2025 CVE Vulnerabilities

45,294 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-3746CRITICAL9.8The OTP-less one tap Sign in plugin for WordPress is vulnerable to privilege escalation via account takeover in versions...
CVE-2025-3670MEDIUM6.4The KiwiChat NextClient plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’ parameter in all...
CVE-2025-2880MEDIUM5.3The Yame | Link In Bio plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and i...
CVE-2025-4197HIGH8.8A vulnerability classified as critical has been found in code-projects Patient Record Management System 1.0. Affected is...
CVE-2025-4196HIGH8.8A vulnerability was found in SourceCodester Patient Record Management System 1.0. It has been rated as critical. This is...
CVE-2025-29825MEDIUM6.5User interface (ui) misrepresentation of critical information in Microsoft Edge (Chromium-based) allows an unauthorized ...
CVE-2025-4195CRITICAL9.8A vulnerability was found in itsourcecode Gym Management System 1.0. It has been declared as critical. This vulnerabilit...
CVE-2025-4193CRITICAL9.8A vulnerability was found in itsourcecode Restaurant Management System 1.0 and classified as critical. Affected by this ...
CVE-2025-4192CRITICAL9.8A vulnerability was found in itsourcecode Restaurant Management System 1.0. It has been classified as critical. This aff...
CVE-2025-4191CRITICAL9.8A vulnerability has been found in PHPGurukul Employee Record Management System 1.3 and classified as critical. Affected ...
CVE-2025-4186MEDIUM6.3A vulnerability, which was classified as critical, was found in Wangshen SecGate 3600 2024. Affected is an unknown funct...
CVE-2025-4185MEDIUM6.3A vulnerability, which was classified as critical, has been found in Wangshen SecGate 3600 2024. This issue affects some...
CVE-2025-4184CRITICAL9.8A vulnerability classified as critical was found in PCMan FTP Server 2.0.7. This vulnerability affects unknown code of t...
CVE-2025-4183CRITICAL9.8A vulnerability classified as critical has been found in PCMan FTP Server 2.0.7. This affects an unknown part of the com...
CVE-2025-4182CRITICAL9.8A vulnerability was found in PCMan FTP Server 2.0.7. It has been rated as critical. Affected by this issue is some unkno...
CVE-2025-4181CRITICAL9.8A vulnerability was found in PCMan FTP Server 2.0.7. It has been declared as critical. Affected by this vulnerability is...
CVE-2025-4180CRITICAL9.8A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as critical. Affected is an unknown function...
CVE-2025-4178MEDIUM5.4A vulnerability was found in xiaowei1118 java_server up to 11a5bac8f4ba1c17e4bc1b27cad6d24868500e3a on Windows and class...
CVE-2025-4176CRITICAL9.8A vulnerability has been found in PHPGurukul Blood Bank & Donor Management System 2.4 and classified as critical. This v...
CVE-2025-43595CRITICAL9.8An insecure file system permissions vulnerability in MSP360 Backup 4.3.1.115 allows a low privileged user to execute com...
CVE-2025-27365MEDIUM6.5IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0, 3.4.0, 3.4.1, 3.5.0, ...
CVE-2025-1333MEDIUM6.5IBM MQ Container when used with the IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through...
CVE-2025-4175MEDIUM6.3A vulnerability, which was classified as critical, was found in AlanBinu007 Spring-Boot-Advanced-Projects up to 3.1.3. T...
CVE-2025-46635HIGH7.1An issue was discovered on Tenda RX2 Pro 16.03.30.14 devices. Improper network isolation between the guest Wi-Fi network...
CVE-2025-46634HIGH8.2Cleartext transmission of sensitive information in the web management portal of the Tenda RX2 Pro 16.03.30.14 may allow ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now