2025 CVE Vulnerabilities

45,143 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-34039CRITICAL10A code injection vulnerability exists in Yonyou UFIDA NC v6.5 and prior due to the exposure of the BeanShell testing ser...
CVE-2025-34037CRITICAL10An OS command injection vulnerability exists in various models of E-Series Linksys routers via the /tmUnblock.cgi and /h...
CVE-2025-34036CRITICAL9.8An OS command injection vulnerability exists in white-labeled DVRs manufactured by TVT, affecting a custom HTTP service ...
CVE-2025-34035CRITICAL9.8An OS command injection vulnerability exists in EnGenius EnShare Cloud Service version 1.4.11 and earlier. The usbintera...
CVE-2025-52562CRITICAL10Convoy is a KVM server management panel for hosting businesses. In versions 3.9.0-rc3 to before 4.4.1, there is a direct...
CVE-2025-2828CRITICAL10A Server-Side Request Forgery (SSRF) vulnerability exists in the RequestsToolkit component of the langchain-community pa...
CVE-2025-6547CRITICAL9.1Improper Input Validation vulnerability in pbkdf2 allows Signature Spoofing by Improper Validation.This issue affects pb...
CVE-2025-6545CRITICAL9.1Improper Input Validation vulnerability in pbkdf2 allows Signature Spoofing by Improper Validation. This vulnerability i...
CVE-2025-6517CRITICAL9.8A vulnerability was found in Dromara MaxKey up to 4.1.7 and classified as critical. This issue affects the function Add ...
CVE-2025-46101CRITICAL9.8SQL Injection vulnerability in Beakon Software Beakon Learning Management System Sharable Content Object Reference Model...
CVE-2025-6513CRITICAL9.3Standard Windows users can access the configuration file for database access of the BRAIN2 application and decrypt it.
CVE-2025-6512CRITICAL10On a client with a non-admin user, a script can be integrated into a report. The reports could later be executed on the ...
CVE-2025-52921CRITICAL9.9In Innoshop through 0.4.1, an authenticated attacker could exploit the File Manager functions in the admin panel to achi...
CVE-2025-52939CRITICAL9.4Out-of-bounds Write vulnerability in dail8859 NotepadNext (src/lua/src modules). This vulnerability is associated with p...
CVE-2025-52936CRITICAL9.3Improper Link Resolution Before File Access ('Link Following') vulnerability in yrutschle sslh.This issue affects sslh: ...
CVE-2025-52935CRITICAL9.4Integer Overflow or Wraparound vulnerability in dragonflydb dragonfly (src/redis/lua/struct modules). This vulnerability...
CVE-2025-6503CRITICAL9.8A vulnerability was found in code-projects Inventory Management System 1.0 and classified as critical. This issue affect...
CVE-2025-6502CRITICAL9.8A vulnerability has been found in code-projects Inventory Management System 1.0 and classified as critical. This vulnera...
CVE-2025-6501CRITICAL9.8A vulnerability, which was classified as critical, was found in code-projects Inventory Management System 1.0. This affe...
CVE-2025-6500CRITICAL9.8A vulnerability, which was classified as critical, has been found in code-projects Inventory Management System 1.0. Affe...
CVE-2025-6489CRITICAL9.8A vulnerability has been found in itsourcecode Agri-Trading Online Shopping System 1.0 and classified as critical. This ...
CVE-2025-6483CRITICAL9.8A vulnerability has been found in code-projects Simple Pizza Ordering System 1.0 and classified as critical. Affected by...
CVE-2025-6482CRITICAL9.8A vulnerability, which was classified as critical, was found in code-projects Simple Pizza Ordering System 1.0. Affected...
CVE-2025-6481CRITICAL9.8A vulnerability, which was classified as critical, has been found in code-projects Simple Pizza Ordering System 1.0. Thi...
CVE-2025-6480CRITICAL9.8A vulnerability classified as critical was found in code-projects Simple Pizza Ordering System 1.0. This vulnerability a...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now