2025 CVE Vulnerabilities

45,295 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-4001MEDIUM4.8A vulnerability has been found in scipopt scip up to 9.2.1 and classified as problematic. Affected by this vulnerability...
CVE-2025-4000MEDIUM5.4A vulnerability, which was classified as problematic, was found in Seeyon Zhiyuan OA Web Application System 8.1 SP2. Aff...
CVE-2025-3999MEDIUM5.4A vulnerability, which was classified as problematic, has been found in Seeyon Zhiyuan OA Web Application System 8.1 SP2...
CVE-2025-3998CRITICAL9.8A vulnerability classified as critical was found in CodeAstro Membership Management System 1.0. This vulnerability affec...
CVE-2025-3997MEDIUM5.3A vulnerability classified as problematic has been found in dazhouda lecms 3.0.3. This affects an unknown part of the fi...
CVE-2025-3996MEDIUM4.8A vulnerability was found in TOTOLINK N150RT 3.4.0-B20190525. It has been rated as problematic. Affected by this issue i...
CVE-2025-3706MEDIUM6.1The eHRMS from 104 Corporation has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attac...
CVE-2025-3995LOW3.4A vulnerability was found in TOTOLINK N150RT 3.4.0-B20190525. It has been declared as problematic. Affected by this vuln...
CVE-2025-3994LOW3.4A vulnerability was found in TOTOLINK N150RT 3.4.0-B20190525. It has been classified as problematic. Affected is an unkn...
CVE-2025-3993HIGH8.8A vulnerability was found in TOTOLINK N150RT 3.4.0-B20190525 and classified as critical. This issue affects some unknown...
CVE-2025-3992HIGH8.8A vulnerability has been found in TOTOLINK N150RT 3.4.0-B20190525 and classified as critical. This vulnerability affects...
CVE-2025-3991HIGH8.8A vulnerability, which was classified as critical, was found in TOTOLINK N150RT 3.4.0-B20190525. This affects an unknown...
CVE-2025-31144MEDIUM6.9Quick Agent V3 and Quick Agent V2 contain an issue with improper restriction of communication channel to intended endpoi...
CVE-2025-27937HIGH7.1Quick Agent V3 and Quick Agent V2 contain an issue with improper limitation of a pathname to a restricted directory ('Pa...
CVE-2025-26692CRITICAL9.2Quick Agent V3 and Quick Agent V2 contain an issue with improper limitation of a pathname to a restricted directory ('Pa...
CVE-2025-3990HIGH8.8A vulnerability, which was classified as critical, has been found in TOTOLINK N150RT 3.4.0-B20190525. Affected by this i...
CVE-2025-3989HIGH8.8A vulnerability classified as critical was found in TOTOLINK N150RT 3.4.0-B20190525. Affected by this vulnerability is a...
CVE-2025-46690HIGH8.8Ververica Platform 2.14.0 allows low-privileged users to access SQL connectors via a direct namespaces/default/formats r...
CVE-2025-46689MEDIUM6.1Ververica Platform 2.14.0 contain an Reflected XSS vulnerability via a namespaces/default/formats URI.
CVE-2025-3988HIGH8.8A vulnerability classified as critical has been found in TOTOLINK N150RT 3.4.0-B20190525. Affected is an unknown functio...
CVE-2025-3987HIGH8.8A vulnerability was found in TOTOLINK N150RT 3.4.0-B20190525. It has been rated as critical. This issue affects some unk...
CVE-2025-3986HIGH7.5A vulnerability was found in Apereo CAS 5.2.6. It has been declared as problematic. This vulnerability affects unknown c...
CVE-2025-3985MEDIUM4.9A vulnerability was found in Apereo CAS 5.2.6. It has been classified as problematic. This affects the function Response...
CVE-2025-46688HIGH8.4quickjs-ng through 0.9.0 has an incorrect size calculation in JS_ReadBigInt for a BigInt, leading to a heap-based buffer...
CVE-2025-46687HIGH7.8quickjs-ng through 0.9.0 has a missing length check in JS_ReadString for a string, leading to a heap-based buffer overfl...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now