2025 CVE Vulnerabilities

45,325 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-32291CRITICAL10Unrestricted Upload of File with Dangerous Type vulnerability in FantasticPlugins SUMO Affiliates Pro affs allows Using ...
CVE-2025-31429CRITICAL9.8Deserialization of Untrusted Data vulnerability in themeton PressGrid - Frontend Publish Reaction & Multimedia Theme all...
CVE-2025-31424CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in kamleshyadav WP Le...
CVE-2025-31398CRITICAL9.8Deserialization of Untrusted Data vulnerability in themeton PIMP - Creative MultiPurpose allows Object Injection. This i...
CVE-2025-31396CRITICAL9.8Deserialization of Untrusted Data vulnerability in themeton FLAP - Business WordPress Theme allows Object Injection. Thi...
CVE-2025-31059CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in woobewoo WBW Produ...
CVE-2025-31052CRITICAL9.8Deserialization of Untrusted Data vulnerability in themeton The Fashion - Model Agency One Page Beauty Theme nrgfashion ...
CVE-2025-31039CRITICAL9.1Improper Restriction of XML External Entity Reference vulnerability in pixelgrade Category Icon category-icon allows XML...
CVE-2025-31022CRITICAL9.8Authentication Bypass Using an Alternate Path or Channel vulnerability in PayU India PayU India payu-india allows Authen...
CVE-2025-24767CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in facturaone TicketB...
CVE-2025-5881CRITICAL9.8A vulnerability was found in code-projects Chat System up to 1.0 and classified as critical. This issue affects some unk...
CVE-2025-49131CRITICAL9.9FastGPT is an open-source project that provides a platform for building, deploying, and operating AI-driven workflows an...
CVE-2025-49013CRITICAL9.9WilderForge is a Wildermyth coremodding API. A critical vulnerability has been identified in multiple projects across th...
CVE-2025-48877CRITICAL9.8Discourse is an open-source discussion platform. Prior to version 3.4.4 of the `stable` branch, version 3.5.0.beta5 of t...
CVE-2025-3835CRITICAL9.6Zohocorp ManageEngine Exchange Reporter Plus versions 5721 and prior are vulnerable to Remote code execution in the Cont...
CVE-2025-5869CRITICAL9.8A vulnerability, which was classified as critical, was found in RT-Thread 5.1.0. Affected is the function sys_recvfrom o...
CVE-2025-5868CRITICAL9.8A vulnerability, which was classified as critical, has been found in RT-Thread 5.1.0. This issue affects the function sy...
CVE-2025-5867CRITICAL9.8A vulnerability classified as critical was found in RT-Thread 5.1.0. This vulnerability affects the function csys_sendto...
CVE-2025-5893CRITICAL9.8Smart Parking Management System from Honding Technology has an Exposure of Sensitive Information vulnerability, allowing...
CVE-2025-5866CRITICAL9.8A vulnerability classified as critical has been found in RT-Thread 5.1.0. This affects the function sys_sigprocmask of t...
CVE-2025-5865CRITICAL9.8A vulnerability was found in RT-Thread 5.1.0. It has been rated as critical. Affected by this issue is the function sys_...
CVE-2025-5863CRITICAL9.8A vulnerability was found in Tenda AC5 15.03.06.47. It has been classified as critical. Affected is the function formSet...
CVE-2025-5862CRITICAL9.8A vulnerability was found in Tenda AC7 15.03.06.44 and classified as critical. This issue affects the function formSetPP...
CVE-2025-5861CRITICAL9.8A vulnerability has been found in Tenda AC7 15.03.06.44 and classified as critical. This vulnerability affects the funct...
CVE-2025-5860CRITICAL9.8A vulnerability, which was classified as critical, was found in PHPGurukul Maid Hiring Management System 1.0. This affec...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now