2025 CVE Vulnerabilities

45,255 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-46121CRITICAL9.8An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139, where the functions `...
CVE-2025-46120CRITICAL9.8An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.27 and 200.18.7.1.323, and in Ruckus ZoneDir...
CVE-2025-46119MEDIUM6.3An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.27 and 200.18.7.1.323, and in Ruckus ZoneDir...
CVE-2025-46118MEDIUM5.3An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139 and in Ruckus ZoneDire...
CVE-2025-46117CRITICAL9.1An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139, and in Ruckus ZoneDir...
CVE-2025-46116HIGH8.8An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139, and in Ruckus ZoneDir...
CVE-2025-43977MEDIUM5.5The com.skt.prod.dialer application through 12.5.0 for Android enables any installed application (with no permissions) t...
CVE-2025-43976MEDIUM5.5The com.enflick.android.tn2ndLine application through 24.17.1.0 for Android enables any installed application (with no p...
CVE-2025-7926MEDIUM5.4A vulnerability, which was classified as problematic, was found in PHPGurukul Online Banquet Booking System 1.0. This af...
CVE-2025-7624CRITICAL9.8An SQL injection vulnerability in the legacy (transparent) SMTP proxy of Sophos Firewall versions older than 21.0 MR2 (2...
CVE-2025-7382HIGH8.8A command injection vulnerability in WebAdmin of Sophos Firewall versions older than 21.0 MR2 (21.0.2) can lead to adjac...
CVE-2025-6704CRITICAL9.8An arbitrary file writing vulnerability in the Secure PDF eXchange (SPX) feature of Sophos Firewall versions older than ...
CVE-2025-6235MEDIUM6.1In ExtremeControl before 25.5.12, a cross-site scripting (XSS) vulnerability was discovered in a login interface of the ...
CVE-2025-4130HIGH7.5Use of Hard-coded Credentials vulnerability in PAVO Inc. PAVO Pay allows Read Sensitive Constants Within an Executable. ...
CVE-2025-4129HIGH7.5Authorization Bypass Through User-Controlled Key vulnerability in PAVO Inc. PAVO Pay allows Exploitation of Trusted Iden...
CVE-2025-7925MEDIUM6.1A vulnerability, which was classified as problematic, has been found in PHPGurukul Online Banquet Booking System 1.0. Af...
CVE-2025-4040HIGH7.1Authorization Bypass Through User-Controlled Key vulnerability in Turpak Automatic Station Monitoring System allows Priv...
CVE-2025-41100MEDIUM5.9Incorrect authentication vulnerability in ParkingDoor. Through this vulnerability it is possible to operate the device w...
CVE-2025-30192HIGH7.5An attacker spoofing answers to ECS enabled requests sent out by the Recursor has a chance of success higher than non-EC...
CVE-2025-2301MEDIUM4.4Authorization Bypass Through User-Controlled Key vulnerability in Akbim Software Online Exam Registration allows Exploit...
CVE-2025-7924MEDIUM5.4A vulnerability classified as problematic was found in PHPGurukul Online Banquet Booking System 1.0. Affected by this vu...
CVE-2025-5681MEDIUM6.5Authorization Bypass Through User-Controlled Key vulnerability in Turtek Software Eyotek allows Exploitation of Trusted ...
CVE-2025-41459HIGH7.8Insufficient protection against brute-force and runtime manipulation in the local authentication component in Two App St...
CVE-2025-41458MEDIUM5.5Unencrypted storage in the database in Two App Studio Journey v5.5.9 for iOS allows local attackers to extract sensitive...
CVE-2025-50151HIGH8.8File access paths in configuration files uploaded by users with administrator access are not validated. This issue affe...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now