2025 CVE Vulnerabilities

45,269 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-5675CRITICAL9.8A vulnerability was found in Campcodes Online Teacher Record Management System 1.0. It has been classified as critical. ...
CVE-2025-5674HIGH8.8A vulnerability was found in code-projects Patient Record Management System 1.0 and classified as critical. Affected by ...
CVE-2025-5672HIGH8.8A vulnerability has been found in TOTOLINK N302R Plus up to 3.4.0-B20201028 and classified as critical. Affected by this...
CVE-2025-5671HIGH8.8A vulnerability, which was classified as critical, was found in TOTOLINK N302R Plus up to 3.4.0-B20201028. Affected is a...
CVE-2025-46258MEDIUM5.4Missing Authorization vulnerability in BdThemes Element Pack Pro allows Exploiting Incorrectly Configured Access Control...
CVE-2025-46257MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in BdThemes Element Pack Pro allows Cross Site Request Forgery.This issu...
CVE-2025-5670HIGH8.8A vulnerability, which was classified as critical, has been found in PHPGurukul Medical Card Generation System 1.0. This...
CVE-2025-5669HIGH8.8A vulnerability classified as critical was found in PHPGurukul Medical Card Generation System 1.0. This vulnerability af...
CVE-2025-5668HIGH8.8A vulnerability classified as critical has been found in PHPGurukul Medical Card Generation System 1.0. This affects an ...
CVE-2025-49009MEDIUM6.2Para is a multitenant backend server/framework for object persistence and retrieval. A vulnerability that exists in vers...
CVE-2025-48493MEDIUM6.5The Yii 2 Redis extension provides the redis key-value store support for the Yii framework 2.0. On failing connection, t...
CVE-2025-5667CRITICAL9.8A vulnerability was found in FreeFloat FTP Server 1.0. It has been rated as critical. Affected by this issue is some unk...
CVE-2025-5666CRITICAL9.8A vulnerability was found in FreeFloat FTP Server 1.0. It has been declared as critical. Affected by this vulnerability ...
CVE-2025-5665CRITICAL9.8A vulnerability was found in FreeFloat FTP Server 1.0. It has been classified as critical. Affected is an unknown functi...
CVE-2025-5664CRITICAL9.8A vulnerability was found in FreeFloat FTP Server 1.0 and classified as critical. This issue affects some unknown proces...
CVE-2025-5663CRITICAL9.8A vulnerability has been found in PHPGurukul Auto Taxi Stand Management System 1.0 and classified as critical. This vuln...
CVE-2025-5661MEDIUM5.4A vulnerability, which was classified as problematic, was found in code-projects Traffic Offense Reporting System 1.0. T...
CVE-2025-5382MEDIUM6.8Improper access control in users MFA feature in Devolutions Server 2025.1.7.0 and earlier allows a user with user manage...
CVE-2025-47827MEDIUM4.6In IGEL OS before 11, Secure Boot can be bypassed because the igel-flash-driver module improperly verifies a cryptograph...
CVE-2025-3768MEDIUM5Improper access control in Tor network blocking feature in Devolutions Server 2025.1.10.0 and earlier allows an authenti...
CVE-2025-30084MEDIUM6.1A stored XSS vulnerability in RSMail! component 1.19.20 - 1.22.26 for Joomla was discovered. The issue occurs within the...
CVE-2025-27754MEDIUM6.5A stored XSS vulnerability in RSBlog! component 1.11.6 - 1.14.4 for Joomla was discovered. The vulnerability allows auth...
CVE-2025-27753MEDIUM6.5A SQLi vulnerability in RSMediaGallery component 1.7.4 - 2.1.6 for Joomla was discovered. The vulnerability is due to th...
CVE-2025-27445MEDIUM5.4A path traversal vulnerability in RSFirewall component 2.9.7 - 3.1.5 for Joomla was discovered. This vulnerability allow...
CVE-2025-0691MEDIUM5Improper access control in permissions component in Devolutions Server 2025.1.10.0 and earlier allows an authenticated u...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now