2025 CVE Vulnerabilities

45,144 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-5869CRITICAL9.8A vulnerability, which was classified as critical, was found in RT-Thread 5.1.0. Affected is the function sys_recvfrom o...
CVE-2025-5868CRITICAL9.8A vulnerability, which was classified as critical, has been found in RT-Thread 5.1.0. This issue affects the function sy...
CVE-2025-5867CRITICAL9.8A vulnerability classified as critical was found in RT-Thread 5.1.0. This vulnerability affects the function csys_sendto...
CVE-2025-5893CRITICAL9.8Smart Parking Management System from Honding Technology has an Exposure of Sensitive Information vulnerability, allowing...
CVE-2025-5866CRITICAL9.8A vulnerability classified as critical has been found in RT-Thread 5.1.0. This affects the function sys_sigprocmask of t...
CVE-2025-5865CRITICAL9.8A vulnerability was found in RT-Thread 5.1.0. It has been rated as critical. Affected by this issue is the function sys_...
CVE-2025-5863CRITICAL9.8A vulnerability was found in Tenda AC5 15.03.06.47. It has been classified as critical. Affected is the function formSet...
CVE-2025-5862CRITICAL9.8A vulnerability was found in Tenda AC7 15.03.06.44 and classified as critical. This issue affects the function formSetPP...
CVE-2025-5861CRITICAL9.8A vulnerability has been found in Tenda AC7 15.03.06.44 and classified as critical. This vulnerability affects the funct...
CVE-2025-5860CRITICAL9.8A vulnerability, which was classified as critical, was found in PHPGurukul Maid Hiring Management System 1.0. This affec...
CVE-2025-5856CRITICAL9.8A vulnerability has been found in PHPGurukul BP Monitoring Management System 1.0 and classified as critical. This vulner...
CVE-2025-5855CRITICAL9.8A vulnerability, which was classified as critical, was found in Tenda AC6 15.03.05.16. This affects the function formSet...
CVE-2025-3461CRITICAL9.8The Quantenna Wi-Fi chips ship with an unauthenticated telnet interface by default. This is an instance of CWE-306, "Mis...
CVE-2025-41646CRITICAL9.8An unauthorized remote attacker can bypass the authentication of the affected software package by misusing an incorrect ...
CVE-2025-27531CRITICAL9.8Deserialization of Untrusted Data vulnerability in Apache InLong.  This issue affects Apache InLong: from 1.13.0 before...
CVE-2025-5778CRITICAL9.8A vulnerability, which was classified as critical, was found in 1000 Projects ABC Courier Management System 1.0. Affecte...
CVE-2025-49073CRITICAL9.8Deserialization of Untrusted Data vulnerability in axiomthemes Sweet Dessert sweet-dessert allows Object Injection.This ...
CVE-2025-49072CRITICAL9.8Deserialization of Untrusted Data vulnerability in AncoraThemes Mr. Murphy mr-murphy allows Object Injection.This issue ...
CVE-2025-47586CRITICAL9Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2025-5759CRITICAL9.8A vulnerability classified as critical was found in PHPGurukul Local Services Search Engine Management System 2.1. This ...
CVE-2025-5756CRITICAL9.8A vulnerability was found in code-projects Real Estate Property Management System 1.0. It has been declared as critical....
CVE-2025-48782CRITICAL9.8An unrestricted upload of file with dangerous type vulnerability in the upload file function of Soar Cloud HRD Human Res...
CVE-2025-48780CRITICAL9.8A deserialization of untrusted data vulnerability in the download file function of Soar Cloud HRD Human Resource Managem...
CVE-2025-3365CRITICAL9.8A missing protection against path traversal allows to access any file on the server.
CVE-2025-3322CRITICAL10An improper neutralization of inputs used in expression language allows remote code execution with the highest privilege...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now