2025 CVE Vulnerabilities
45,321 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-9087 | CRITICAL | 9.8 | 1.0% | Aug 16, 2025 | A vulnerability has been found in Tenda AC20 16.03.08.12. This affects the function set_qosMib_list of the file /goform/... |
| CVE-2025-8898 | CRITICAL | 9.8 | 0.4% | Aug 16, 2025 | The Taxi Booking Manager for Woocommerce | E-cab plugin for WordPress is vulnerable to privilege escalation via account ... |
| CVE-2025-7441 | CRITICAL | 9.8 | 37.3% | Aug 16, 2025 | The StoryChief plugin for WordPress is vulnerable to arbitrary file uploads in all versions up to, and including, 1.0.42... |
| CVE-2025-52618 | CRITICAL | 9.8 | 0.3% | Aug 15, 2025 | HCL BigFix SaaS Authentication Service is affected by a SQL injection vulnerability. The vulnerability allows potential... |
| CVE-2025-9060 | CRITICAL | 9.1 | 0.5% | Aug 15, 2025 | A vulnerability has been found in the MSoft MFlash application that allows execution of arbitrary code on the server... |
| CVE-2025-8995 | CRITICAL | 9.8 | 0.5% | Aug 15, 2025 | Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Authenticator Login allows Authenticati... |
| CVE-2025-54466 | CRITICAL | 9.8 | 14.0% | Aug 15, 2025 | Improper Control of Generation of Code ('Code Injection') vulnerability leading to a possible RCE in Apache OFBiz scrum ... |
| CVE-2025-9053 | CRITICAL | 9.8 | 0.4% | Aug 15, 2025 | A vulnerability has been found in projectworlds Travel Management System 1.0. This vulnerability affects unknown code of... |
| CVE-2025-9052 | CRITICAL | 9.8 | 0.4% | Aug 15, 2025 | A vulnerability was identified in projectworlds Travel Management System 1.0. This affects an unknown part of the file /... |
| CVE-2025-9051 | CRITICAL | 9.8 | 0.4% | Aug 15, 2025 | A vulnerability was determined in projectworlds Travel Management System 1.0. Affected by this issue is some unknown fun... |
| CVE-2025-9050 | CRITICAL | 9.8 | 0.4% | Aug 15, 2025 | A vulnerability was found in projectworlds Travel Management System 1.0. Affected by this vulnerability is an unknown fu... |
| CVE-2025-54473 | CRITICAL | 9.2 | 0.4% | Aug 15, 2025 | An authenticated RCE vulnerability in Phoca Commander component 1.0.0-4.0.0 and 5.0.0-5.0.1 for Joomla was discovered. T... |
| CVE-2025-9047 | CRITICAL | 9.8 | 0.4% | Aug 15, 2025 | A vulnerability has been found in projectworlds Visitor Management System 1.0. Affected is an unknown function of the fi... |
| CVE-2025-9028 | CRITICAL | 9.8 | 0.4% | Aug 15, 2025 | A flaw has been found in code-projects Online Medicine Guide 1.0. This vulnerability affects unknown code of the file /a... |
| CVE-2025-9027 | CRITICAL | 9.8 | 0.5% | Aug 15, 2025 | A vulnerability has been found in code-projects Online Medicine Guide 1.0. This vulnerability affects unknown code of th... |
| CVE-2025-9026 | CRITICAL | 9.8 | 3.9% | Aug 15, 2025 | A vulnerability was identified in D-Link DIR-860L 2.04.B04. This affects the function ssdpcgi_main of the file htdocs/cg... |
| CVE-2025-9024 | CRITICAL | 9.8 | 0.4% | Aug 15, 2025 | A vulnerability was found in PHPGurukul Beauty Parlour Management System 1.1. Affected by this vulnerability is an unkno... |
| CVE-2025-7778 | CRITICAL | 9.8 | 0.6% | Aug 15, 2025 | The Icons Factory plugin for WordPress is vulnerable to Arbitrary File Deletion due to insufficient authorization and im... |
| CVE-2025-9022 | CRITICAL | 9.8 | 0.5% | Aug 15, 2025 | A vulnerability was identified in SourceCodester Online Bank Management System up to 1.0. This issue affects some unknow... |
| CVE-2025-9021 | CRITICAL | 9.8 | 0.5% | Aug 15, 2025 | A vulnerability was determined in SourceCodester Online Bank Management System up to 1.0. This vulnerability affects unk... |
| CVE-2025-6679 | CRITICAL | 9.8 | 0.7% | Aug 15, 2025 | The Bit Form builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in... |
| CVE-2025-9013 | CRITICAL | 9.8 | 0.4% | Aug 15, 2025 | A vulnerability has been found in PHPGurukul Online Shopping Portal Project 2.0. This vulnerability affects unknown code... |
| CVE-2025-9012 | CRITICAL | 9.8 | 0.4% | Aug 15, 2025 | A vulnerability was identified in PHPGurukul Online Shopping Portal Project 2.0. This affects an unknown part of the fil... |
| CVE-2025-9011 | CRITICAL | 9.8 | 0.4% | Aug 15, 2025 | A vulnerability was determined in PHPGurukul Online Shopping Portal Project 2.0. Affected by this issue is some unknown ... |
| CVE-2025-9010 | CRITICAL | 9.8 | 0.4% | Aug 15, 2025 | A vulnerability was found in itsourcecode Online Tour and Travel Management System 1.0. Affected by this vulnerability i... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now