2025 CVE Vulnerabilities

45,143 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-6087CRITICAL9.1A Server-Side Request Forgery (SSRF) vulnerability was identified in the @opennextjs/cloudflare package. The vulnerabili...
CVE-2025-6133CRITICAL9.8A vulnerability was found in Projectworlds Life Insurance Management System 1.0 and classified as critical. Affected by ...
CVE-2025-6132CRITICAL9.8A vulnerability has been found in Chanjet CRM 1.0 and classified as critical. Affected by this vulnerability is an unkno...
CVE-2025-6179CRITICAL9.8Permissions Bypass in Extension Management in Google ChromeOS 16181.27.0 on managed Chrome devices allows a loca...
CVE-2025-5309CRITICAL9.8The chat feature within Remote Support (RS) and Privileged Remote Access (PRA) is vulnerable to a Server-Side Template I...
CVE-2025-49796CRITICAL9.1A vulnerability was found in libxml2. Processing certain sch:name elements from the input XML file can trigger a memory ...
CVE-2025-49794CRITICAL9.1A use-after-free vulnerability was found in libxml2. This issue occurs when parsing XPath elements under certain circums...
CVE-2025-3594CRITICAL9.8Path traversal vulnerability with the downloading and installation of Xuggler in Liferay Portal 7.0.0 through 7.4.3.4, a...
CVE-2025-6124CRITICAL9.8A vulnerability was found in code-projects Restaurant Order System 1.0 and classified as critical. This issue affects so...
CVE-2025-6123CRITICAL9.8A vulnerability has been found in code-projects Restaurant Order System 1.0 and classified as critical. This vulnerabili...
CVE-2025-6121CRITICAL9.8A vulnerability, which was classified as critical, has been found in D-Link DIR-632 FW103B08. Affected by this issue is ...
CVE-2025-6118CRITICAL9.8A vulnerability was found in Das Parking Management System 停车场管理系统 6.2.0. It has been rated as critical. This issue affe...
CVE-2025-47869CRITICAL9.8Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability was discovered in Apache NuttX RTO...
CVE-2025-47868CRITICAL9.8Out-of-bounds Write resulting in possible Heap-based Buffer Overflow vulnerability was discovered in tools/bdf-converter...
CVE-2025-40916CRITICAL9.1Mojolicious::Plugin::CaptchaPNG version 1.05 for Perl uses a weak random number source for generating the captcha. That...
CVE-2025-6117CRITICAL9.8A vulnerability was found in Das Parking Management System 停车场管理系统 6.2.0. It has been declared as critical. This vulnera...
CVE-2025-6116CRITICAL9.8A vulnerability was found in Das Parking Management System 停车场管理系统 6.2.0. It has been classified as critical. This affec...
CVE-2025-6172CRITICAL9.8Permission vulnerability in the mobile application (com.afmobi.boomplayer) may lead to the risk of unauthorized operatio...
CVE-2025-6169CRITICAL9.8The WIMP website co-construction management platform from HAMASTAR Technology has a SQL Injection vulnerability, allowin...
CVE-2025-6098CRITICAL9.8A vulnerability was found in UTT 进取 750W up to 5.0. It has been classified as critical. This affects the function strcpy...
CVE-2025-6097CRITICAL9.8A vulnerability was found in UTT 进取 750W up to 5.0 and classified as critical. Affected by this issue is the function fo...
CVE-2025-6095CRITICAL9.8A vulnerability, which was classified as critical, was found in codesiddhant Jasmin Ransomware 1.0.1. Affected is an unk...
CVE-2025-36041CRITICAL9.8IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0, 3.4.0, 3.4.1, 3.5.0, ...
CVE-2025-6065CRITICAL9.1The Image Resizer On The Fly plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path...
CVE-2025-49596CRITICAL9.4The MCP inspector is a developer tool for testing and debugging MCP servers. Versions of MCP Inspector below 0.14.1 are ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now