2025 CVE Vulnerabilities
45,325 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-20242 | CRITICAL | 9.1 | 2.3% | May 21, 2025 | A vulnerability in the Cloud Connect component of Cisco Unified Contact Center Enterprise (CCE) could allow an unauthent... |
| CVE-2025-48200 | CRITICAL | 10 | 0.6% | May 21, 2025 | The sr_feuser_register extension through 12.4.8 for TYPO3 allows Remote Code Execution. |
| CVE-2025-41232 | CRITICAL | 9.1 | 0.5% | May 21, 2025 | Spring Security Aspects may not correctly locate method security annotations on private methods. This can cause an autho... |
| CVE-2025-4524 | CRITICAL | 9.8 | 9.1% | May 21, 2025 | The Madara – Responsive and modern WordPress theme for manga sites theme for WordPress is vulnerable to Local File Inclu... |
| CVE-2025-4094 | CRITICAL | 9.8 | 16.4% | May 21, 2025 | The DIGITS: WordPress Mobile Number Signup and Login WordPress plugin before 8.4.6.1 does not rate limit OTP validation ... |
| CVE-2025-5008 | CRITICAL | 9.8 | 0.4% | May 20, 2025 | A vulnerability was found in projectworlds Online Time Table Generator 1.0. It has been rated as critical. Affected by t... |
| CVE-2025-5006 | CRITICAL | 9.8 | 0.4% | May 20, 2025 | A vulnerability was found in Campcodes Online Shopping Portal 1.0. It has been classified as critical. Affected is an un... |
| CVE-2025-5004 | CRITICAL | 9.8 | 0.4% | May 20, 2025 | A vulnerability was found in projectworlds Online Time Table Generator 1.0 and classified as critical. This issue affect... |
| CVE-2025-5003 | CRITICAL | 9.8 | 0.4% | May 20, 2025 | A vulnerability has been found in projectworlds Online Time Table Generator 1.0 and classified as critical. This vulnera... |
| CVE-2025-5002 | CRITICAL | 9.8 | 0.4% | May 20, 2025 | A vulnerability, which was classified as critical, was found in SourceCodester Client Database Management System 1.0. Th... |
| CVE-2025-5000 | CRITICAL | 9.8 | 10.5% | May 20, 2025 | A vulnerability was found in Linksys FGW3000-AH and FGW3000-HK up to 1.0.17.000000. It has been classified as critical. ... |
| CVE-2025-4999 | CRITICAL | 9.8 | 11.3% | May 20, 2025 | A vulnerability was found in Linksys FGW3000-AH and FGW3000-HK up to 1.0.17.000000 and classified as critical. Affected ... |
| CVE-2025-44898 | CRITICAL | 9.8 | 0.5% | May 20, 2025 | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the theauthName parameter in the web_aaa_logi... |
| CVE-2025-44897 | CRITICAL | 9.8 | 0.5% | May 20, 2025 | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the bytftp_srvip parameter in the web_tool_up... |
| CVE-2025-44896 | CRITICAL | 9.8 | 0.5% | May 20, 2025 | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the bindEditMACName parameter in the web_acl_... |
| CVE-2025-44894 | CRITICAL | 9.8 | 0.5% | May 20, 2025 | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the radDftParamKey parameter in the web_radiu... |
| CVE-2025-44891 | CRITICAL | 9.8 | 0.5% | May 20, 2025 | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the host_ip parameter in the web_snmp_v3host_... |
| CVE-2025-44883 | CRITICAL | 9.8 | 0.5% | May 20, 2025 | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the tacIp parameter in the web_tacplus_server... |
| CVE-2025-44882 | CRITICAL | 9.8 | 2.6% | May 20, 2025 | A command injection vulnerability in the component /cgi-bin/firewall.cgi of Wavlink WL-WN579A3 v1.0 allows attackers to ... |
| CVE-2025-44880 | CRITICAL | 9.8 | 2.6% | May 20, 2025 | A command injection vulnerability in the component /cgi-bin/adm.cgi of Wavlink WL-WN579A3 v1.0 allows attackers to execu... |
| CVE-2025-44893 | CRITICAL | 9.8 | 0.6% | May 20, 2025 | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the ruleNamekey parameter in the web_acl_mgmt... |
| CVE-2025-44890 | CRITICAL | 9.8 | 0.5% | May 20, 2025 | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the host_ip parameter in the web_snmp_notifyv... |
| CVE-2025-44888 | CRITICAL | 9.8 | 0.5% | May 20, 2025 | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the stp_conf_name parameter in the web_stp_gl... |
| CVE-2025-44887 | CRITICAL | 9.8 | 0.5% | May 20, 2025 | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the radIpkey parameter in the web_radiusSrv_p... |
| CVE-2025-44886 | CRITICAL | 9.8 | 0.5% | May 20, 2025 | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the byruleEditName parameter in the web_acl_m... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now