2025 CVE Vulnerabilities

45,279 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-4845CRITICAL9.8A vulnerability, which was classified as critical, has been found in FreeFloat FTP Server 1.0. Affected by this issue is...
CVE-2025-4844CRITICAL9.8A vulnerability classified as critical was found in FreeFloat FTP Server 1.0. Affected by this vulnerability is an unkno...
CVE-2025-4843CRITICAL9.8A vulnerability was found in D-Link DCS-932L 2.18.01. It has been classified as critical. This affects the function SubU...
CVE-2025-4842CRITICAL9.8A vulnerability was found in D-Link DCS-932L 2.18.01. It has been declared as critical. This vulnerability affects the f...
CVE-2025-4841CRITICAL9.8A vulnerability was found in D-Link DCS-932L 2.18.01 and classified as critical. Affected by this issue is the function ...
CVE-2025-4921Rejected reason: Duplicate of CVE-2025-4919
CVE-2025-4920Rejected reason: Duplicate of CVE-2025-4918
CVE-2025-4919HIGH8.8An attacker was able to perform an out-of-bounds read or write on a JavaScript object by confusing array index sizes. Th...
CVE-2025-4918CRITICAL9.8An attacker was able to perform an out-of-bounds read or write on a JavaScript `Promise` object. This vulnerability was ...
CVE-2025-4839HIGH8.1A vulnerability has been found in itwanger paicoding 1.0.0/1.0.1/1.0.2/1.0.3 and classified as problematic. Affected by ...
CVE-2025-4838MEDIUM5.3A vulnerability, which was classified as problematic, was found in kanwangzjm Funiture up to 71ca0fb0658b3d839d9e049ac36...
CVE-2025-4837CRITICAL9.8A vulnerability classified as critical has been found in projectworlds Student Project Allocation System 1.0. This affec...
CVE-2025-4836CRITICAL9.8A vulnerability was found in Projectworlds Life Insurance Management System 1.0. It has been rated as critical. Affected...
CVE-2025-4835HIGH8.8A vulnerability was found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615. It has been declared as critical. ...
CVE-2025-4834HIGH8.8A vulnerability was found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615. It has been classified as critical...
CVE-2025-47948HIGH7.2Cocotais Bot is a QQ official robot framework based on qq-bot-sdk. Starting in version 1.5.0-test2-hotfix and prior to v...
CVE-2025-47945CRITICAL9.8Donetick an open-source app for managing tasks and chores. Prior to version 0.1.44, the application uses JSON Web Tokens...
CVE-2025-4833HIGH8.8A vulnerability was found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615 and classified as critical. This is...
CVE-2025-4832HIGH8.8A vulnerability has been found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615 and classified as critical. Th...
CVE-2025-4831HIGH8.8A vulnerability, which was classified as critical, was found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615....
CVE-2025-4830HIGH8.8A vulnerability, which was classified as critical, has been found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809....
CVE-2025-47931MEDIUM6.1LibreNMS is PHP/MySQL/SNMP based network monitoring software. LibreNMS v25.4.0 and prior suffers from a Stored Cross-Sit...
CVE-2025-47273HIGH8.8setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path tr...
CVE-2025-33103HIGH8.8IBM i 7.2, 7.3, 7.4, 7.5, and 7.6 product IBM TCP/IP Connectivity Utilities for i contains a privilege escalation vulner...
CVE-2025-4829HIGH8.8A vulnerability classified as critical was found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615. Affected by...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now