2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-9679CRITICAL9.8A security vulnerability has been detected in itsourcecode Student Information System 1.0. This affects an unknown funct...
CVE-2025-54946CRITICAL9.8A SQL injection vulnerability in SUNNET Corporate Training Management System before 10.11 allows remote attackers to exe...
CVE-2025-54945CRITICAL9.8An external control of file name or path vulnerability in SUNNET Corporate Training Management System before 10.11 allow...
CVE-2025-54944CRITICAL9.8An unrestricted upload of file with dangerous type vulnerability in SUNNET Corporate Training Management System before 1...
CVE-2025-54943CRITICAL9.8A missing authorization vulnerability in SUNNET Corporate Training Management System before 10.11 allows remote attacker...
CVE-2025-54942CRITICAL9.8A missing authentication for critical function vulnerability in SUNNET Corporate Training Management System before 10.11...
CVE-2025-34164CRITICAL9.3A heap-based buffer overflow vulnerability in NetSupport Manager 14.x versions prior to 14.12.0000 allows a remote, unau...
CVE-2025-9678CRITICAL9.8A weakness has been identified in Campcodes Online Loan Management System 1.0. The impacted element is an unknown functi...
CVE-2025-58068CRITICAL9.1Eventlet is a concurrent networking library for Python. Prior to version 0.40.3, the Eventlet WSGI parser is vulnerable ...
CVE-2025-9669CRITICAL9.8A vulnerability has been found in Jinher OA 1.0. This issue affects some unknown processing of the file GetTreeDate.aspx...
CVE-2025-43773CRITICAL9.1Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025.Q2.0, 2025.Q1.0 through 2025.Q1.14, 2024.Q4.0 through 2024...
CVE-2025-52856CRITICAL9.8An improper authentication vulnerability has been reported to affect VioStor. If a remote attacker, they can then exploi...
CVE-2025-44033CRITICAL9.8SQL injection vulnerability in oa_system oasys v.1.1 allows a remote attacker to execute arbitrary code via the allDirec...
CVE-2025-9662CRITICAL9.8A vulnerability was determined in code-projects Simple Grading System 1.0. This affects an unknown function of the file ...
CVE-2025-9660CRITICAL9.8A vulnerability was found in SourceCodester Bakeshop Online Ordering System 1.0. The impacted element is an unknown func...
CVE-2025-9645CRITICAL9.8A vulnerability was identified in itsourcecode Apartment Management System 1.0. This affects an unknown part of the file...
CVE-2025-9644CRITICAL9.8A vulnerability was determined in itsourcecode Apartment Management System 1.0. Affected by this issue is some unknown f...
CVE-2025-9643CRITICAL9.8A vulnerability was found in itsourcecode Apartment Management System 1.0. Affected by this vulnerability is an unknown ...
CVE-2025-9610CRITICAL9.8A vulnerability was determined in code-projects Online Event Judging System 1.0. This issue affects some unknown process...
CVE-2025-8861CRITICAL9.8TSA developed by Changing has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to read,...
CVE-2025-8857CRITICAL9.8Clinic Image System developed by Changing contains hard-coded Credentials, allowing unauthenticated remote attackers to ...
CVE-2025-9605CRITICAL9.8A security vulnerability has been detected in Tenda AC21 and AC23 16.03.08.16. Affected is the function GetParentControl...
CVE-2025-9603CRITICAL9.8A vulnerability was determined in Telesquare TLR-2005KSH 1.2.4. The affected element is an unknown function of the file ...
CVE-2025-9601CRITICAL9.8A vulnerability was detected in itsourcecode Apartment Management System 1.0. This affects an unknown part of the file /...
CVE-2025-9600CRITICAL9.8A security vulnerability has been detected in itsourcecode Apartment Management System 1.0. Affected by this issue is so...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now