2025 CVE Vulnerabilities
45,142 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-46788 | CRITICAL | 9.1 | 0.2% | Jul 10, 2025 | Improper certificate validation in Zoom Workplace for Linux before version 6.4.13 may allow an unauthorized user to cond... |
| CVE-2025-53624 | CRITICAL | 10 | 1.8% | Jul 9, 2025 | The Docusaurus gists plugin adds a page to your Docusaurus instance, displaying all public gists of a GitHub user. docus... |
| CVE-2025-53620 | CRITICAL | 9.2 | 0.3% | Jul 9, 2025 | @builder.io/qwik-city is the meta-framework for Qwik. When a Qwik Server Action QRL is executed it dynamically load the ... |
| CVE-2025-53546 | CRITICAL | 9.1 | 0.3% | Jul 9, 2025 | Folo organizes feeds content into one timeline. Using pull_request_target on .github/workflows/auto-fix-lint-format-comm... |
| CVE-2025-6514 | CRITICAL | 9.6 | 76.6% | Jul 9, 2025 | mcp-remote is exposed to OS command injection when connecting to untrusted MCP servers due to crafted input from the aut... |
| CVE-2025-3499 | CRITICAL | 10 | 1.0% | Jul 9, 2025 | The device has two web servers that expose unauthenticated REST APIs on the management network (TCP ports 8084 and 8086)... |
| CVE-2025-3498 | CRITICAL | 9.9 | 0.3% | Jul 9, 2025 | An unauthenticated user with management network access can get and modify the Radiflow iSAP Smart Collector (CentOS 7 -... |
| CVE-2025-7220 | CRITICAL | 9.8 | 0.4% | Jul 9, 2025 | A vulnerability was found in Campcodes Payroll Management System 1.0. It has been declared as critical. Affected by this... |
| CVE-2025-7219 | CRITICAL | 9.8 | 0.4% | Jul 9, 2025 | A vulnerability was found in Campcodes Payroll Management System 1.0. It has been classified as critical. Affected is an... |
| CVE-2025-7218 | CRITICAL | 9.8 | 0.4% | Jul 9, 2025 | A vulnerability was found in Campcodes Payroll Management System 1.0 and classified as critical. This issue affects some... |
| CVE-2025-7217 | CRITICAL | 9.8 | 0.4% | Jul 9, 2025 | A vulnerability has been found in Campcodes Payroll Management System 1.0 and classified as critical. This vulnerability... |
| CVE-2025-4606 | CRITICAL | 9.8 | 0.6% | Jul 9, 2025 | The Sala - Startup & SaaS WordPress Theme theme for WordPress is vulnerable to privilege escalation via account takeover... |
| CVE-2025-7211 | CRITICAL | 9.8 | 0.4% | Jul 9, 2025 | A vulnerability was found in code-projects LifeStyle Store 1.0. It has been declared as critical. This vulnerability aff... |
| CVE-2025-7208 | CRITICAL | 9.8 | 0.6% | Jul 9, 2025 | A vulnerability was found in 9fans plan9port up to 9da5b44. It has been classified as critical. This affects the functio... |
| CVE-2025-34077 | CRITICAL | 10 | 9.9% | Jul 9, 2025 | An authentication bypass vulnerability exists in the WordPress Pie Register plugin ≤ 3.7.1.4 that allows unauthenticated... |
| CVE-2025-7206 | CRITICAL | 9.8 | 16.0% | Jul 9, 2025 | A vulnerability, which was classified as critical, has been found in D-Link DIR-825 2.10. This issue affects the functio... |
| CVE-2025-4855 | CRITICAL | 9.8 | 0.3% | Jul 9, 2025 | The Support Board plugin for WordPress is vulnerable to unauthorized access/modification/deletion of data due to use of ... |
| CVE-2025-4828 | CRITICAL | 9.8 | 0.8% | Jul 9, 2025 | The Support Board plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation... |
| CVE-2025-7200 | CRITICAL | 9.8 | 0.4% | Jul 8, 2025 | A vulnerability, which was classified as critical, was found in krishna9772 Pharmacy Management System up to a2efc844293... |
| CVE-2025-7199 | CRITICAL | 9.8 | 0.4% | Jul 8, 2025 | A vulnerability, which was classified as critical, has been found in code-projects Library System 1.0. This issue affect... |
| CVE-2025-7198 | CRITICAL | 9.8 | 0.4% | Jul 8, 2025 | A vulnerability classified as critical was found in code-projects Jonnys Liquor 1.0. This vulnerability affects unknown ... |
| CVE-2025-7197 | CRITICAL | 9.8 | 0.4% | Jul 8, 2025 | A vulnerability classified as critical has been found in code-projects Jonnys Liquor 1.0. This affects an unknown part o... |
| CVE-2025-49533 | CRITICAL | 9.8 | 44.9% | Jul 8, 2025 | Adobe Experience Manager (MS) versions 6.5.23.0 and earlier are affected by a Deserialization of Untrusted Data vulnerab... |
| CVE-2025-27203 | CRITICAL | 9.6 | 1.0% | Jul 8, 2025 | Adobe Connect versions 24.0 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could lea... |
| CVE-2025-7196 | CRITICAL | 9.8 | 0.4% | Jul 8, 2025 | A vulnerability was found in code-projects Jonnys Liquor 1.0. It has been rated as critical. Affected by this issue is s... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now