2025 CVE Vulnerabilities

45,324 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-6665CRITICAL9.8A vulnerability has been found in code-projects Inventory Management System 1.0 and classified as critical. Affected by ...
CVE-2025-36038CRITICAL9.8IBM WebSphere Application Server 8.5 and 9.0 could allow a remote attacker to execute arbitrary code on the system with ...
CVE-2025-6621CRITICAL9.8A vulnerability classified as critical has been found in TOTOLINK CA300-PoE 6.2c.884. This affects the function QuickSet...
CVE-2025-6620CRITICAL9.8A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been rated as critical. Affected by this issue is the f...
CVE-2025-6619CRITICAL9.8A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been declared as critical. Affected by this vulnerabili...
CVE-2025-6618CRITICAL9.8A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been classified as critical. Affected is the function S...
CVE-2025-52483CRITICAL9.8Registrator is a GitHub app that automates creation of registration pull requests for julia packages to the General regi...
CVE-2025-52480CRITICAL9.8Registrator is a GitHub app that automates creation of registration pull requests for julia packages to the General regi...
CVE-2025-49153CRITICAL9.3The affected products could allow an unauthenticated attacker to overwrite files and execute arbitrary code.
CVE-2025-49151CRITICAL9.3The affected products could allow an unauthenticated attacker to generate forged JSON Web Tokens (JWT) to bypass authent...
CVE-2025-20282CRITICAL10A vulnerability in an internal API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to upl...
CVE-2025-6612CRITICAL9.8A vulnerability was found in code-projects Inventory Management System 1.0. It has been rated as critical. This issue af...
CVE-2025-6611CRITICAL9.8A vulnerability was found in code-projects Inventory Management System 1.0. It has been declared as critical. This vulne...
CVE-2025-20281CRITICAL10A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to exec...
CVE-2025-6543CRITICAL9.8Memory overflow vulnerability leading to unintended control flow and Denial of Service in NetScaler ADC and NetScaler Ga...
CVE-2025-6580CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Best Salon Management System 1.0. Affected is an...
CVE-2025-52572CRITICAL10Hikka, a Telegram userbot, has vulnerability affects all users on all versions of Hikka. Two scenarios are possible. 1. ...
CVE-2025-6579CRITICAL9.8A vulnerability was found in code-projects Car Rental System 1.0. It has been rated as critical. This issue affects some...
CVE-2025-6578CRITICAL9.8A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been declared as critical....
CVE-2025-52571CRITICAL9.6Hikka is a Telegram userbot. A vulnerability affects all users of versions below 1.6.2, including most of the forks. It ...
CVE-2025-52471CRITICAL9.8ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. An integer underflow vulnerability has been ide...
CVE-2025-49853CRITICAL9.3ControlID iDSecure On-premises versions 4.7.48.0 and prior are vulnerable to SQL injections which could allow an attacke...
CVE-2025-49851CRITICAL9.8ControlID iDSecure On-premises versions 4.7.48.0 and prior are vulnerable to an improper authentication vulnerability wh...
CVE-2025-2566CRITICAL9.3Kaleris NAVIS N4 ULC (Ultra Light Client) contains an unsafe Java deserialization vulnerability. An unauthenticated atta...
CVE-2025-4378CRITICAL10Cleartext Transmission of Sensitive Information, Use of Hard-coded Credentials vulnerability in Ataturk University ATA-A...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now