2025 CVE Vulnerabilities
45,325 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-47945 | CRITICAL | 9.8 | 0.6% | May 17, 2025 | Donetick an open-source app for managing tasks and chores. Prior to version 0.1.44, the application uses JSON Web Tokens... |
| CVE-2025-48187 | CRITICAL | 9.8 | 0.5% | May 17, 2025 | RAGFlow through 0.18.1 allows account takeover because it is possible to conduct successful brute-force attacks against ... |
| CVE-2025-4391 | CRITICAL | 9.8 | 0.6% | May 17, 2025 | The Echo RSS Feed Post Generator plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type v... |
| CVE-2025-4389 | CRITICAL | 9.8 | 0.9% | May 17, 2025 | The Crawlomatic Multipage Scraper Post Generator plugin for WordPress is vulnerable to arbitrary file uploads due to mis... |
| CVE-2025-4818 | CRITICAL | 9.8 | 0.4% | May 17, 2025 | A vulnerability was found in SourceCodester Doctor's Appointment System 1.0. It has been rated as critical. This issue a... |
| CVE-2025-4817 | CRITICAL | 9.8 | 0.4% | May 17, 2025 | A vulnerability was found in Sourcecodester Doctor's Appointment System 1.0. It has been declared as critical. This vuln... |
| CVE-2025-4816 | CRITICAL | 9.8 | 0.4% | May 17, 2025 | A vulnerability was found in SourceCodester Doctor's Appointment System 1.0. It has been classified as critical. This af... |
| CVE-2025-4815 | CRITICAL | 9.8 | 0.4% | May 17, 2025 | A vulnerability was found in Campcodes Sales and Inventory System 1.0 and classified as critical. Affected by this issue... |
| CVE-2025-4814 | CRITICAL | 9.8 | 0.4% | May 17, 2025 | A vulnerability has been found in Campcodes Sales and Inventory System 1.0 and classified as critical. Affected by this ... |
| CVE-2025-4813 | CRITICAL | 9.8 | 0.5% | May 16, 2025 | A vulnerability, which was classified as critical, was found in PHPGurukul Human Metapneumovirus Testing Management Syst... |
| CVE-2025-4812 | CRITICAL | 9.8 | 0.5% | May 16, 2025 | A vulnerability, which was classified as critical, has been found in PHPGurukul Human Metapneumovirus Testing Management... |
| CVE-2025-4811 | CRITICAL | 9.8 | 0.4% | May 16, 2025 | A vulnerability was found in CodeAstro Pharmacy Management System 1.0. It has been rated as critical. Affected by this i... |
| CVE-2025-4794 | CRITICAL | 9.8 | 0.5% | May 16, 2025 | A vulnerability was found in PHPGurukul Online Course Registration 3.1. It has been declared as critical. Affected by th... |
| CVE-2025-4793 | CRITICAL | 9.8 | 0.7% | May 16, 2025 | A vulnerability was found in PHPGurukul Online Course Registration 3.1. It has been classified as critical. Affected is ... |
| CVE-2025-4792 | CRITICAL | 9.8 | 0.6% | May 16, 2025 | A vulnerability was found in FreeFloat FTP Server 1.0 and classified as critical. This issue affects some unknown proces... |
| CVE-2025-4791 | CRITICAL | 9.8 | 0.6% | May 16, 2025 | A vulnerability has been found in FreeFloat FTP Server 1.0 and classified as critical. This vulnerability affects unknow... |
| CVE-2025-4790 | CRITICAL | 9.8 | 0.6% | May 16, 2025 | A vulnerability, which was classified as critical, was found in FreeFloat FTP Server 1.0. This affects an unknown part o... |
| CVE-2025-4789 | CRITICAL | 9.8 | 0.6% | May 16, 2025 | A vulnerability, which was classified as critical, has been found in FreeFloat FTP Server 1.0. Affected by this issue is... |
| CVE-2025-4788 | CRITICAL | 9.8 | 0.6% | May 16, 2025 | A vulnerability classified as critical was found in FreeFloat FTP Server 1.0. Affected by this vulnerability is an unkno... |
| CVE-2025-40906 | CRITICAL | 9.8 | 0.5% | May 16, 2025 | BSON::XS versions 0.8.4 and earlier for Perl includes a bundled libbson 1.1.7, which has several vulnerabilities. Those... |
| CVE-2025-39481 | CRITICAL | 9.8 | 0.4% | May 16, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in imithemes Eventer ... |
| CVE-2025-32643 | CRITICAL | 9.3 | 0.4% | May 16, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in mojoomla WPGYM all... |
| CVE-2025-4785 | CRITICAL | 9.8 | 0.6% | May 16, 2025 | A vulnerability was found in PHPGurukul Daily Expense Tracker System 1.1. It has been rated as critical. Affected by thi... |
| CVE-2025-47916 | CRITICAL | 9.8 | 79.2% | May 16, 2025 | Invision Community 5.0.0 before 5.0.7 allows remote code execution via crafted template strings to themeeditor.php. The ... |
| CVE-2025-4780 | CRITICAL | 9.8 | 0.3% | May 16, 2025 | A vulnerability was found in PHPGurukul Park Ticketing Management System 2.0. It has been rated as critical. This issue ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now