2025 CVE Vulnerabilities

45,259 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-7182MEDIUM6.1A vulnerability has been found in itsourcecode Student Transcript Processing System 1.0 and classified as problematic. A...
CVE-2025-7037HIGH7.2SQL injection in Ivanti Endpoint Manager before version 2024 SU3 and 2022 SU8 Security Update 1 allows a remote authenti...
CVE-2025-6996HIGH8.4Improper use of encryption in the agent of Ivanti Endpoint Manager before version 2024 SU3 and 2022 SU8 Security Update ...
CVE-2025-6995HIGH8.4Improper use of encryption in the agent of Ivanti Endpoint Manager before version 2024 SU3 and 2022 SU8 Security Update ...
CVE-2025-6770HIGH7.2OS command injection in Ivanti Endpoint Manager Mobile (EPMM) before version 12.5.0.2 allows a remote authenticated atta...
CVE-2025-5463MEDIUM5.5Insertion of sensitive information into a log file in Ivanti Connect Secure before version 22.7R2.8 and Ivanti Policy Se...
CVE-2025-5451MEDIUM4.9A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.8 and Ivanti Policy Secure before version 2...
CVE-2025-5450LOW2.7Improper access control in the certificate management component of Ivanti Connect Secure before version 22.7R2.8 and Iva...
CVE-2025-53545MEDIUM6.9Press, a Frappe custom app that runs Frappe Cloud, manages infrastructure, subscription, marketplace, and software-as-a-...
CVE-2025-53480MEDIUM5.4The CheckUser extension’s Special:Investigate page has a vulnerability in the Account information tab, where specific in...
CVE-2025-53372HIGH7.5node-code-sandbox-mcp is a Node.js–based Model Context Protocol server that spins up disposable Docker containers to exe...
CVE-2025-3630MEDIUM5.4IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.6, 6.2.0.0 through 6.2.0.4, IBM Sterling File Gateway 6.0.0.0 throug...
CVE-2025-36600HIGH8.2Dell Client Platform BIOS contains an Improper Access Control Applied to Mirrored or Aliased Memory Regions vulnerabilit...
CVE-2025-2827MEDIUM4.3IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6, and 6.2.0.0 through 6.2.0.4 could disclose sensitive installat...
CVE-2025-2793MEDIUM5.4IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.6, 6.2.0.0 through 6.2.0.4, IBM Sterling File Gateway 6.0.0.0 throug...
CVE-2025-29267MEDIUM6.5SQL Injection vulnerability in Abis, Inc Adjutant Core Accounting ERP build v.PreBeta250F allows a remote attacker to ob...
CVE-2025-24474LOW2.7An Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability [CWE-89] in FortiM...
CVE-2025-7345HIGH7.5A flaw exists in gdk‑pixbuf within the gdk_pixbuf__jpeg_image_load_increment function (io-jpeg.c) and in glib’s g_base64...
CVE-2025-7181CRITICAL9.8A vulnerability, which was classified as critical, was found in code-projects Staff Audit System 1.0. Affected is an unk...
CVE-2025-7180CRITICAL9.8A vulnerability, which was classified as critical, has been found in code-projects Staff Audit System 1.0. This issue af...
CVE-2025-47422HIGH7.5Advanced Installer before 22.6 has an uncontrolled search path element local privilege escalation vulnerability. When ru...
CVE-2025-7179CRITICAL9.8A vulnerability classified as critical was found in code-projects Library System 1.0. This vulnerability affects unknown...
CVE-2025-7178CRITICAL9.8A vulnerability classified as critical has been found in code-projects Food Distributor Site 1.0. This affects an unknow...
CVE-2025-50130HIGH8.4A heap-based buffer overflow vulnerability exists in VS6Sim.exe contained in V-SFT and TELLUS provided by FUJI ELECTRIC ...
CVE-2025-27061HIGH7.8Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the vid...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now