2025 CVE Vulnerabilities

45,142 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-6962CRITICAL9.8A vulnerability, which was classified as critical, was found in Campcodes Employee Management System 1.0. This affects a...
CVE-2025-6961CRITICAL9.8A vulnerability, which was classified as critical, has been found in Campcodes Employee Management System 1.0. Affected ...
CVE-2025-6960CRITICAL9.8A vulnerability classified as critical was found in Campcodes Employee Management System 1.0. Affected by this vulnerabi...
CVE-2025-6959CRITICAL9.8A vulnerability classified as critical has been found in Campcodes Employee Management System 1.0. Affected is an unknow...
CVE-2025-6958CRITICAL9.8A vulnerability was found in Campcodes Employee Management System 1.0. It has been rated as critical. This issue affects...
CVE-2025-6957CRITICAL9.8A vulnerability was found in Campcodes Employee Management System 1.0. It has been declared as critical. This vulnerabil...
CVE-2025-34064CRITICAL9A cloud infrastructure misconfiguration in OneLogin AD Connector results in log data being sent to a hardcoded S3 bucket...
CVE-2025-34063CRITICAL10A cryptographic authentication bypass vulnerability exists in OneLogin AD Connector prior to 6.1.5 due to the exposure o...
CVE-2025-34060CRITICAL10A PHP objection injection vulnerability exists in the Monero Project’s Laravel-based forum software due to unsafe handli...
CVE-2025-34056CRITICAL9.4An OS command injection vulnerability exists in AVTECH IP camera, DVR, and NVR devices via the PwdGrp.cgi endpoint, whic...
CVE-2025-34055CRITICAL9.4An OS command injection vulnerability exists in AVTECH DVR, NVR, and IP camera devices within the adcommand.cgi endpoint...
CVE-2025-34054CRITICAL10An unauthenticated command injection vulnerability exists in AVTECH DVR devices via Search.cgi?action=cgi_query. The use...
CVE-2025-6956CRITICAL9.8A vulnerability was found in Campcodes Employee Management System 1.0. It has been classified as critical. This affects ...
CVE-2025-6955CRITICAL9.8A vulnerability was found in Campcodes Employee Management System 1.0 and classified as critical. Affected by this issue...
CVE-2025-6954CRITICAL9.8A vulnerability has been found in Campcodes Employee Management System 1.0 and classified as critical. Affected by this ...
CVE-2025-49029CRITICAL9.1Improper Control of Generation of Code ('Code Injection') vulnerability in bitto.kazi Custom Login And Signup Widget cus...
CVE-2025-45872CRITICAL9.8zrlog v3.1.5 was discovered to contain a Server-Side Request Forgery (SSRF) via the downloadUrl parameter.
CVE-2025-49480CRITICAL9.1Out-of-bounds access in ASR180x 、ASR190x in lte-telephony, This vulnerability is associated with program files apps/lz...
CVE-2025-49492CRITICAL9.8Out-of-bounds write in ASR180x in lte-telephony, May cause a buffer underrun.  This vulnerability is associated with pr...
CVE-2025-41656CRITICAL10An unauthenticated remote attacker can run arbitrary commands on the affected devices with high privileges because the a...
CVE-2025-41648CRITICAL9.8An unauthenticated remote attacker can bypass the login to the web application of the affected devices making it possibl...
CVE-2025-6934CRITICAL9.8The Opal Estate Pro – Property Management and Submission plugin for WordPress, used by the FullHouse - Real Estate Respo...
CVE-2025-6938CRITICAL9.8A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been rated as critical. This issue a...
CVE-2025-6937CRITICAL9.8A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been declared as critical. This vuln...
CVE-2025-53005CRITICAL9.8DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.11, there is a bypas...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now