025-54620MEDIUM5.5Deserialization vulnerability of untrusted data in the ability module. Impact: Successful exploitation of this vulnerabi...
CVE-2025-54619LOW3.3Iterator failure issue in the multi-mode input module. Impact: Successful exploitation of this vulnerability may cause i...
CVE-2025-54618MEDIUM5.7Permission control vulnerability in the distributed clipboard module. Impact: Successful exploitation of this vulnerabil...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now