2025 CVE Vulnerabilities
45,294 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-3746 | CRITICAL | 9.8 | 0.5% | May 2, 2025 | The OTP-less one tap Sign in plugin for WordPress is vulnerable to privilege escalation via account takeover in versions... |
| CVE-2025-3670 | MEDIUM | 6.4 | 0.2% | May 2, 2025 | The KiwiChat NextClient plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’ parameter in all... |
| CVE-2025-2880 | MEDIUM | 5.3 | 0.3% | May 2, 2025 | The Yame | Link In Bio plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and i... |
| CVE-2025-4197 | HIGH | 8.8 | 0.4% | May 2, 2025 | A vulnerability classified as critical has been found in code-projects Patient Record Management System 1.0. Affected is... |
| CVE-2025-4196 | HIGH | 8.8 | 0.4% | May 2, 2025 | A vulnerability was found in SourceCodester Patient Record Management System 1.0. It has been rated as critical. This is... |
| CVE-2025-29825 | MEDIUM | 6.5 | 0.7% | May 2, 2025 | User interface (ui) misrepresentation of critical information in Microsoft Edge (Chromium-based) allows an unauthorized ... |
| CVE-2025-4195 | CRITICAL | 9.8 | 0.5% | May 2, 2025 | A vulnerability was found in itsourcecode Gym Management System 1.0. It has been declared as critical. This vulnerabilit... |
| CVE-2025-4193 | CRITICAL | 9.8 | 0.5% | May 2, 2025 | A vulnerability was found in itsourcecode Restaurant Management System 1.0 and classified as critical. Affected by this ... |
| CVE-2025-4192 | CRITICAL | 9.8 | 0.5% | May 2, 2025 | A vulnerability was found in itsourcecode Restaurant Management System 1.0. It has been classified as critical. This aff... |
| CVE-2025-4191 | CRITICAL | 9.8 | 0.5% | May 2, 2025 | A vulnerability has been found in PHPGurukul Employee Record Management System 1.3 and classified as critical. Affected ... |
| CVE-2025-4186 | MEDIUM | 6.3 | 0.4% | May 2, 2025 | A vulnerability, which was classified as critical, was found in Wangshen SecGate 3600 2024. Affected is an unknown funct... |
| CVE-2025-4185 | MEDIUM | 6.3 | 7.0% | May 2, 2025 | A vulnerability, which was classified as critical, has been found in Wangshen SecGate 3600 2024. This issue affects some... |
| CVE-2025-4184 | CRITICAL | 9.8 | 0.6% | May 2, 2025 | A vulnerability classified as critical was found in PCMan FTP Server 2.0.7. This vulnerability affects unknown code of t... |
| CVE-2025-4183 | CRITICAL | 9.8 | 0.6% | May 1, 2025 | A vulnerability classified as critical has been found in PCMan FTP Server 2.0.7. This affects an unknown part of the com... |
| CVE-2025-4182 | CRITICAL | 9.8 | 0.6% | May 1, 2025 | A vulnerability was found in PCMan FTP Server 2.0.7. It has been rated as critical. Affected by this issue is some unkno... |
| CVE-2025-4181 | CRITICAL | 9.8 | 0.6% | May 1, 2025 | A vulnerability was found in PCMan FTP Server 2.0.7. It has been declared as critical. Affected by this vulnerability is... |
| CVE-2025-4180 | CRITICAL | 9.8 | 0.6% | May 1, 2025 | A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as critical. Affected is an unknown function... |
| CVE-2025-4178 | MEDIUM | 5.4 | 0.5% | May 1, 2025 | A vulnerability was found in xiaowei1118 java_server up to 11a5bac8f4ba1c17e4bc1b27cad6d24868500e3a on Windows and class... |
| CVE-2025-4176 | CRITICAL | 9.8 | 0.5% | May 1, 2025 | A vulnerability has been found in PHPGurukul Blood Bank & Donor Management System 2.4 and classified as critical. This v... |
| CVE-2025-43595 | CRITICAL | 9.8 | 0.3% | May 1, 2025 | An insecure file system permissions vulnerability in MSP360 Backup 4.3.1.115 allows a low privileged user to execute com... |
| CVE-2025-27365 | MEDIUM | 6.5 | 0.3% | May 1, 2025 | IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0, 3.4.0, 3.4.1, 3.5.0, ... |
| CVE-2025-1333 | MEDIUM | 6.5 | 0.2% | May 1, 2025 | IBM MQ Container when used with the IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through... |
| CVE-2025-4175 | MEDIUM | 6.3 | 0.4% | May 1, 2025 | A vulnerability, which was classified as critical, was found in AlanBinu007 Spring-Boot-Advanced-Projects up to 3.1.3. T... |
| CVE-2025-46635 | HIGH | 7.1 | 0.3% | May 1, 2025 | An issue was discovered on Tenda RX2 Pro 16.03.30.14 devices. Improper network isolation between the guest Wi-Fi network... |
| CVE-2025-46634 | HIGH | 8.2 | 0.1% | May 1, 2025 | Cleartext transmission of sensitive information in the web management portal of the Tenda RX2 Pro 16.03.30.14 may allow ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now