2025 CVE Vulnerabilities

45,145 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-5052CRITICAL9.8A vulnerability classified as critical was found in FreeFloat FTP Server 1.0. Affected by this vulnerability is an unkno...
CVE-2025-5051CRITICAL9.8A vulnerability classified as critical has been found in FreeFloat FTP Server 1.0. Affected is an unknown function of th...
CVE-2025-46412CRITICAL9.8Affected Vertiv products do not properly protect webserver functions that could allow an attacker to bypass authenticati...
CVE-2025-41426CRITICAL9.8Affected Vertiv products contain a stack based buffer overflow vulnerability. An attacker could exploit this vulnerabili...
CVE-2025-36535CRITICAL10The embedded web server lacks authentication and access controls, allowing unrestricted remote access. This could lead t...
CVE-2025-5050CRITICAL9.8A vulnerability was found in FreeFloat FTP Server 1.0. It has been rated as critical. This issue affects some unknown pr...
CVE-2025-5049CRITICAL9.8A vulnerability was found in FreeFloat FTP Server 1.0. It has been declared as critical. This vulnerability affects unkn...
CVE-2025-44083CRITICAL9.8An issue in D-Link DI-8100 16.07.26A1 allows a remote attacker to bypass administrator login authentication
CVE-2025-27558CRITICAL9.1IEEE P802.11-REVme D1.1 through D7.0 allows FragAttacks against mesh networks. In mesh networks using Wi-Fi Protected Ac...
CVE-2025-5032CRITICAL9.8A vulnerability classified as critical has been found in Campcodes Online Shopping Portal 1.0. Affected is an unknown fu...
CVE-2025-20242CRITICAL9.1A vulnerability in the Cloud Connect component of Cisco Unified Contact Center Enterprise (CCE) could allow an unauthent...
CVE-2025-48200CRITICAL10The sr_feuser_register extension through 12.4.8 for TYPO3 allows Remote Code Execution.
CVE-2025-41232CRITICAL9.1Spring Security Aspects may not correctly locate method security annotations on private methods. This can cause an autho...
CVE-2025-4524CRITICAL9.8The Madara – Responsive and modern WordPress theme for manga sites theme for WordPress is vulnerable to Local File Inclu...
CVE-2025-4094CRITICAL9.8The DIGITS: WordPress Mobile Number Signup and Login WordPress plugin before 8.4.6.1 does not rate limit OTP validation ...
CVE-2025-5008CRITICAL9.8A vulnerability was found in projectworlds Online Time Table Generator 1.0. It has been rated as critical. Affected by t...
CVE-2025-5006CRITICAL9.8A vulnerability was found in Campcodes Online Shopping Portal 1.0. It has been classified as critical. Affected is an un...
CVE-2025-5004CRITICAL9.8A vulnerability was found in projectworlds Online Time Table Generator 1.0 and classified as critical. This issue affect...
CVE-2025-5003CRITICAL9.8A vulnerability has been found in projectworlds Online Time Table Generator 1.0 and classified as critical. This vulnera...
CVE-2025-5002CRITICAL9.8A vulnerability, which was classified as critical, was found in SourceCodester Client Database Management System 1.0. Th...
CVE-2025-5000CRITICAL9.8A vulnerability was found in Linksys FGW3000-AH and FGW3000-HK up to 1.0.17.000000. It has been classified as critical. ...
CVE-2025-4999CRITICAL9.8A vulnerability was found in Linksys FGW3000-AH and FGW3000-HK up to 1.0.17.000000 and classified as critical. Affected ...
CVE-2025-44898CRITICAL9.8FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the theauthName parameter in the web_aaa_logi...
CVE-2025-44897CRITICAL9.8FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the bytftp_srvip parameter in the web_tool_up...
CVE-2025-44896CRITICAL9.8FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the bindEditMACName parameter in the web_acl_...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now