2025 CVE Vulnerabilities

45,294 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-3583MEDIUM4.8The Newsletter WordPress plugin before 8.7.1 does not sanitise and escape some of its settings, which could allow high ...
CVE-2025-39363MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AlphaEfficiencyTea...
CVE-2025-4265CRITICAL9.8A vulnerability classified as critical was found in PHPGurukul Emergency Ambulance Hiring Portal 1.0. Affected by this v...
CVE-2025-4264CRITICAL9.8A vulnerability classified as critical has been found in PHPGurukul Emergency Ambulance Hiring Portal 1.0. Affected is a...
CVE-2025-4263CRITICAL9.8A vulnerability was found in PHPGurukul Online DJ Booking Management System 1.0. It has been rated as critical. This iss...
CVE-2025-4262CRITICAL9.8A vulnerability was found in PHPGurukul Online DJ Booking Management System 1.0. It has been declared as critical. This ...
CVE-2025-4261MEDIUM5.3A vulnerability was found in GAIR-NLP factool up to 3f3914bc090b644be044b7e0005113c135d8b20f. It has been classified as ...
CVE-2025-4260HIGH8.3A vulnerability was found in zhangyanbo2007 youkefu up to 4.2.0 and classified as problematic. Affected by this issue is...
CVE-2025-4259CRITICAL9.8A vulnerability has been found in newbee-mall 1.0 and classified as critical. Affected by this vulnerability is the func...
CVE-2025-20671HIGH7In thermal, there is a possible out of bounds write due to a race condition. This could lead to local escalation of priv...
CVE-2025-20670MEDIUM5.7In Modem, there is a possible permission bypass due to improper certificate validation. This could lead to remote inform...
CVE-2025-20668HIGH7.8In scp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr...
CVE-2025-20667HIGH7.5In Modem, there is a possible information disclosure due to incorrect error handling. This could lead to remote informat...
CVE-2025-20666HIGH7.5In Modem, there is a possible system crash due to an uncaught exception. This could lead to remote denial of service, if...
CVE-2025-20665MEDIUM5.5In devinfo, there is a possible information disclosure due to a missing SELinux policy. This could lead to local informa...
CVE-2025-4273Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2025-4258HIGH8.8A vulnerability, which was classified as critical, was found in zhangyanbo2007 youkefu up to 4.2.0. Affected is the func...
CVE-2025-4257MEDIUM6.1A vulnerability, which was classified as problematic, has been found in SeaCMS 13.2. This issue affects some unknown pro...
CVE-2025-4256MEDIUM5.4A vulnerability classified as problematic was found in SeaCMS 13.2. This vulnerability affects unknown code of the file ...
CVE-2025-4255CRITICAL9.8A vulnerability classified as critical has been found in PCMan FTP Server 2.0.7. This affects an unknown part of the com...
CVE-2025-4254CRITICAL9.8A vulnerability was found in PCMan FTP Server 2.0.7. It has been rated as critical. Affected by this issue is some unkno...
CVE-2025-4253CRITICAL9.8A vulnerability was found in PCMan FTP Server 2.0.7. It has been declared as critical. Affected by this vulnerability is...
CVE-2025-4252CRITICAL9.8A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as critical. Affected is an unknown function...
CVE-2025-4251CRITICAL9.8A vulnerability was found in PCMan FTP Server 2.0.7 and classified as critical. This issue affects some unknown processi...
CVE-2025-4250CRITICAL9.8A vulnerability was found in code-projects Nero Social Networking Site 1.0. It has been classified as critical. This aff...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now