2025 CVE Vulnerabilities

45,277 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-5212CRITICAL9.8A vulnerability was found in PHPGurukul Employee Record Management System 1.3. It has been classified as critical. Affec...
CVE-2025-5211CRITICAL9.8A vulnerability was found in PHPGurukul Employee Record Management System 1.3 and classified as critical. This issue aff...
CVE-2025-5210CRITICAL9.8A vulnerability has been found in PHPGurukul Employee Record Management System 1.3 and classified as critical. This vuln...
CVE-2025-5208CRITICAL9.8A vulnerability, which was classified as critical, was found in SourceCodester Online Hospital Management System 1.0. Th...
CVE-2025-5207CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Client Database Management System 1....
CVE-2025-5206CRITICAL9.8A vulnerability classified as critical was found in Pixelimity 1.0. Affected by this vulnerability is an unknown functio...
CVE-2025-5205CRITICAL9.8A vulnerability classified as critical has been found in 1000 Projects Daily College Class Work Report Book 1.0. Affecte...
CVE-2025-5204HIGH7.8A vulnerability classified as problematic has been found in Open Asset Import Library Assimp 5.4.3. This affects the fun...
CVE-2025-5203HIGH7.8A vulnerability was found in Open Asset Import Library Assimp 5.4.3. It has been rated as problematic. Affected by this ...
CVE-2025-5202HIGH7.8A vulnerability was found in Open Asset Import Library Assimp 5.4.3. It has been declared as problematic. Affected by th...
CVE-2025-5201HIGH7.8A vulnerability was found in Open Asset Import Library Assimp 5.4.3. It has been classified as problematic. Affected is ...
CVE-2025-5200HIGH7.8A vulnerability was found in Open Asset Import Library Assimp 5.4.3 and classified as problematic. This issue affects th...
CVE-2025-46802MEDIUM6For a short time they PTY is set to mode 666, allowing any user on the system to connect to the screen session.
CVE-2025-23395HIGH7.8Screen 5.0.0 when it runs with setuid-root privileges does not drop privileges while operating on a user supplied path. ...
CVE-2025-23394CRITICAL9.8A UNIX Symbolic Link (Symlink) Following vulnerability in openSUSE Tumbleweed cyrus-imapd allows escalation from cyrus t...
CVE-2025-23392MEDIUM5.6A Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in spacewalk-java allows e...
CVE-2025-46803MEDIUM5.1The default mode of pseudo terminals (PTYs) allocated by Screen was changed from 0620 to 0622, thereby allowing anyone t...
CVE-2025-37992MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net_sched: Flush gso_skb list too during ->change()...
CVE-2025-5196HIGH7.5A vulnerability has been found in Wing FTP Server up to 7.4.3 and classified as critical. Affected by this vulnerability...
CVE-2025-46805MEDIUM5.7Screen version 5.0.0 and older version 4 releases have a TOCTOU race potentially allowing to send SIGHUP, SIGCONT to pr...
CVE-2025-46804LOW3.3A minor information leak when running Screen with setuid-root privileges allows unprivileged users to deduce information...
CVE-2025-39498MEDIUM5.3Insertion of Sensitive Information Into Sent Data vulnerability in Spotlight Spotlight - Social Media Feeds (Premium) al...
CVE-2025-5186HIGH8.8A vulnerability was found in thinkgem JeeSite up to 5.11.1. It has been rated as critical. Affected by this issue is the...
CVE-2025-5185MEDIUM5.3A vulnerability was found in Summer Pearl Group Vacation Rental Management Platform up to 1.0.1. It has been declared as...
CVE-2025-40667MEDIUM6.5Missing authorization vulnerability in TCMAN's GIM v11. This allows an authenticated attacker to access any functionalit...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now