2025 CVE Vulnerabilities

45,324 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-34055CRITICAL9.4An OS command injection vulnerability exists in AVTECH DVR, NVR, and IP camera devices within the adcommand.cgi endpoint...
CVE-2025-34054CRITICAL10An unauthenticated command injection vulnerability exists in AVTECH DVR devices via Search.cgi?action=cgi_query. The use...
CVE-2025-6956CRITICAL9.8A vulnerability was found in Campcodes Employee Management System 1.0. It has been classified as critical. This affects ...
CVE-2025-6955CRITICAL9.8A vulnerability was found in Campcodes Employee Management System 1.0 and classified as critical. Affected by this issue...
CVE-2025-6954CRITICAL9.8A vulnerability has been found in Campcodes Employee Management System 1.0 and classified as critical. Affected by this ...
CVE-2025-49029CRITICAL9.1Improper Control of Generation of Code ('Code Injection') vulnerability in bitto.kazi Custom Login And Signup Widget cus...
CVE-2025-45872CRITICAL9.8zrlog v3.1.5 was discovered to contain a Server-Side Request Forgery (SSRF) via the downloadUrl parameter.
CVE-2025-49480CRITICAL9.1Out-of-bounds access in ASR180x 、ASR190x in lte-telephony, This vulnerability is associated with program files apps/lz...
CVE-2025-49492CRITICAL9.8Out-of-bounds write in ASR180x in lte-telephony, May cause a buffer underrun.  This vulnerability is associated with pr...
CVE-2025-41656CRITICAL10An unauthenticated remote attacker can run arbitrary commands on the affected devices with high privileges because the a...
CVE-2025-41648CRITICAL9.8An unauthenticated remote attacker can bypass the login to the web application of the affected devices making it possibl...
CVE-2025-6934CRITICAL9.8The Opal Estate Pro – Property Management and Submission plugin for WordPress, used by the FullHouse - Real Estate Respo...
CVE-2025-6938CRITICAL9.8A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been rated as critical. This issue a...
CVE-2025-6937CRITICAL9.8A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been declared as critical. This vuln...
CVE-2025-53005CRITICAL9.8DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.11, there is a bypas...
CVE-2025-6936CRITICAL9.8A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been classified as critical. This af...
CVE-2025-6935CRITICAL9.8A vulnerability was found in Campcodes Sales and Inventory System 1.0 and classified as critical. Affected by this issue...
CVE-2025-53004CRITICAL9.8DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.11, there is a bypas...
CVE-2025-6925CRITICAL9.1A vulnerability has been found in Dromara RuoYi-Vue-Plus 5.4.0 and classified as critical. Affected by this vulnerabilit...
CVE-2025-6917CRITICAL9.8A vulnerability has been found in code-projects Online Hotel Booking 1.0 and classified as critical. This vulnerability ...
CVE-2025-45931CRITICAL9.8An issue D-Link DIR-816-A2 DIR-816A2_FWv1.10CNB05_R1B011D88210 allows a remote attacker to execute arbitrary code via sy...
CVE-2025-26074CRITICAL9.8Orkes Conductor v3.21.11 allows remote attackers to execute arbitrary OS commands through unrestricted access to Java cl...
CVE-2025-6907CRITICAL9.8A vulnerability classified as critical was found in code-projects Car Rental System 1.0. This vulnerability affects unkn...
CVE-2025-6906CRITICAL9.8A vulnerability classified as critical has been found in code-projects Car Rental System 1.0. This affects an unknown pa...
CVE-2025-6905CRITICAL9.8A vulnerability, which was classified as critical, has been found in code-projects Car Rental System 1.0. This issue aff...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now