2025 CVE Vulnerabilities

45,145 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-40671CRITICAL9.3SQL injection vulnerability in AES Multimedia's Gestnet v1.07. This vulnerability allows an attacker to retrieve, create...
CVE-2025-35003CRITICAL9.8Improper Restriction of Operations within the Bounds of a Memory Buffer and Stack-based Buffer Overflow vulnerabilities ...
CVE-2025-5176CRITICAL9.1A vulnerability was found in Realce Tecnologia Queue Ticket Kiosk up to 20250517. It has been declared as critical. This...
CVE-2025-5172CRITICAL9.8A vulnerability, which was classified as critical, was found in Econtrata up to 20250516. Affected is an unknown functio...
CVE-2025-5171CRITICAL9.8A vulnerability, which was classified as critical, has been found in llisoft MTA Maita Training System 4.5. This issue a...
CVE-2025-5170CRITICAL9.8A vulnerability classified as critical was found in llisoft MTA Maita Training System 4.5. This vulnerability affects th...
CVE-2025-5162CRITICAL9.8A vulnerability, which was classified as critical, has been found in H3C SecCenter SMP-E1114P02 up to 20250513. Affected...
CVE-2025-2146CRITICAL9.8Buffer overflow in WebService Authentication processing of Small Office Multifunction Printers and Laser Printers(*) whi...
CVE-2025-5156CRITICAL9.8A vulnerability was found in H3C GR-5400AX up to 100R008 and classified as critical. Affected by this issue is the funct...
CVE-2025-5128CRITICAL9.8A vulnerability, which was classified as critical, was found in ScriptAndTools Real-Estate-website-in-PHP 1.0. Affected ...
CVE-2025-5124CRITICAL9.2A vulnerability classified as critical has been found in Sony SNC-M1, SNC-M3, SNC-RZ25N, SNC-RZ30N, SNC-DS10, SNC-CS3N a...
CVE-2025-5058CRITICAL9.8The eMagicOne Store Manager for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing ...
CVE-2025-4603CRITICAL9.1The eMagicOne Store Manager for WooCommerce plugin for WordPress is vulnerable to arbitrary file deletion due to insuffi...
CVE-2025-4336CRITICAL9.8The eMagicOne Store Manager for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing ...
CVE-2025-48756CRITICAL9.8In group_number in the scsir crate 0.2.0 for Rust, there can be an overflow because a hardware device may expect a small...
CVE-2025-48755CRITICAL9.8In the spiral-rs crate 0.2.0 for Rust, allocation can be attempted for a ZST (zero-sized type).
CVE-2025-48753CRITICAL9.8In the anode crate 0.1.0 for Rust, data races can occur in unlock in SpinLock.
CVE-2025-48752CRITICAL9.8In the process-sync crate 0.2.2 for Rust, the drop function lacks a check for whether the pthread_mutex is unlocked.
CVE-2025-48751CRITICAL9.8The process_lock crate 0.1.0 for Rust allows data races in unlock.
CVE-2025-5119CRITICAL9.8A vulnerability has been found in Emlog Pro 2.5.11 and classified as critical. This vulnerability affects unknown code o...
CVE-2025-5114CRITICAL9.1A vulnerability has been found in easysoft zentaopms 21.5_20250307 and classified as critical. This vulnerability affect...
CVE-2025-5112CRITICAL9.8A vulnerability, which was classified as critical, was found in FreeFloat FTP Server 1.0. This affects an unknown part o...
CVE-2025-5111CRITICAL9.8A vulnerability, which was classified as critical, has been found in FreeFloat FTP Server 1.0. Affected by this issue is...
CVE-2025-5110CRITICAL9.8A vulnerability classified as critical was found in FreeFloat FTP Server 1.0. Affected by this vulnerability is an unkno...
CVE-2025-5109CRITICAL9.8A vulnerability classified as critical has been found in FreeFloat FTP Server 1.0. Affected is an unknown function of th...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now