2025 CVE Vulnerabilities
45,324 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-6836 | CRITICAL | 9.8 | 0.4% | Jun 29, 2025 | A vulnerability classified as critical has been found in code-projects Library System 1.0. Affected is an unknown functi... |
| CVE-2025-6835 | CRITICAL | 9.8 | 0.4% | Jun 29, 2025 | A vulnerability was found in code-projects Library System 1.0. It has been rated as critical. This issue affects some un... |
| CVE-2025-6834 | CRITICAL | 9.8 | 0.4% | Jun 29, 2025 | A vulnerability was found in code-projects Inventory Management System 1.0. It has been declared as critical. This vulne... |
| CVE-2025-6828 | CRITICAL | 9.8 | 0.4% | Jun 28, 2025 | A vulnerability has been found in code-projects Inventory Management System 1.0 and classified as critical. This vulnera... |
| CVE-2025-6827 | CRITICAL | 9.8 | 0.4% | Jun 28, 2025 | A vulnerability, which was classified as critical, was found in code-projects Inventory Management System 1.0. This affe... |
| CVE-2025-53391 | CRITICAL | 9.3 | 0.1% | Jun 28, 2025 | The Debian zuluPolkit/CMakeLists.txt file for zuluCrypt through the zulucrypt_6.2.0-1 package has insecure PolicyKit all... |
| CVE-2025-6826 | CRITICAL | 9.8 | 0.4% | Jun 28, 2025 | A vulnerability, which was classified as critical, has been found in code-projects Payroll Management System 1.0. Affect... |
| CVE-2025-6823 | CRITICAL | 9.8 | 0.4% | Jun 28, 2025 | A vulnerability was found in code-projects Inventory Management System 1.0. It has been rated as critical. This issue af... |
| CVE-2025-6822 | CRITICAL | 9.8 | 0.4% | Jun 28, 2025 | A vulnerability was found in code-projects Inventory Management System 1.0. It has been declared as critical. This vulne... |
| CVE-2025-32897 | CRITICAL | 9.8 | 1.7% | Jun 28, 2025 | Deserialization of Untrusted Data vulnerability in Apache Seata (incubating). This security vulnerability is the same a... |
| CVE-2025-6821 | CRITICAL | 9.8 | 0.4% | Jun 28, 2025 | A vulnerability was found in code-projects Inventory Management System 1.0. It has been classified as critical. This aff... |
| CVE-2025-6820 | CRITICAL | 9.8 | 0.4% | Jun 28, 2025 | A vulnerability was found in code-projects Inventory Management System 1.0 and classified as critical. Affected by this ... |
| CVE-2025-6819 | CRITICAL | 9.8 | 0.4% | Jun 28, 2025 | A vulnerability has been found in code-projects Inventory Management System 1.0 and classified as critical. Affected by ... |
| CVE-2025-5304 | CRITICAL | 9.8 | 0.6% | Jun 28, 2025 | The PT Project Notebooks plugin for WordPress is vulnerable to Privilege Escalation due to missing authorization in the ... |
| CVE-2025-6777 | CRITICAL | 9.8 | 0.5% | Jun 27, 2025 | A vulnerability, which was classified as critical, has been found in code-projects Food Distributor Site 1.0. This issue... |
| CVE-2025-6776 | CRITICAL | 9.8 | 0.6% | Jun 27, 2025 | A vulnerability classified as critical was found in xiaoyunjie openvpn-cms-flask up to 1.2.7. This vulnerability affects... |
| CVE-2025-6775 | CRITICAL | 9.8 | 3.5% | Jun 27, 2025 | A vulnerability classified as critical has been found in xiaoyunjie openvpn-cms-flask up to 1.2.7. This affects the func... |
| CVE-2025-5310 | CRITICAL | 9.8 | 0.7% | Jun 27, 2025 | Dover Fueling Solutions ProGauge MagLink LX Consoles expose an undocumented and unauthenticated target communication fra... |
| CVE-2025-52207 | CRITICAL | 9.9 | 1.5% | Jun 27, 2025 | PBXCoreREST/Controllers/Files/PostController.php in MikoPBX through 2024.1.114 allows uploading a PHP script to an arbit... |
| CVE-2025-53091 | CRITICAL | 9.8 | 0.5% | Jun 27, 2025 | WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. A Time-Based Bl... |
| CVE-2025-52553 | CRITICAL | 9.6 | 0.4% | Jun 27, 2025 | authentik is an open-source identity provider. After authorizing access to a RAC endpoint, authentik creates a token whi... |
| CVE-2025-53314 | CRITICAL | 9.6 | 0.1% | Jun 27, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in sh1zen WP Optimizer wp-optimizer allows SQL Injection.This issue affe... |
| CVE-2025-53260 | CRITICAL | 9.1 | 0.3% | Jun 27, 2025 | Unrestricted Upload of File with Dangerous Type vulnerability in getredhawkstudio File Manager Plugin For Wordpress file... |
| CVE-2025-52834 | CRITICAL | 9.3 | 0.3% | Jun 27, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in favethemes Homey h... |
| CVE-2025-52829 | CRITICAL | 9.3 | 0.3% | Jun 27, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in DirectIQ DirectIQ ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now