2025 CVE Vulnerabilities

45,321 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-9420CRITICAL9.8A flaw has been found in itsourcecode Apartment Management System 1.0. The impacted element is an unknown function of th...
CVE-2025-9419CRITICAL9.8A vulnerability was detected in itsourcecode Apartment Management System 1.0. The affected element is an unknown functio...
CVE-2025-9418CRITICAL9.8A security vulnerability has been detected in itsourcecode Apartment Management System 1.0. Impacted is an unknown funct...
CVE-2025-9415CRITICAL9.8A vulnerability was identified in GreenCMS up to 2.3.0603. This affects an unknown part of the file /index.php?m=admin&c...
CVE-2025-9413CRITICAL9.8A flaw has been found in lostvip-com ruoyi-go up to 2.1. This impacts the function SelectListByPage of the file modules/...
CVE-2025-9412CRITICAL9.8A vulnerability was detected in lostvip-com ruoyi-go up to 2.1. This affects the function SelectListByPage of the file m...
CVE-2025-9411CRITICAL9.8A security vulnerability has been detected in lostvip-com ruoyi-go up to 2.1. The impacted element is the function Selec...
CVE-2025-9410CRITICAL9.8A weakness has been identified in lostvip-com ruoyi-go up to 2.1. The affected element is the function SelectListByPage ...
CVE-2025-57773CRITICAL9.8DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.12, because DB2 para...
CVE-2025-57772CRITICAL9.8DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.12, there is a H2 JD...
CVE-2025-53120CRITICAL9.4A path traversal vulnerability in unauthenticated upload functionality allows a malicious actor to upload binaries and s...
CVE-2025-50722CRITICAL9.8Insecure Permissions vulnerability in sparkshop v.1.1.7 allows a remote attacker to execute arbitrary code via the Commo...
CVE-2025-55575CRITICAL9.8SQL Injection vulnerability in SMM Panel 3.1 allowing remote attackers to gain sensitive information via a crafted HTTP ...
CVE-2025-53118CRITICAL9.8An authentication bypass vulnerability exists which allows an unauthenticated attacker to control administrator backup f...
CVE-2025-56214CRITICAL9.8phpgurukul Hospital Management System 4.0 is vulnerable to SQL Injection in index.php via the username parameter.
CVE-2025-56212CRITICAL9.8phpgurukul Hospital Management System 4.0 is vulnerable to SQL Injection in add-doctor.php via the docname parameter.
CVE-2025-50900CRITICAL9.8An issue was discovered in getrebuild/rebuild 4.0.4. The affected source code class is com.rebuild.web.RebuildWebInterce...
CVE-2025-54494CRITICAL9.8A stack-based buffer overflow vulnerability exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9...
CVE-2025-54493CRITICAL9.8A stack-based buffer overflow vulnerability exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9...
CVE-2025-54492CRITICAL9.8A stack-based buffer overflow vulnerability exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9...
CVE-2025-54491CRITICAL9.8A stack-based buffer overflow vulnerability exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9...
CVE-2025-54490CRITICAL9.8A stack-based buffer overflow vulnerability exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9...
CVE-2025-54489CRITICAL9.8A stack-based buffer overflow vulnerability exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9...
CVE-2025-54488CRITICAL9.8A stack-based buffer overflow vulnerability exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9...
CVE-2025-54487CRITICAL9.8A stack-based buffer overflow vulnerability exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now