2025 CVE Vulnerabilities
45,280 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-4491 | CRITICAL | 9.8 | 0.5% | May 9, 2025 | A vulnerability classified as critical was found in Campcodes Online Food Ordering System 1.0. This vulnerability affect... |
| CVE-2025-4490 | CRITICAL | 9.8 | 0.5% | May 9, 2025 | A vulnerability classified as critical has been found in Campcodes Online Food Ordering System 1.0. This affects an unkn... |
| CVE-2025-4489 | CRITICAL | 9.8 | 0.5% | May 9, 2025 | A vulnerability was found in Campcodes Online Food Ordering System 1.0. It has been rated as critical. Affected by this ... |
| CVE-2025-4447 | HIGH | 7.8 | 0.2% | May 9, 2025 | In Eclipse OpenJ9 versions up to 0.51, when used with OpenJDK version 8 a stack based buffer overflow can be caused by m... |
| CVE-2025-47269 | HIGH | 8.3 | 34.3% | May 9, 2025 | code-server runs VS Code on any machine anywhere through browser access. Prior to version 4.99.4, a maliciously crafted ... |
| CVE-2025-4488 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | A vulnerability was found in itsourcecode Gym Management System 1.0. It has been declared as critical. Affected by this ... |
| CVE-2025-4487 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | A vulnerability was found in itsourcecode Gym Management System 1.0. It has been classified as critical. Affected is an ... |
| CVE-2025-4486 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | A vulnerability was found in itsourcecode Gym Management System 1.0 and classified as critical. This issue affects some ... |
| CVE-2025-4485 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | A vulnerability has been found in itsourcecode Gym Management System 1.0 and classified as critical. This vulnerability ... |
| CVE-2025-4484 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | A vulnerability, which was classified as critical, was found in itsourcecode Gym Management System 1.0. This affects an ... |
| CVE-2025-4483 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | A vulnerability, which was classified as critical, has been found in itsourcecode Gym Management System 1.0. Affected by... |
| CVE-2025-4482 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | A vulnerability classified as critical was found in Project Worlds Student Project Allocation System 1.0. Affected by th... |
| CVE-2025-1993 | MEDIUM | 5.5 | 0.1% | May 9, 2025 | IBM App Connect Enterprise Certified Container 8.1, 8.2, 9.0, 9.1, 9.2, 10.0, 10.1, 11.0, 11.1, 11.2, 11.3, 11.4, 11.5, ... |
| CVE-2025-4481 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | A vulnerability was found in SourceCodester Apartment Visitor Management System 1.0. It has been rated as critical. This... |
| CVE-2025-4480 | HIGH | 7.8 | 0.3% | May 9, 2025 | A vulnerability was found in code-projects Simple College Management System 1.0. It has been declared as critical. This ... |
| CVE-2025-46192 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | SourceCodester Client Database Management System 1.0 is vulnerable to SQL Injection in user_payment_update.php via the o... |
| CVE-2025-46191 | CRITICAL | 9.8 | 1.0% | May 9, 2025 | Arbitrary File Upload in user_payment_update.php in SourceCodester Client Database Management System 1.0 allows unauthen... |
| CVE-2025-46190 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | SourceCodester Client Database Management System 1.0 is vulnerable to SQL Injection in user_delivery_update.php via the ... |
| CVE-2025-29509 | HIGH | 8.8 | 0.5% | May 9, 2025 | Jan v0.5.14 and before is vulnerable to remote code execution (RCE) when the user clicks on a rendered link in the conve... |
| CVE-2025-1278 | HIGH | 7.5 | 0.3% | May 9, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions from 12.0 before 17.9.8, 17.10 before 17.10.6, and 1... |
| CVE-2025-0549 | MEDIUM | 6.8 | 0.3% | May 9, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 17.3 prior to 17.9.8, from 17.10 prior... |
| CVE-2025-4432 | MEDIUM | 5.3 | 0.8% | May 9, 2025 | A flaw was found in Rust's Ring package. A panic may be triggered when overflow checking is enabled. In the QUIC protoco... |
| CVE-2025-46193 | CRITICAL | 9.8 | 0.6% | May 9, 2025 | SourceCodester Client Database Management System 1.0 is vulnerable to Remote code execution via Arbitrary file upload in... |
| CVE-2025-46189 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | SourceCodester Client Database Management System 1.0 is vulnerable to SQL Injection in user_order_customer_update.php vi... |
| CVE-2025-46188 | CRITICAL | 9.8 | 0.6% | May 9, 2025 | SourceCodester Client Database Management System 1.0 is vulnerable to SQL Injection in superadmin_phpmyadmin.php. |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now