2025 CVE Vulnerabilities
45,280 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-37835 | — | — | — | May 9, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2025-2253 | CRITICAL | 9.8 | 0.7% | May 9, 2025 | The IMITHEMES Listing plugin is vulnerable to privilege escalation via account takeover in all versions up to, and inclu... |
| CVE-2025-4466 | CRITICAL | 9.8 | 0.8% | May 9, 2025 | A vulnerability was found in itsourcecode Gym Management System 1.0. It has been classified as critical. This affects an... |
| CVE-2025-4465 | CRITICAL | 9.8 | 0.8% | May 9, 2025 | A vulnerability was found in itsourcecode Gym Management System 1.0 and classified as critical. Affected by this issue i... |
| CVE-2025-4464 | CRITICAL | 9.8 | 0.8% | May 9, 2025 | A vulnerability has been found in itsourcecode Gym Management System 1.0 and classified as critical. Affected by this vu... |
| CVE-2025-4377 | HIGH | 8.3 | 0.6% | May 9, 2025 | Improper Limitation of a Pathname caused a Path Traversal vulnerability in Sparx Systems Pro Cloud Server. This vulnera... |
| CVE-2025-4376 | MEDIUM | 5.3 | 0.6% | May 9, 2025 | Improper Input Validation vulnerability in Sparx Systems Pro Cloud Server's WebEA model search field allows Cross-Site S... |
| CVE-2025-4375 | MEDIUM | 6.9 | 0.3% | May 9, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Sparx Systems Pro Cloud Server allows Cross-Site Request Forgery to p... |
| CVE-2025-3463 | CRITICAL | 9.4 | 0.8% | May 9, 2025 | "This issue is limited to motherboards and does not affect laptops, desktop computers, or other endpoints." An insuffici... |
| CVE-2025-3462 | HIGH | 8.4 | 0.5% | May 9, 2025 | "This issue is limited to motherboards and does not affect laptops, desktop computers, or other endpoints." An insuffici... |
| CVE-2025-4463 | CRITICAL | 9.8 | 0.8% | May 9, 2025 | A vulnerability, which was classified as critical, was found in itsourcecode Gym Management System 1.0. Affected is an u... |
| CVE-2025-4462 | HIGH | 8.8 | 1.5% | May 9, 2025 | A vulnerability, which was classified as critical, has been found in TOTOLINK N150RT 3.4.0-B20190525. This issue affects... |
| CVE-2025-4461 | MEDIUM | 5.4 | 0.5% | May 9, 2025 | A vulnerability classified as problematic was found in TOTOLINK N150RT 3.4.0-B20190525. This vulnerability affects unkno... |
| CVE-2025-47737 | CRITICAL | 9.8 | 0.5% | May 9, 2025 | lib.rs in the trailer crate through 0.1.2 for Rust mishandles allocating with a size of zero. |
| CVE-2025-47736 | LOW | 2.9 | 0.2% | May 9, 2025 | dialect/mod.rs in the libsql-sqlite3-parser crate through 0.13.0 before 14f422a for Rust can crash if the input is not v... |
| CVE-2025-47735 | CRITICAL | 9.8 | 0.3% | May 9, 2025 | inner::drop in inner.rs in the wgp crate through 0.2.0 for Rust lacks drop_slow thread synchronization. |
| CVE-2025-4460 | MEDIUM | 4.8 | 0.5% | May 9, 2025 | A vulnerability classified as problematic has been found in TOTOLINK N150RT 3.4.0-B20190525. This affects an unknown par... |
| CVE-2025-4459 | HIGH | 8.8 | 0.7% | May 9, 2025 | A vulnerability was found in code-projects Patient Record Management System 1.0. It has been rated as critical. Affected... |
| CVE-2025-4458 | HIGH | 8.8 | 0.7% | May 9, 2025 | A vulnerability was found in code-projects Patient Record Management System 1.0. It has been declared as critical. Affec... |
| CVE-2025-4457 | CRITICAL | 9.8 | 0.8% | May 9, 2025 | A vulnerability classified as critical was found in Project Worlds Car Rental Project 1.0. Affected by this vulnerabilit... |
| CVE-2025-4456 | CRITICAL | 9.8 | 0.8% | May 9, 2025 | A vulnerability classified as critical has been found in Project Worlds Car Rental Project 1.0. Affected is an unknown f... |
| CVE-2025-3714 | CRITICAL | 9.8 | 1.4% | May 9, 2025 | The LCD KVM over IP Switch CL5708IM has a Stack-based Buffer Overflow vulnerability in firmware versions prior to v2.2.2... |
| CVE-2025-3713 | HIGH | 8.7 | 1.0% | May 9, 2025 | The LCD KVM over IP Switch CL5708IM has a Heap-based Buffer Overflow vulnerability in firmware versions prior to v2.2.21... |
| CVE-2025-3712 | HIGH | 8.7 | 1.0% | May 9, 2025 | The LCD KVM over IP Switch CL5708IM has a Heap-based Buffer Overflow vulnerability in firmware versions prior to v2.2.21... |
| CVE-2025-3711 | CRITICAL | 9.8 | 1.4% | May 9, 2025 | The LCD KVM over IP Switch CL5708IM has a Stack-based Buffer Overflow vulnerability in firmware versions prior to v2.2.2... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now