2025 CVE Vulnerabilities

45,324 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-14982MEDIUM4.3The Booking Calendar plugin for WordPress is vulnerable to Missing Authorization leading to Sensitive Information Exposu...
CVE-2025-14384MEDIUM4.3The All in One SEO – Powerful SEO Plugin to Boost SEO Rankings & Increase Traffic plugin for WordPress is vulnerable to ...
CVE-2025-12957HIGH8.8The All-in-One Video Gallery plugin for WordPress is vulnerable to arbitrary file upload in all versions up to, and incl...
CVE-2025-12641MEDIUM6.5The Awesome Support - WordPress HelpDesk & Support Plugin for WordPress is vulnerable to authorization bypass due to mis...
CVE-2025-62582CRITICAL9.8Delta Electronics DIAView has multiple vulnerabilities.
CVE-2025-62581CRITICAL9.8Delta Electronics DIAView has multiple vulnerabilities.
CVE-2025-65118CRITICAL9.3The vulnerability, if exploited, could allow an authenticated miscreant (OS Standard User) to trick Process Optimizatio...
CVE-2025-65117HIGH7.7The vulnerability, if exploited, could allow an authenticated miscreant (Process Optimization Designer User) to embed O...
CVE-2025-64769HIGH7.6The Process Optimization application suite leverages connection channels/protocols that by-default are not encrypted an...
CVE-2025-64729HIGH8.2The vulnerability, if exploited, could allow an authenticated miscreant (OS Standard User) to tamper with Process Optim...
CVE-2025-64691CRITICAL9.3The vulnerability, if exploited, could allow an authenticated miscreant (OS standard user) to tamper with TCL Macro scr...
CVE-2025-61943HIGH7.8The vulnerability, if exploited, could allow an authenticated miscreant (Process Optimization Standard User) to tamper ...
CVE-2025-61937CRITICAL10The vulnerability, if exploited, could allow an unauthenticated miscreant to achieve remote code execution under OS sys...
CVE-2025-14237CRITICAL9.8Buffer overflow in XPS font parse processing on Small Office Multifunction Printers and Laser Printers(*) which may allo...
CVE-2025-14236CRITICAL9.8Buffer overflow in Address Book attribute tag processing on Small Office Multifunction Printers(*) which may allow an at...
CVE-2025-14235CRITICAL9.8Buffer overflow in XPS font fpgm data processing on Small Office Multifunction Printers and Laser Printers(*) which may ...
CVE-2025-14234CRITICAL9.8Buffer overflow in CPCA list processing on Small Office Multifunction Printers and Laser Printers(*) which may allow an ...
CVE-2025-14233CRITICAL9.8Invalid free in CPCA file deletion processing on Small Office Multifunction Printers and Laser Printers(*) which may all...
CVE-2025-14232CRITICAL9.8Buffer overflow in XML processing of XPS file in Small Office Multifunction Printers and Laser Printers(*) which may all...
CVE-2025-14231CRITICAL9.8Buffer overflow in print job processing by WSD on Small Office Multifunction Printers and Laser Printers(*) which may al...
CVE-2025-68671MEDIUM4.8lakeFS is an open-source tool that transforms object storage into a Git-like repositories. LakeFS's S3 gateway does not ...
CVE-2025-67823HIGH8.2A vulnerability in the Multimedia Email component of Mitel MiContact Center Business through 10.2.0.10 and Mitel CX thro...
CVE-2025-67822CRITICAL9.4A vulnerability in the Provisioning Manager component of Mitel MiVoice MX-ONE 7.3 (7.3.0.0.50) through 7.8 SP1 (7.8.1.0....
CVE-2025-70893HIGH8.8A time-based blind SQL Injection vulnerability exists in PHPGurukul Cyber Cafe Management System v1.0 within the adminpr...
CVE-2025-70892CRITICAL9.8Phpgurukul Cyber Cafe Management System v1.0 contains a SQL Injection vulnerability in the user management module. The a...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now