2025 CVE Vulnerabilities

45,264 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-2141MEDIUM6.1IBM System Storage Virtualization Engine TS7700 3957 VED R5.4 8.54.2.17, R6.0 8.60.0.115, 3948 VED R5.4 8.54.2.17, R6.0 ...
CVE-2025-6936CRITICAL9.8A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been classified as critical. This af...
CVE-2025-6935CRITICAL9.8A vulnerability was found in Campcodes Sales and Inventory System 1.0 and classified as critical. Affected by this issue...
CVE-2025-6932LOW3.7A vulnerability, which was classified as problematic, was found in D-Link DCS-7517 up to 2.02.0. This affects the functi...
CVE-2025-6931HIGH7.4A vulnerability classified as problematic was found in D-Link DCS-6517 and DCS-7517 up to 2.02.0. Affected by this vulne...
CVE-2025-6930HIGH8.8A vulnerability classified as critical has been found in PHPGurukul Zoo Management System 2.1. Affected is an unknown fu...
CVE-2025-6554HIGH8.1Type confusion in V8 in Google Chrome prior to 138.0.7204.96 allowed a remote attacker to perform arbitrary read/write v...
CVE-2025-6929HIGH8.8A vulnerability was found in PHPGurukul Zoo Management System 2.1. It has been rated as critical. This issue affects som...
CVE-2025-53004CRITICAL9.8DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.11, there is a bypas...
CVE-2025-49521HIGH8.8A flaw was found in the EDA component of the Ansible Automation Platform, where user-supplied Git branch or refspec valu...
CVE-2025-49520HIGH8.8A flaw was found in Ansible Automation Platform’s EDA component where user-supplied Git URLs are passed unsanitized to t...
CVE-2025-32463HIGH7.8Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director...
CVE-2025-32462HIGH8.8Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allo...
CVE-2025-52997HIGH7.5File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, previ...
CVE-2025-52996MEDIUM4.3File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, previ...
CVE-2025-52995MEDIUM6.6File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, previ...
CVE-2025-52901MEDIUM6.5File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, previ...
CVE-2025-52491MEDIUM5.8Akamai CloudTest before 60 2025.06.09 (12989) allows SSRF.
CVE-2025-49493MEDIUM5.8Akamai CloudTest before 60 2025.06.02 (12988) allows file inclusion via XML External Entity (XXE) injection.
CVE-2025-36593HIGH8.8Dell OpenManage Network Integration, versions prior to 3.8, contains an Authentication Bypass by Capture-replay vulnerab...
CVE-2025-6925CRITICAL9.1A vulnerability has been found in Dromara RuoYi-Vue-Plus 5.4.0 and classified as critical. Affected by this vulnerabilit...
CVE-2025-6917CRITICAL9.8A vulnerability has been found in code-projects Online Hotel Booking 1.0 and classified as critical. This vulnerability ...
CVE-2025-52898HIGH8.8Frappe is a full-stack web application framework. Prior to versions 14.94.3 and 15.58.0, a carefully crafted request cou...
CVE-2025-6916HIGH8.8A vulnerability, which was classified as critical, was found in TOTOLINK T6 4.1.5cu.748_B20211015. This affects the func...
CVE-2025-6915HIGH8.8A vulnerability, which was classified as critical, has been found in PHPGurukul Student Record System 3.2. Affected by t...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now