2025 CVE Vulnerabilities

45,322 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-8498CRITICAL9.8A security vulnerability has been detected in code-projects Online Medicine Guide 1.0. This vulnerability affects unknow...
CVE-2025-8497CRITICAL9.8A weakness has been identified in code-projects Online Medicine Guide 1.0. This affects an unknown part of the file /cus...
CVE-2025-8496CRITICAL9.8A vulnerability has been found in projectworlds Online Admission System 1.0 and classified as critical. Affected by this...
CVE-2025-8495CRITICAL9.8A vulnerability, which was classified as critical, was found in code-projects Intern Membership Management System 1.0. A...
CVE-2025-54351CRITICAL10In iperf before 3.19.1, net.c has a buffer overflow when --skip-rx-copy is used (for MSG_TRUNC in recv).
CVE-2025-54349CRITICAL10In iperf before 3.19.1, iperf_auth.c has an off-by-one error and resultant heap-based buffer overflow.
CVE-2025-8494CRITICAL9.8A vulnerability, which was classified as critical, has been found in code-projects Intern Membership Management System 1...
CVE-2025-8493CRITICAL9.8A vulnerability classified as critical was found in code-projects Intern Membership Management System 1.0. This vulnerab...
CVE-2025-8471CRITICAL9.8A vulnerability, which was classified as critical, has been found in projectworlds Online Admission System 1.0. This iss...
CVE-2025-8470CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Online Hotel Reservation System 1.0. This vulnerabili...
CVE-2025-8469CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Online Hotel Reservation System 1.0. This affect...
CVE-2025-8468CRITICAL9.8A vulnerability was found in code-projects Wazifa System 1.0. It has been rated as critical. Affected by this issue is s...
CVE-2025-7710CRITICAL9.8The Brave Conversion Engine (PRO) plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and...
CVE-2025-8467CRITICAL9.8A vulnerability was found in code-projects Wazifa System 1.0. It has been declared as critical. Affected by this vulnera...
CVE-2025-8466CRITICAL9.8A vulnerability was found in code-projects Online Farm System 1.0. It has been classified as critical. Affected is an un...
CVE-2025-6077CRITICAL9.8Partner Software's Partner Software Product and corresponding Partner Web application use the same default username and ...
CVE-2025-54386CRITICAL9.8Traefik is an HTTP reverse proxy and load balancer. In versions 2.11.27 and below, 3.0.0 through 3.4.4 and 3.5.0-rc1, a ...
CVE-2025-54133CRITICAL9.6Cursor is a code editor built for programming with AI. In versions 1.17 through 1.2, there is a UI information disclosur...
CVE-2025-54424CRITICAL9.81Panel is a web interface and MCP Server that manages websites, files, containers, databases, and LLMs on a Linux server...
CVE-2025-6000CRITICAL9.1A privileged Vault operator within the root namespace with write permission to {{sys/audit}} may obtain code execution o...
CVE-2025-54574CRITICAL9.8Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possi...
CVE-2025-50870CRITICAL9.8Institute-of-Current-Students 1.0 is vulnerable to Incorrect Access Control in the mydetailsstudent.php endpoint. The my...
CVE-2025-45150CRITICAL9.8Insecure permissions in LangChain-ChatGLM-Webui commit ef829 allows attackers to arbitrarily view and download sensitive...
CVE-2025-52390CRITICAL9.1Saurus CMS Community Edition since commit d886e5b0 (2010-04-23) is vulnerable to a SQL Injection vulnerability in the `p...
CVE-2025-50472CRITICAL9.8The modelscope/ms-swift library thru 2.6.1 is vulnerable to arbitrary code execution through deserialization of untruste...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now