2025 CVE Vulnerabilities

45,324 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-20683CRITICAL9.8In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es...
CVE-2025-20682CRITICAL9.8In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es...
CVE-2025-20681CRITICAL9.8In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es...
CVE-2025-20680CRITICAL9.8In Bluetooth driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local ...
CVE-2025-7155CRITICAL9.8A vulnerability, which was classified as critical, was found in PHPGurukul Online Notes Sharing System 1.0. This affects...
CVE-2025-42980CRITICAL9.1SAP NetWeaver Enterprise Portal Federated Portal Network is vulnerable when a privileged user can upload untrusted or ma...
CVE-2025-42967CRITICAL9.9SAP S/4HANA and SAP SCM Characteristic Propagation has remote code execution vulnerability. This allows an attacker with...
CVE-2025-42966CRITICAL9.1SAP NetWeaver XML Data Archiving Service allows an authenticated attacker with administrative privileges to exploit an i...
CVE-2025-42964CRITICAL9.1SAP NetWeaver Enterprise Portal Administration is vulnerable when a privileged user can upload untrusted or malicious co...
CVE-2025-42963CRITICAL9.1A critical vulnerability in SAP NetWeaver Application server for Java Log Viewer enables authenticated administrator use...
CVE-2025-7147CRITICAL9.8A vulnerability has been found in CodeAstro Patient Record Management System 1.0 and classified as critical. Affected by...
CVE-2025-53499CRITICAL9.1Missing Authorization vulnerability in Wikimedia Foundation Mediawiki - AbuseFilter Extension allows Unauthorized Access...
CVE-2025-53495CRITICAL9.1Missing Authorization vulnerability in Wikimedia Foundation Mediawiki - AbuseFilter Extension allows Unauthorized Access...
CVE-2025-7136CRITICAL9.8A vulnerability, which was classified as critical, was found in Campcodes Online Recruitment Management System 1.0. Affe...
CVE-2025-53529CRITICAL9.8WeGIA is a web manager for charitable institutions. An SQL Injection vulnerability was identified in the /html/funcionar...
CVE-2025-53527CRITICAL9.8WeGIA is a web manager for charitable institutions. A Time-Based Blind SQL Injection vulnerability was discovered in the...
CVE-2025-7135CRITICAL9.8A vulnerability, which was classified as critical, has been found in Campcodes Online Recruitment Management System 1.0....
CVE-2025-7134CRITICAL9.8A vulnerability classified as critical was found in Campcodes Online Recruitment Management System 1.0. This vulnerabili...
CVE-2025-47202CRITICAL9.1In RRC in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 13...
CVE-2025-45479CRITICAL9.8Insufficient security mechanisms for created containers in educoder challenges v1.0 allow attackers to execute arbitrary...
CVE-2025-45065CRITICAL9.8employee record management system in php and mysql v1 was discovered to contain a SQL injection vulnerability via the lo...
CVE-2025-43933CRITICAL9.8fblog through 983bede allows account takeover via the password reset feature because SERVER_NAME is not configured and t...
CVE-2025-43932CRITICAL9.8JobCenter through 7e7b0b2 allows account takeover via the password reset feature because SERVER_NAME is not configured a...
CVE-2025-43931CRITICAL9.8flask-boilerplate through a170e7c allows account takeover via the password reset feature because SERVER_NAME is not conf...
CVE-2025-7132CRITICAL9.8A vulnerability was found in Campcodes Payroll Management System 1.0. It has been rated as critical. Affected by this is...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now