2025 CVE Vulnerabilities

45,277 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-5382MEDIUM6.8Improper access control in users MFA feature in Devolutions Server 2025.1.7.0 and earlier allows a user with user manage...
CVE-2025-47827MEDIUM4.6In IGEL OS before 11, Secure Boot can be bypassed because the igel-flash-driver module improperly verifies a cryptograph...
CVE-2025-3768MEDIUM5Improper access control in Tor network blocking feature in Devolutions Server 2025.1.10.0 and earlier allows an authenti...
CVE-2025-30084MEDIUM6.1A stored XSS vulnerability in RSMail! component 1.19.20 - 1.22.26 for Joomla was discovered. The issue occurs within the...
CVE-2025-27754MEDIUM6.5A stored XSS vulnerability in RSBlog! component 1.11.6 - 1.14.4 for Joomla was discovered. The vulnerability allows auth...
CVE-2025-27753MEDIUM6.5A SQLi vulnerability in RSMediaGallery component 1.7.4 - 2.1.6 for Joomla was discovered. The vulnerability is due to th...
CVE-2025-27445MEDIUM5.4A path traversal vulnerability in RSFirewall component 2.9.7 - 3.1.5 for Joomla was discovered. This vulnerability allow...
CVE-2025-0691MEDIUM5Improper access control in permissions component in Devolutions Server 2025.1.10.0 and earlier allows an authenticated u...
CVE-2025-5660HIGH8.8A vulnerability, which was classified as critical, has been found in PHPGurukul Complaint Management System 2.0. Affecte...
CVE-2025-5659HIGH8.8A vulnerability classified as critical was found in PHPGurukul Complaint Management System 2.0. Affected by this vulnera...
CVE-2025-5658HIGH8.8A vulnerability classified as critical has been found in PHPGurukul Complaint Management System 2.0. Affected is an unkn...
CVE-2025-5701HIGH8.8The HyperComments plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege esc...
CVE-2025-5657HIGH8.8A vulnerability was found in PHPGurukul Complaint Management System 2.0. It has been rated as critical. This issue affec...
CVE-2025-5656HIGH8.8A vulnerability was found in PHPGurukul Complaint Management System 2.0. It has been declared as critical. This vulnerab...
CVE-2025-5341MEDIUM6.4The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vulnerable to Stored Cro...
CVE-2025-5655HIGH8.8A vulnerability was found in PHPGurukul Complaint Management System 2.0. It has been classified as critical. This affect...
CVE-2025-5654HIGH8.8A vulnerability was found in PHPGurukul Complaint Management System 2.0 and classified as critical. Affected by this iss...
CVE-2025-5653HIGH8.8A vulnerability has been found in PHPGurukul Complaint Management System 2.0 and classified as critical. Affected by thi...
CVE-2025-5652HIGH8.8A vulnerability, which was classified as critical, was found in PHPGurukul Complaint Management System 2.0. Affected is ...
CVE-2025-5651MEDIUM5.4A vulnerability, which was classified as problematic, has been found in code-projects Traffic Offense Reporting System 1...
CVE-2025-5650CRITICAL9.8A vulnerability classified as critical was found in 1000projects Online Notice Board 1.0. This vulnerability affects unk...
CVE-2025-4568CRITICAL9.3Improper neutralization of input provided by an unauthorized user into changes__reference_id parameter in URL allows for...
CVE-2025-5649MEDIUM6.5A vulnerability classified as critical has been found in SourceCodester Student Result Management System 1.0. This affec...
CVE-2025-5648LOW2.5A vulnerability was found in Radare2 5.9.9. It has been classified as problematic. Affected is the function r_cons_pal_i...
CVE-2025-5647LOW2.5A vulnerability was found in Radare2 5.9.9 and classified as problematic. This issue affects the function r_cons_context...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now