2025 CVE Vulnerabilities
45,142 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-8972 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | A vulnerability was identified in itsourcecode Online Tour and Travel Management System 1.0. This issue affects some unk... |
| CVE-2025-8971 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | A vulnerability was determined in itsourcecode Online Tour and Travel Management System 1.0. This vulnerability affects ... |
| CVE-2025-8970 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | A vulnerability was found in itsourcecode Online Tour and Travel Management System 1.0. This affects an unknown part of ... |
| CVE-2025-8969 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | A vulnerability has been found in itsourcecode Online Tour and Travel Management System 1.0. Affected by this issue is s... |
| CVE-2025-8968 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | A vulnerability was identified in itsourcecode Online Tour and Travel Management System 1.0. Affected by this vulnerabil... |
| CVE-2025-20265 | CRITICAL | 10 | 14.5% | Aug 14, 2025 | A vulnerability in the RADIUS subsystem implementation of Cisco Secure Firewall Management Center (FMC) Software could a... |
| CVE-2025-8967 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | A vulnerability was determined in itsourcecode Online Tour and Travel Management System 1.0. Affected is an unknown func... |
| CVE-2025-8966 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | A vulnerability was found in itsourcecode Online Tour and Travel Management System 1.0. This issue affects some unknown ... |
| CVE-2025-50518 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | A use-after-free vulnerability exists in the coap_delete_pdu_lkd function within coap_pdu.c of the libcoap library. This... |
| CVE-2025-7972 | CRITICAL | 9.1 | 0.5% | Aug 14, 2025 | A security issue exists within the FactoryTalk Linx Network Browser. By modifying the process.env.NODE_ENV to ‘developme... |
| CVE-2025-43983 | CRITICAL | 9.1 | 0.4% | Aug 14, 2025 | KuWFi CPF908-CP5 WEB5.0_LCD_20210125 devices have multiple unauthenticated access control vulnerabilities within goform/... |
| CVE-2025-27845 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | In ESPEC North America Web Controller 3 before 3.3.4, /api/v4/auth/ with any invalid authentication request results in e... |
| CVE-2025-7353 | CRITICAL | 9.3 | 0.9% | Aug 14, 2025 | A security issue exists due to the web-based debugger agent enabled on Rockwell Automation ControlLogix® Ethernet Module... |
| CVE-2025-43984 | CRITICAL | 9.8 | 18.2% | Aug 14, 2025 | An issue was discovered on KuWFi GC111 devices (Hardware Version: CPE-LM321_V3.2, Software Version: GC111-GL-LM321_V3.0_... |
| CVE-2025-8963 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | A vulnerability was determined in jeecgboot JimuReport up to 2.1.1. Affected by this issue is some unknown functionality... |
| CVE-2025-8960 | CRITICAL | 9.8 | 0.5% | Aug 14, 2025 | A vulnerability has been found in Campcodes Online Flight Booking Management System 1.0. Affected by this issue is some ... |
| CVE-2025-8957 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | A vulnerability was determined in Campcodes Online Flight Booking Management System 1.0. Affected is an unknown function... |
| CVE-2025-54707 | CRITICAL | 9.3 | 0.3% | Aug 14, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RealMag777 MDTF wp... |
| CVE-2025-54701 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-54700 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-54693 | CRITICAL | 9 | 0.3% | Aug 14, 2025 | Unrestricted Upload of File with Dangerous Type vulnerability in epiphyt Form Block form-block allows Upload a Web Shell... |
| CVE-2025-54686 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | Deserialization of Untrusted Data vulnerability in scriptsbundle Exertio exertio allows Object Injection.This issue affe... |
| CVE-2025-54678 | CRITICAL | 9.3 | 0.3% | Aug 14, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in hassantafreshi Eas... |
| CVE-2025-54669 | CRITICAL | 9.3 | 0.3% | Aug 14, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RomanCode MapSVG m... |
| CVE-2025-52720 | CRITICAL | 9.3 | 0.3% | Aug 14, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in highwarden Super S... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now