2025 CVE Vulnerabilities
45,324 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-6811 | CRITICAL | 9.8 | 0.7% | Jul 7, 2025 | Mescius ActiveReports.NET TypeResolutionService Deserialization of Untrusted Data Remote Code Execution Vulnerability. T... |
| CVE-2025-6810 | CRITICAL | 9.8 | 0.7% | Jul 7, 2025 | Mescius ActiveReports.NET ReadValue Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerab... |
| CVE-2025-6805 | CRITICAL | 9.1 | 1.1% | Jul 7, 2025 | Marvell QConvergeConsole deleteEventLogFile Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerabilit... |
| CVE-2025-6802 | CRITICAL | 9.8 | 0.6% | Jul 7, 2025 | Marvell QConvergeConsole getFileFromURL Unrestricted File Upload Remote Code Execution Vulnerability. This vulnerability... |
| CVE-2025-6798 | CRITICAL | 9.1 | 1.3% | Jul 7, 2025 | Marvell QConvergeConsole deleteAppFile Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability all... |
| CVE-2025-6794 | CRITICAL | 9.8 | 1.4% | Jul 7, 2025 | Marvell QConvergeConsole saveAsText Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows r... |
| CVE-2025-6793 | CRITICAL | 9.4 | 12.3% | Jul 7, 2025 | Marvell QConvergeConsole QLogicDownloadImpl Directory Traversal Arbitrary File Deletion and Information Disclosure Vulne... |
| CVE-2025-43930 | CRITICAL | 9.8 | 0.5% | Jul 7, 2025 | Hashview 0.8.1 allows account takeover via the password reset feature because SERVER_NAME is not configured and thus a r... |
| CVE-2025-7131 | CRITICAL | 9.8 | 0.5% | Jul 7, 2025 | A vulnerability was found in Campcodes Payroll Management System 1.0. It has been declared as critical. Affected by this... |
| CVE-2025-7130 | CRITICAL | 9.8 | 0.5% | Jul 7, 2025 | A vulnerability was found in Campcodes Payroll Management System 1.0. It has been classified as critical. Affected is an... |
| CVE-2025-7129 | CRITICAL | 9.8 | 0.5% | Jul 7, 2025 | A vulnerability was found in Campcodes Payroll Management System 1.0 and classified as critical. This issue affects some... |
| CVE-2025-7128 | CRITICAL | 9.8 | 0.5% | Jul 7, 2025 | A vulnerability has been found in Campcodes Payroll Management System 1.0 and classified as critical. This vulnerability... |
| CVE-2025-7122 | CRITICAL | 9.8 | 0.5% | Jul 7, 2025 | A vulnerability was found in Campcodes Complaint Management System 1.0. It has been declared as critical. This vulnerabi... |
| CVE-2025-3626 | CRITICAL | 9.1 | 0.9% | Jul 7, 2025 | A remote attacker with administrator account can gain full control of the device due to improper neutralization of speci... |
| CVE-2025-7120 | CRITICAL | 9.8 | 0.5% | Jul 7, 2025 | A vulnerability was found in Campcodes Complaint Management System 1.0 and classified as critical. Affected by this issu... |
| CVE-2025-7119 | CRITICAL | 9.8 | 0.4% | Jul 7, 2025 | A vulnerability has been found in Campcodes Complaint Management System 1.0 and classified as critical. Affected by this... |
| CVE-2025-41672 | CRITICAL | 10 | 0.3% | Jul 7, 2025 | A remote unauthenticated attacker may use default certificates to generate JWT Tokens and gain full access to the tool a... |
| CVE-2025-48501 | CRITICAL | 9.8 | 1.3% | Jul 7, 2025 | An OS command injection issue exists in Nimesa Backup and Recovery v2.3 and v2.4. If this vulnerability is exploited, an... |
| CVE-2025-7102 | CRITICAL | 9.8 | 0.3% | Jul 7, 2025 | A vulnerability was found in BoyunCMS up to 1.4.20. It has been declared as critical. This vulnerability affects unknown... |
| CVE-2025-7101 | CRITICAL | 9.8 | 0.4% | Jul 7, 2025 | A vulnerability was found in BoyunCMS up to 1.4.20. It has been classified as critical. This affects an unknown part of ... |
| CVE-2025-7100 | CRITICAL | 9.8 | 0.3% | Jul 7, 2025 | A vulnerability was found in BoyunCMS up to 1.4.20 and classified as critical. Affected by this issue is some unknown fu... |
| CVE-2025-5333 | CRITICAL | 9.5 | 0.7% | Jul 6, 2025 | Remote attackers can execute arbitrary code in the context of the vulnerable service process. |
| CVE-2025-26850 | CRITICAL | 9.3 | 0.2% | Jul 5, 2025 | The agent in Quest KACE Systems Management Appliance (SMA) before 14.0.97 and 14.1.x before 14.1.19 potentially allows p... |
| CVE-2025-48952 | CRITICAL | 9.4 | 0.5% | Jul 4, 2025 | NetAlertX is a network, presence scanner, and alert framework. Prior to version 25.6.7, a vulnerability in the authentic... |
| CVE-2025-53484 | CRITICAL | 9.8 | 0.5% | Jul 4, 2025 | User-controlled inputs are improperly escaped in: * VotePage.php (poll option input) * ResultPage::getPag... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now