2025 CVE Vulnerabilities

45,142 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-46788CRITICAL9.1Improper certificate validation in Zoom Workplace for Linux before version 6.4.13 may allow an unauthorized user to cond...
CVE-2025-53624CRITICAL10The Docusaurus gists plugin adds a page to your Docusaurus instance, displaying all public gists of a GitHub user. docus...
CVE-2025-53620CRITICAL9.2@builder.io/qwik-city is the meta-framework for Qwik. When a Qwik Server Action QRL is executed it dynamically load the ...
CVE-2025-53546CRITICAL9.1Folo organizes feeds content into one timeline. Using pull_request_target on .github/workflows/auto-fix-lint-format-comm...
CVE-2025-6514CRITICAL9.6mcp-remote is exposed to OS command injection when connecting to untrusted MCP servers due to crafted input from the aut...
CVE-2025-3499CRITICAL10The device has two web servers that expose unauthenticated REST APIs on the management network (TCP ports 8084 and 8086)...
CVE-2025-3498CRITICAL9.9An unauthenticated user with management network access can get and modify the Radiflow iSAP Smart Collector (CentOS 7 -...
CVE-2025-7220CRITICAL9.8A vulnerability was found in Campcodes Payroll Management System 1.0. It has been declared as critical. Affected by this...
CVE-2025-7219CRITICAL9.8A vulnerability was found in Campcodes Payroll Management System 1.0. It has been classified as critical. Affected is an...
CVE-2025-7218CRITICAL9.8A vulnerability was found in Campcodes Payroll Management System 1.0 and classified as critical. This issue affects some...
CVE-2025-7217CRITICAL9.8A vulnerability has been found in Campcodes Payroll Management System 1.0 and classified as critical. This vulnerability...
CVE-2025-4606CRITICAL9.8The Sala - Startup & SaaS WordPress Theme theme for WordPress is vulnerable to privilege escalation via account takeover...
CVE-2025-7211CRITICAL9.8A vulnerability was found in code-projects LifeStyle Store 1.0. It has been declared as critical. This vulnerability aff...
CVE-2025-7208CRITICAL9.8A vulnerability was found in 9fans plan9port up to 9da5b44. It has been classified as critical. This affects the functio...
CVE-2025-34077CRITICAL10An authentication bypass vulnerability exists in the WordPress Pie Register plugin ≤ 3.7.1.4 that allows unauthenticated...
CVE-2025-7206CRITICAL9.8A vulnerability, which was classified as critical, has been found in D-Link DIR-825 2.10. This issue affects the functio...
CVE-2025-4855CRITICAL9.8The Support Board plugin for WordPress is vulnerable to unauthorized access/modification/deletion of data due to use of ...
CVE-2025-4828CRITICAL9.8The Support Board plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation...
CVE-2025-7200CRITICAL9.8A vulnerability, which was classified as critical, was found in krishna9772 Pharmacy Management System up to a2efc844293...
CVE-2025-7199CRITICAL9.8A vulnerability, which was classified as critical, has been found in code-projects Library System 1.0. This issue affect...
CVE-2025-7198CRITICAL9.8A vulnerability classified as critical was found in code-projects Jonnys Liquor 1.0. This vulnerability affects unknown ...
CVE-2025-7197CRITICAL9.8A vulnerability classified as critical has been found in code-projects Jonnys Liquor 1.0. This affects an unknown part o...
CVE-2025-49533CRITICAL9.8Adobe Experience Manager (MS) versions 6.5.23.0 and earlier are affected by a Deserialization of Untrusted Data vulnerab...
CVE-2025-27203CRITICAL9.6Adobe Connect versions 24.0 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could lea...
CVE-2025-7196CRITICAL9.8A vulnerability was found in code-projects Jonnys Liquor 1.0. It has been rated as critical. Affected by this issue is s...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now