2025 CVE Vulnerabilities
45,322 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-8498 | CRITICAL | 9.8 | 0.5% | Aug 3, 2025 | A security vulnerability has been detected in code-projects Online Medicine Guide 1.0. This vulnerability affects unknow... |
| CVE-2025-8497 | CRITICAL | 9.8 | 0.5% | Aug 3, 2025 | A weakness has been identified in code-projects Online Medicine Guide 1.0. This affects an unknown part of the file /cus... |
| CVE-2025-8496 | CRITICAL | 9.8 | 0.5% | Aug 3, 2025 | A vulnerability has been found in projectworlds Online Admission System 1.0 and classified as critical. Affected by this... |
| CVE-2025-8495 | CRITICAL | 9.8 | 0.5% | Aug 3, 2025 | A vulnerability, which was classified as critical, was found in code-projects Intern Membership Management System 1.0. A... |
| CVE-2025-54351 | CRITICAL | 10 | 0.4% | Aug 3, 2025 | In iperf before 3.19.1, net.c has a buffer overflow when --skip-rx-copy is used (for MSG_TRUNC in recv). |
| CVE-2025-54349 | CRITICAL | 10 | 0.4% | Aug 3, 2025 | In iperf before 3.19.1, iperf_auth.c has an off-by-one error and resultant heap-based buffer overflow. |
| CVE-2025-8494 | CRITICAL | 9.8 | 0.5% | Aug 3, 2025 | A vulnerability, which was classified as critical, has been found in code-projects Intern Membership Management System 1... |
| CVE-2025-8493 | CRITICAL | 9.8 | 0.4% | Aug 2, 2025 | A vulnerability classified as critical was found in code-projects Intern Membership Management System 1.0. This vulnerab... |
| CVE-2025-8471 | CRITICAL | 9.8 | 0.6% | Aug 2, 2025 | A vulnerability, which was classified as critical, has been found in projectworlds Online Admission System 1.0. This iss... |
| CVE-2025-8470 | CRITICAL | 9.8 | 0.5% | Aug 2, 2025 | A vulnerability classified as critical was found in SourceCodester Online Hotel Reservation System 1.0. This vulnerabili... |
| CVE-2025-8469 | CRITICAL | 9.8 | 0.5% | Aug 2, 2025 | A vulnerability classified as critical has been found in SourceCodester Online Hotel Reservation System 1.0. This affect... |
| CVE-2025-8468 | CRITICAL | 9.8 | 0.4% | Aug 2, 2025 | A vulnerability was found in code-projects Wazifa System 1.0. It has been rated as critical. Affected by this issue is s... |
| CVE-2025-7710 | CRITICAL | 9.8 | 0.6% | Aug 2, 2025 | The Brave Conversion Engine (PRO) plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and... |
| CVE-2025-8467 | CRITICAL | 9.8 | 0.4% | Aug 2, 2025 | A vulnerability was found in code-projects Wazifa System 1.0. It has been declared as critical. Affected by this vulnera... |
| CVE-2025-8466 | CRITICAL | 9.8 | 0.4% | Aug 2, 2025 | A vulnerability was found in code-projects Online Farm System 1.0. It has been classified as critical. Affected is an un... |
| CVE-2025-6077 | CRITICAL | 9.8 | 0.8% | Aug 2, 2025 | Partner Software's Partner Software Product and corresponding Partner Web application use the same default username and ... |
| CVE-2025-54386 | CRITICAL | 9.8 | 1.0% | Aug 2, 2025 | Traefik is an HTTP reverse proxy and load balancer. In versions 2.11.27 and below, 3.0.0 through 3.4.4 and 3.5.0-rc1, a ... |
| CVE-2025-54133 | CRITICAL | 9.6 | 0.3% | Aug 2, 2025 | Cursor is a code editor built for programming with AI. In versions 1.17 through 1.2, there is a UI information disclosur... |
| CVE-2025-54424 | CRITICAL | 9.8 | 0.9% | Aug 1, 2025 | 1Panel is a web interface and MCP Server that manages websites, files, containers, databases, and LLMs on a Linux server... |
| CVE-2025-6000 | CRITICAL | 9.1 | 0.9% | Aug 1, 2025 | A privileged Vault operator within the root namespace with write permission to {{sys/audit}} may obtain code execution o... |
| CVE-2025-54574 | CRITICAL | 9.8 | 23.5% | Aug 1, 2025 | Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possi... |
| CVE-2025-50870 | CRITICAL | 9.8 | 0.3% | Aug 1, 2025 | Institute-of-Current-Students 1.0 is vulnerable to Incorrect Access Control in the mydetailsstudent.php endpoint. The my... |
| CVE-2025-45150 | CRITICAL | 9.8 | 0.6% | Aug 1, 2025 | Insecure permissions in LangChain-ChatGLM-Webui commit ef829 allows attackers to arbitrarily view and download sensitive... |
| CVE-2025-52390 | CRITICAL | 9.1 | 0.5% | Aug 1, 2025 | Saurus CMS Community Edition since commit d886e5b0 (2010-04-23) is vulnerable to a SQL Injection vulnerability in the `p... |
| CVE-2025-50472 | CRITICAL | 9.8 | 1.2% | Aug 1, 2025 | The modelscope/ms-swift library thru 2.6.1 is vulnerable to arbitrary code execution through deserialization of untruste... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now