2025 CVE Vulnerabilities

45,145 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-4847CRITICAL9.8A vulnerability has been found in FreeFloat FTP Server 1.0 and classified as critical. This vulnerability affects unknow...
CVE-2025-4846CRITICAL9.8A vulnerability, which was classified as critical, was found in FreeFloat FTP Server 1.0. This affects an unknown part o...
CVE-2025-4845CRITICAL9.8A vulnerability, which was classified as critical, has been found in FreeFloat FTP Server 1.0. Affected by this issue is...
CVE-2025-4844CRITICAL9.8A vulnerability classified as critical was found in FreeFloat FTP Server 1.0. Affected by this vulnerability is an unkno...
CVE-2025-4843CRITICAL9.8A vulnerability was found in D-Link DCS-932L 2.18.01. It has been classified as critical. This affects the function SubU...
CVE-2025-4842CRITICAL9.8A vulnerability was found in D-Link DCS-932L 2.18.01. It has been declared as critical. This vulnerability affects the f...
CVE-2025-4841CRITICAL9.8A vulnerability was found in D-Link DCS-932L 2.18.01 and classified as critical. Affected by this issue is the function ...
CVE-2025-4918CRITICAL9.8An attacker was able to perform an out-of-bounds read or write on a JavaScript `Promise` object. This vulnerability was ...
CVE-2025-4837CRITICAL9.8A vulnerability classified as critical has been found in projectworlds Student Project Allocation System 1.0. This affec...
CVE-2025-4836CRITICAL9.8A vulnerability was found in Projectworlds Life Insurance Management System 1.0. It has been rated as critical. Affected...
CVE-2025-47945CRITICAL9.8Donetick an open-source app for managing tasks and chores. Prior to version 0.1.44, the application uses JSON Web Tokens...
CVE-2025-48187CRITICAL9.8RAGFlow through 0.18.1 allows account takeover because it is possible to conduct successful brute-force attacks against ...
CVE-2025-4391CRITICAL9.8The Echo RSS Feed Post Generator plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type v...
CVE-2025-4389CRITICAL9.8The Crawlomatic Multipage Scraper Post Generator plugin for WordPress is vulnerable to arbitrary file uploads due to mis...
CVE-2025-4818CRITICAL9.8A vulnerability was found in SourceCodester Doctor's Appointment System 1.0. It has been rated as critical. This issue a...
CVE-2025-4817CRITICAL9.8A vulnerability was found in Sourcecodester Doctor's Appointment System 1.0. It has been declared as critical. This vuln...
CVE-2025-4816CRITICAL9.8A vulnerability was found in SourceCodester Doctor's Appointment System 1.0. It has been classified as critical. This af...
CVE-2025-4815CRITICAL9.8A vulnerability was found in Campcodes Sales and Inventory System 1.0 and classified as critical. Affected by this issue...
CVE-2025-4814CRITICAL9.8A vulnerability has been found in Campcodes Sales and Inventory System 1.0 and classified as critical. Affected by this ...
CVE-2025-4813CRITICAL9.8A vulnerability, which was classified as critical, was found in PHPGurukul Human Metapneumovirus Testing Management Syst...
CVE-2025-4812CRITICAL9.8A vulnerability, which was classified as critical, has been found in PHPGurukul Human Metapneumovirus Testing Management...
CVE-2025-4811CRITICAL9.8A vulnerability was found in CodeAstro Pharmacy Management System 1.0. It has been rated as critical. Affected by this i...
CVE-2025-4794CRITICAL9.8A vulnerability was found in PHPGurukul Online Course Registration 3.1. It has been declared as critical. Affected by th...
CVE-2025-4793CRITICAL9.8A vulnerability was found in PHPGurukul Online Course Registration 3.1. It has been classified as critical. Affected is ...
CVE-2025-4792CRITICAL9.8A vulnerability was found in FreeFloat FTP Server 1.0 and classified as critical. This issue affects some unknown proces...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now