2025 CVE Vulnerabilities
45,144 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-5869 | CRITICAL | 9.8 | 0.7% | Jun 9, 2025 | A vulnerability, which was classified as critical, was found in RT-Thread 5.1.0. Affected is the function sys_recvfrom o... |
| CVE-2025-5868 | CRITICAL | 9.8 | 1.0% | Jun 9, 2025 | A vulnerability, which was classified as critical, has been found in RT-Thread 5.1.0. This issue affects the function sy... |
| CVE-2025-5867 | CRITICAL | 9.8 | 1.0% | Jun 9, 2025 | A vulnerability classified as critical was found in RT-Thread 5.1.0. This vulnerability affects the function csys_sendto... |
| CVE-2025-5893 | CRITICAL | 9.8 | 0.4% | Jun 9, 2025 | Smart Parking Management System from Honding Technology has an Exposure of Sensitive Information vulnerability, allowing... |
| CVE-2025-5866 | CRITICAL | 9.8 | 0.7% | Jun 9, 2025 | A vulnerability classified as critical has been found in RT-Thread 5.1.0. This affects the function sys_sigprocmask of t... |
| CVE-2025-5865 | CRITICAL | 9.8 | 0.8% | Jun 9, 2025 | A vulnerability was found in RT-Thread 5.1.0. It has been rated as critical. Affected by this issue is the function sys_... |
| CVE-2025-5863 | CRITICAL | 9.8 | 0.8% | Jun 9, 2025 | A vulnerability was found in Tenda AC5 15.03.06.47. It has been classified as critical. Affected is the function formSet... |
| CVE-2025-5862 | CRITICAL | 9.8 | 0.8% | Jun 9, 2025 | A vulnerability was found in Tenda AC7 15.03.06.44 and classified as critical. This issue affects the function formSetPP... |
| CVE-2025-5861 | CRITICAL | 9.8 | 4.5% | Jun 9, 2025 | A vulnerability has been found in Tenda AC7 15.03.06.44 and classified as critical. This vulnerability affects the funct... |
| CVE-2025-5860 | CRITICAL | 9.8 | 0.4% | Jun 9, 2025 | A vulnerability, which was classified as critical, was found in PHPGurukul Maid Hiring Management System 1.0. This affec... |
| CVE-2025-5856 | CRITICAL | 9.8 | 0.4% | Jun 9, 2025 | A vulnerability has been found in PHPGurukul BP Monitoring Management System 1.0 and classified as critical. This vulner... |
| CVE-2025-5855 | CRITICAL | 9.8 | 0.8% | Jun 9, 2025 | A vulnerability, which was classified as critical, was found in Tenda AC6 15.03.05.16. This affects the function formSet... |
| CVE-2025-3461 | CRITICAL | 9.8 | 0.5% | Jun 8, 2025 | The Quantenna Wi-Fi chips ship with an unauthenticated telnet interface by default. This is an instance of CWE-306, "Mis... |
| CVE-2025-41646 | CRITICAL | 9.8 | 40.7% | Jun 6, 2025 | An unauthorized remote attacker can bypass the authentication of the affected software package by misusing an incorrect ... |
| CVE-2025-27531 | CRITICAL | 9.8 | 0.6% | Jun 6, 2025 | Deserialization of Untrusted Data vulnerability in Apache InLong. This issue affects Apache InLong: from 1.13.0 before... |
| CVE-2025-5778 | CRITICAL | 9.8 | 0.4% | Jun 6, 2025 | A vulnerability, which was classified as critical, was found in 1000 Projects ABC Courier Management System 1.0. Affecte... |
| CVE-2025-49073 | CRITICAL | 9.8 | 0.4% | Jun 6, 2025 | Deserialization of Untrusted Data vulnerability in axiomthemes Sweet Dessert sweet-dessert allows Object Injection.This ... |
| CVE-2025-49072 | CRITICAL | 9.8 | 0.4% | Jun 6, 2025 | Deserialization of Untrusted Data vulnerability in AncoraThemes Mr. Murphy mr-murphy allows Object Injection.This issue ... |
| CVE-2025-47586 | CRITICAL | 9 | 0.5% | Jun 6, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-5759 | CRITICAL | 9.8 | 0.4% | Jun 6, 2025 | A vulnerability classified as critical was found in PHPGurukul Local Services Search Engine Management System 2.1. This ... |
| CVE-2025-5756 | CRITICAL | 9.8 | 0.5% | Jun 6, 2025 | A vulnerability was found in code-projects Real Estate Property Management System 1.0. It has been declared as critical.... |
| CVE-2025-48782 | CRITICAL | 9.8 | 0.4% | Jun 6, 2025 | An unrestricted upload of file with dangerous type vulnerability in the upload file function of Soar Cloud HRD Human Res... |
| CVE-2025-48780 | CRITICAL | 9.8 | 0.5% | Jun 6, 2025 | A deserialization of untrusted data vulnerability in the download file function of Soar Cloud HRD Human Resource Managem... |
| CVE-2025-3365 | CRITICAL | 9.8 | 0.5% | Jun 6, 2025 | A missing protection against path traversal allows to access any file on the server. |
| CVE-2025-3322 | CRITICAL | 10 | 0.6% | Jun 6, 2025 | An improper neutralization of inputs used in expression language allows remote code execution with the highest privilege... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now