2025 CVE Vulnerabilities

45,324 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-6296CRITICAL9.8A vulnerability was found in code-projects Hostel Management System 1.0. It has been rated as critical. Affected by this...
CVE-2025-6295CRITICAL9.8A vulnerability was found in code-projects Hostel Management System 1.0. It has been declared as critical. Affected by t...
CVE-2025-6294CRITICAL9.8A vulnerability was found in code-projects Hostel Management System 1.0. It has been classified as critical. Affected is...
CVE-2025-6293CRITICAL9.8A vulnerability was found in code-projects Hostel Management System 1.0 and classified as critical. This issue affects s...
CVE-2025-6282CRITICAL9.8A vulnerability was found in xlang-ai OpenAgents up to ff2e46440699af1324eb25655b622c4a131265bb and classified as critic...
CVE-2025-6280CRITICAL9.8A vulnerability, which was classified as critical, was found in TransformerOptimus SuperAGI up to 0.0.14. Affected is th...
CVE-2025-6384CRITICAL9.1Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of CrafterCMS allows authenticate...
CVE-2025-6278CRITICAL9.8A vulnerability classified as critical was found in Upsonic up to 0.55.6. This vulnerability affects the function os.pat...
CVE-2025-6277CRITICAL9.8A vulnerability classified as critical has been found in Brilliance Golden Link Secondary System up to 20250609. This af...
CVE-2025-6276CRITICAL9.8A vulnerability was found in Brilliance Golden Link Secondary System up to 20250609. It has been rated as critical. Affe...
CVE-2025-33117CRITICAL9.1IBM QRadar SIEM 7.5 through 7.5.0 Update Package 12 could allow a privileged user to modify configuration files that wo...
CVE-2025-6267CRITICAL9.8A vulnerability was found in zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 1.0.0. It has been rated a...
CVE-2025-4738CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Yirmibes Software ...
CVE-2025-6266CRITICAL9.8A vulnerability was detected in Teledyne FLIR AX8 up to 1.46. Affected by this vulnerability is an unknown functionality...
CVE-2025-52474CRITICAL9.8WeGIA is a web manager for charitable institutions. Prior to version 3.4.2, a SQL Injection vulnerability was identified...
CVE-2025-50201CRITICAL9.8WeGIA is a web manager for charitable institutions. Prior to version 3.4.2, an OS Command Injection vulnerability was id...
CVE-2025-52467CRITICAL9.1pgai is a Python library that transforms PostgreSQL into a retrieval engine for RAG and Agentic applications. Prior to c...
CVE-2025-24288CRITICAL9.8The Versa Director software exposes a number of services by default and allow attackers an easy foothold due to default ...
CVE-2025-49591CRITICAL9.1CryptPad is a collaboration suite. Prior to version 2025.3.0, enforcement of Two-Factor Authentication (2FA) in CryptPad...
CVE-2025-26199CRITICAL9.8CloudClassroom-PHP-Project v1.0 is affected by an insecure credential transmission vulnerability. The application transm...
CVE-2025-26198CRITICAL9.8CloudClassroom-PHP-Project v1.0 contains a critical SQL Injection vulnerability in the loginlinkadmin.php component. The...
CVE-2025-20260CRITICAL9.8A vulnerability in the PDF scanning processes of ClamAV could allow an unauthenticated, remote attacker to cause a buffe...
CVE-2025-46157CRITICAL9.9An issue in EfroTech Time Trax v.1.0 allows a remote attacker to execute arbitrary code via the file attachment function...
CVE-2025-45784CRITICAL9.8D-Link DPH-400S/SE VoIP Phone v1.01 contains hardcoded provisioning variables, including PROVIS_USER_PASSWORD, which may...
CVE-2025-1562CRITICAL9.8The Recover WooCommerce Cart Abandonment, Newsletter, Email Marketing, Marketing Automation By FunnelKit plugin for Word...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now