2025 CVE Vulnerabilities
45,324 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-6665 | CRITICAL | 9.8 | 0.4% | Jun 25, 2025 | A vulnerability has been found in code-projects Inventory Management System 1.0 and classified as critical. Affected by ... |
| CVE-2025-36038 | CRITICAL | 9.8 | 8.0% | Jun 25, 2025 | IBM WebSphere Application Server 8.5 and 9.0 could allow a remote attacker to execute arbitrary code on the system with ... |
| CVE-2025-6621 | CRITICAL | 9.8 | 2.7% | Jun 25, 2025 | A vulnerability classified as critical has been found in TOTOLINK CA300-PoE 6.2c.884. This affects the function QuickSet... |
| CVE-2025-6620 | CRITICAL | 9.8 | 2.7% | Jun 25, 2025 | A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been rated as critical. Affected by this issue is the f... |
| CVE-2025-6619 | CRITICAL | 9.8 | 2.7% | Jun 25, 2025 | A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been declared as critical. Affected by this vulnerabili... |
| CVE-2025-6618 | CRITICAL | 9.8 | 2.7% | Jun 25, 2025 | A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been classified as critical. Affected is the function S... |
| CVE-2025-52483 | CRITICAL | 9.8 | 0.4% | Jun 25, 2025 | Registrator is a GitHub app that automates creation of registration pull requests for julia packages to the General regi... |
| CVE-2025-52480 | CRITICAL | 9.8 | 0.6% | Jun 25, 2025 | Registrator is a GitHub app that automates creation of registration pull requests for julia packages to the General regi... |
| CVE-2025-49153 | CRITICAL | 9.3 | 0.7% | Jun 25, 2025 | The affected products could allow an unauthenticated attacker to overwrite files and execute arbitrary code. |
| CVE-2025-49151 | CRITICAL | 9.3 | 0.5% | Jun 25, 2025 | The affected products could allow an unauthenticated attacker to generate forged JSON Web Tokens (JWT) to bypass authent... |
| CVE-2025-20282 | CRITICAL | 10 | 9.8% | Jun 25, 2025 | A vulnerability in an internal API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to upl... |
| CVE-2025-6612 | CRITICAL | 9.8 | 0.4% | Jun 25, 2025 | A vulnerability was found in code-projects Inventory Management System 1.0. It has been rated as critical. This issue af... |
| CVE-2025-6611 | CRITICAL | 9.8 | 0.4% | Jun 25, 2025 | A vulnerability was found in code-projects Inventory Management System 1.0. It has been declared as critical. This vulne... |
| CVE-2025-20281 | CRITICAL | 10 | 96.7% | Jun 25, 2025 | A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to exec... |
| CVE-2025-6543 | CRITICAL | 9.8 | 9.8% | Jun 25, 2025 | Memory overflow vulnerability leading to unintended control flow and Denial of Service in NetScaler ADC and NetScaler Ga... |
| CVE-2025-6580 | CRITICAL | 9.8 | 0.4% | Jun 24, 2025 | A vulnerability classified as critical has been found in SourceCodester Best Salon Management System 1.0. Affected is an... |
| CVE-2025-52572 | CRITICAL | 10 | 0.6% | Jun 24, 2025 | Hikka, a Telegram userbot, has vulnerability affects all users on all versions of Hikka. Two scenarios are possible. 1. ... |
| CVE-2025-6579 | CRITICAL | 9.8 | 0.4% | Jun 24, 2025 | A vulnerability was found in code-projects Car Rental System 1.0. It has been rated as critical. This issue affects some... |
| CVE-2025-6578 | CRITICAL | 9.8 | 0.4% | Jun 24, 2025 | A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been declared as critical.... |
| CVE-2025-52571 | CRITICAL | 9.6 | 0.3% | Jun 24, 2025 | Hikka is a Telegram userbot. A vulnerability affects all users of versions below 1.6.2, including most of the forks. It ... |
| CVE-2025-52471 | CRITICAL | 9.8 | 0.7% | Jun 24, 2025 | ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. An integer underflow vulnerability has been ide... |
| CVE-2025-49853 | CRITICAL | 9.3 | 0.4% | Jun 24, 2025 | ControlID iDSecure On-premises versions 4.7.48.0 and prior are vulnerable to SQL injections which could allow an attacke... |
| CVE-2025-49851 | CRITICAL | 9.8 | 0.5% | Jun 24, 2025 | ControlID iDSecure On-premises versions 4.7.48.0 and prior are vulnerable to an improper authentication vulnerability wh... |
| CVE-2025-2566 | CRITICAL | 9.3 | 0.5% | Jun 24, 2025 | Kaleris NAVIS N4 ULC (Ultra Light Client) contains an unsafe Java deserialization vulnerability. An unauthenticated atta... |
| CVE-2025-4378 | CRITICAL | 10 | 0.3% | Jun 24, 2025 | Cleartext Transmission of Sensitive Information, Use of Hard-coded Credentials vulnerability in Ataturk University ATA-A... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now