2025 CVE Vulnerabilities
45,325 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-32291 | CRITICAL | 10 | 0.4% | Jun 9, 2025 | Unrestricted Upload of File with Dangerous Type vulnerability in FantasticPlugins SUMO Affiliates Pro affs allows Using ... |
| CVE-2025-31429 | CRITICAL | 9.8 | 0.5% | Jun 9, 2025 | Deserialization of Untrusted Data vulnerability in themeton PressGrid - Frontend Publish Reaction & Multimedia Theme all... |
| CVE-2025-31424 | CRITICAL | 9.3 | 0.4% | Jun 9, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in kamleshyadav WP Le... |
| CVE-2025-31398 | CRITICAL | 9.8 | 0.5% | Jun 9, 2025 | Deserialization of Untrusted Data vulnerability in themeton PIMP - Creative MultiPurpose allows Object Injection. This i... |
| CVE-2025-31396 | CRITICAL | 9.8 | 0.5% | Jun 9, 2025 | Deserialization of Untrusted Data vulnerability in themeton FLAP - Business WordPress Theme allows Object Injection. Thi... |
| CVE-2025-31059 | CRITICAL | 9.3 | 0.4% | Jun 9, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in woobewoo WBW Produ... |
| CVE-2025-31052 | CRITICAL | 9.8 | 0.5% | Jun 9, 2025 | Deserialization of Untrusted Data vulnerability in themeton The Fashion - Model Agency One Page Beauty Theme nrgfashion ... |
| CVE-2025-31039 | CRITICAL | 9.1 | 0.5% | Jun 9, 2025 | Improper Restriction of XML External Entity Reference vulnerability in pixelgrade Category Icon category-icon allows XML... |
| CVE-2025-31022 | CRITICAL | 9.8 | 0.7% | Jun 9, 2025 | Authentication Bypass Using an Alternate Path or Channel vulnerability in PayU India PayU India payu-india allows Authen... |
| CVE-2025-24767 | CRITICAL | 9.3 | 0.4% | Jun 9, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in facturaone TicketB... |
| CVE-2025-5881 | CRITICAL | 9.8 | 0.4% | Jun 9, 2025 | A vulnerability was found in code-projects Chat System up to 1.0 and classified as critical. This issue affects some unk... |
| CVE-2025-49131 | CRITICAL | 9.9 | 0.4% | Jun 9, 2025 | FastGPT is an open-source project that provides a platform for building, deploying, and operating AI-driven workflows an... |
| CVE-2025-49013 | CRITICAL | 9.9 | 0.6% | Jun 9, 2025 | WilderForge is a Wildermyth coremodding API. A critical vulnerability has been identified in multiple projects across th... |
| CVE-2025-48877 | CRITICAL | 9.8 | 0.3% | Jun 9, 2025 | Discourse is an open-source discussion platform. Prior to version 3.4.4 of the `stable` branch, version 3.5.0.beta5 of t... |
| CVE-2025-3835 | CRITICAL | 9.6 | 1.9% | Jun 9, 2025 | Zohocorp ManageEngine Exchange Reporter Plus versions 5721 and prior are vulnerable to Remote code execution in the Cont... |
| CVE-2025-5869 | CRITICAL | 9.8 | 0.7% | Jun 9, 2025 | A vulnerability, which was classified as critical, was found in RT-Thread 5.1.0. Affected is the function sys_recvfrom o... |
| CVE-2025-5868 | CRITICAL | 9.8 | 1.0% | Jun 9, 2025 | A vulnerability, which was classified as critical, has been found in RT-Thread 5.1.0. This issue affects the function sy... |
| CVE-2025-5867 | CRITICAL | 9.8 | 1.0% | Jun 9, 2025 | A vulnerability classified as critical was found in RT-Thread 5.1.0. This vulnerability affects the function csys_sendto... |
| CVE-2025-5893 | CRITICAL | 9.8 | 0.4% | Jun 9, 2025 | Smart Parking Management System from Honding Technology has an Exposure of Sensitive Information vulnerability, allowing... |
| CVE-2025-5866 | CRITICAL | 9.8 | 0.7% | Jun 9, 2025 | A vulnerability classified as critical has been found in RT-Thread 5.1.0. This affects the function sys_sigprocmask of t... |
| CVE-2025-5865 | CRITICAL | 9.8 | 0.8% | Jun 9, 2025 | A vulnerability was found in RT-Thread 5.1.0. It has been rated as critical. Affected by this issue is the function sys_... |
| CVE-2025-5863 | CRITICAL | 9.8 | 0.8% | Jun 9, 2025 | A vulnerability was found in Tenda AC5 15.03.06.47. It has been classified as critical. Affected is the function formSet... |
| CVE-2025-5862 | CRITICAL | 9.8 | 0.8% | Jun 9, 2025 | A vulnerability was found in Tenda AC7 15.03.06.44 and classified as critical. This issue affects the function formSetPP... |
| CVE-2025-5861 | CRITICAL | 9.8 | 4.5% | Jun 9, 2025 | A vulnerability has been found in Tenda AC7 15.03.06.44 and classified as critical. This vulnerability affects the funct... |
| CVE-2025-5860 | CRITICAL | 9.8 | 0.4% | Jun 9, 2025 | A vulnerability, which was classified as critical, was found in PHPGurukul Maid Hiring Management System 1.0. This affec... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now