2025 CVE Vulnerabilities
45,296 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-3619 | HIGH | 8.8 | 0.4% | Apr 16, 2025 | Heap buffer overflow in Codecs in Google Chrome on Windows prior to 135.0.7049.95 allowed a remote attacker to potential... |
| CVE-2025-29710 | MEDIUM | 6.1 | 0.3% | Apr 16, 2025 | SourceCodester Company Website CMS 1.0 is vulnerable to Cross Site Scripting (XSS) via /dashboard/Services. |
| CVE-2025-29709 | CRITICAL | 9.8 | 0.5% | Apr 16, 2025 | SourceCodester Company Website CMS 1.0 has a File upload vulnerability via the "Create portfolio" file /dashboard/portfo... |
| CVE-2025-29708 | CRITICAL | 9.8 | 0.5% | Apr 16, 2025 | SourceCodester Company Website CMS 1.0 contains a file upload vulnerability via the "Create Services" file /dashboard/Se... |
| CVE-2025-28072 | HIGH | 7.5 | 0.8% | Apr 16, 2025 | PHPGurukul Pre-School Enrollment System is vulnerable to Directory Traversal in manage-teachers.php. |
| CVE-2025-26153 | MEDIUM | 5.4 | 0.3% | Apr 16, 2025 | A Stored XSS vulnerability exists in the message compose feature of Chamilo LMS 1.11.28. Attackers can inject malicious ... |
| CVE-2025-3726 | CRITICAL | 9.8 | 0.6% | Apr 16, 2025 | A vulnerability was found in PCMan FTP Server 2.0.7. It has been rated as critical. Affected by this issue is some unkno... |
| CVE-2025-3725 | CRITICAL | 9.8 | 0.6% | Apr 16, 2025 | A vulnerability was found in PCMan FTP Server 2.0.7. It has been declared as critical. Affected by this vulnerability is... |
| CVE-2025-3724 | CRITICAL | 9.8 | 0.6% | Apr 16, 2025 | A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as critical. Affected is an unknown function... |
| CVE-2025-3723 | CRITICAL | 9.8 | 0.6% | Apr 16, 2025 | A vulnerability was found in PCMan FTP Server 2.0.7 and classified as critical. This issue affects some unknown processi... |
| CVE-2025-32817 | MEDIUM | 6.1 | 0.3% | Apr 16, 2025 | A Improper Link Resolution vulnerability (CWE-59) in the SonicWall Connect Tunnel Windows (32 and 64 bit) client, this r... |
| CVE-2025-29653 | — | — | — | Apr 16, 2025 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and... |
| CVE-2025-29652 | — | — | — | Apr 16, 2025 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and... |
| CVE-2025-29651 | — | — | — | Apr 16, 2025 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and... |
| CVE-2025-29650 | — | — | — | Apr 16, 2025 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and... |
| CVE-2025-29649 | — | — | — | Apr 16, 2025 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and... |
| CVE-2025-29648 | — | — | — | Apr 16, 2025 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and... |
| CVE-2025-31201 | CRITICAL | 9.8 | 12.4% | Apr 16, 2025 | This issue was addressed by removing the vulnerable code. This issue is fixed in iOS 18.4.1 and iPadOS 18.4.1, macOS Seq... |
| CVE-2025-31200 | CRITICAL | 9.8 | 21.3% | Apr 16, 2025 | A memory corruption issue was addressed with improved bounds checking. This issue is fixed in iOS 18.4.1 and iPadOS 18.4... |
| CVE-2025-39472 | HIGH | 8.8 | 0.1% | Apr 16, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in wpweb WooCommerce Social Login woo-social-login allows Cross Site Req... |
| CVE-2025-32872 | HIGH | 8.8 | 0.5% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-32871 | HIGH | 8.8 | 0.5% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-32870 | HIGH | 8.8 | 0.6% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-32869 | HIGH | 8.8 | 0.3% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-32868 | HIGH | 8.8 | 0.3% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now