2025 CVE Vulnerabilities

45,259 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-3498CRITICAL9.9An unauthenticated user with management network access can get and modify the Radiflow iSAP Smart Collector (CentOS 7 -...
CVE-2025-3497HIGH8.7The Linux distribution underlying the Radiflow iSAP Smart Collector (CentOS 7 - VSAP 1.20) is obsolete and reached end...
CVE-2025-27028MEDIUM6.8The Linux deprivileged user vpuser in Radiflow iSAP Smart Collector (CentOS 7 - VSAP 1.20) can read the entire file syst...
CVE-2025-27027MEDIUM4.1A user with vpuser credentials that opens an SSH connection to the device, gets a restricted shell rbash that allows onl...
CVE-2025-7378MEDIUM6An improper Input Validation vulnerability allows injecting arbitrary values of the NAS configuration file in ASUSTOR AD...
CVE-2025-7220CRITICAL9.8A vulnerability was found in Campcodes Payroll Management System 1.0. It has been declared as critical. Affected by this...
CVE-2025-7219CRITICAL9.8A vulnerability was found in Campcodes Payroll Management System 1.0. It has been classified as critical. Affected is an...
CVE-2025-7218CRITICAL9.8A vulnerability was found in Campcodes Payroll Management System 1.0 and classified as critical. This issue affects some...
CVE-2025-6742HIGH7.5The SureForms – Drag and Drop Form Builder for WordPress plugin for WordPress is vulnerable to PHP Object Injection in a...
CVE-2025-6691HIGH8.1The SureForms – Drag and Drop Form Builder for WordPress plugin for WordPress is vulnerable to arbitrary file deletion d...
CVE-2025-7217CRITICAL9.8A vulnerability has been found in Campcodes Payroll Management System 1.0 and classified as critical. This vulnerability...
CVE-2025-7216HIGH7.3A vulnerability, which was classified as critical, was found in lty628 Aidigu up to 1.8.2. This affects the function che...
CVE-2025-7215LOW1.6A vulnerability, which was classified as problematic, has been found in FNKvision FNK-GU2 up to 40.1.7. Affected by this...
CVE-2025-7214LOW1.6A vulnerability classified as problematic was found in FNKvision FNK-GU2 up to 40.1.7. Affected by this vulnerability is...
CVE-2025-7059MEDIUM6.4The Simple Featured Image plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘slideshow’ paramete...
CVE-2025-4606CRITICAL9.8The Sala - Startup & SaaS WordPress Theme theme for WordPress is vulnerable to privilege escalation via account takeover...
CVE-2025-7213MEDIUM6.4A vulnerability classified as critical has been found in FNKvision FNK-GU2 up to 40.1.7. Affected is an unknown function...
CVE-2025-7212HIGH8.8A vulnerability was found in itsourcecode Insurance Management System up to 1.0. It has been rated as critical. This iss...
CVE-2025-7211CRITICAL9.8A vulnerability was found in code-projects LifeStyle Store 1.0. It has been declared as critical. This vulnerability aff...
CVE-2025-53688Rejected reason: Not used
CVE-2025-53687Rejected reason: Not used
CVE-2025-53686Rejected reason: Not used
CVE-2025-53685Rejected reason: Not used
CVE-2025-53684Rejected reason: Not used
CVE-2025-53683Rejected reason: Not used

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now