2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-4483 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | A vulnerability, which was classified as critical, has been found in itsourcecode Gym Management System 1.0. Affected by... |
| CVE-2025-4482 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | A vulnerability classified as critical was found in Project Worlds Student Project Allocation System 1.0. Affected by th... |
| CVE-2025-4481 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | A vulnerability was found in SourceCodester Apartment Visitor Management System 1.0. It has been rated as critical. This... |
| CVE-2025-46192 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | SourceCodester Client Database Management System 1.0 is vulnerable to SQL Injection in user_payment_update.php via the o... |
| CVE-2025-46191 | CRITICAL | 9.8 | 1.0% | May 9, 2025 | Arbitrary File Upload in user_payment_update.php in SourceCodester Client Database Management System 1.0 allows unauthen... |
| CVE-2025-46190 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | SourceCodester Client Database Management System 1.0 is vulnerable to SQL Injection in user_delivery_update.php via the ... |
| CVE-2025-46193 | CRITICAL | 9.8 | 0.6% | May 9, 2025 | SourceCodester Client Database Management System 1.0 is vulnerable to Remote code execution via Arbitrary file upload in... |
| CVE-2025-46189 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | SourceCodester Client Database Management System 1.0 is vulnerable to SQL Injection in user_order_customer_update.php vi... |
| CVE-2025-46188 | CRITICAL | 9.8 | 0.6% | May 9, 2025 | SourceCodester Client Database Management System 1.0 is vulnerable to SQL Injection in superadmin_phpmyadmin.php. |
| CVE-2025-45513 | CRITICAL | 9.8 | 0.5% | May 9, 2025 | Tenda FH451 V1.0.0.9 has a stack overflow vulnerability in the function.P2pListFilter. |
| CVE-2025-28200 | CRITICAL | 9.8 | 0.6% | May 9, 2025 | Victure RX1800 EN_V1.0.0_r12_110933 was discovered to utilize a weak default password which includes the last 8 digits o... |
| CVE-2025-45887 | CRITICAL | 9.1 | 0.4% | May 9, 2025 | Yifang CMS v2.0.2 is vulnerable to Server-Side Request Forgery (SSRF) in /api/file/getRemoteContent. |
| CVE-2025-45885 | CRITICAL | 9.8 | 0.4% | May 9, 2025 | PHPGURUKUL Vehicle Parking Management System v1.13 is vulnerable to SQL injection in the /vpms/users/login.php file. Att... |
| CVE-2025-1087 | CRITICAL | 9.3 | 1.0% | May 9, 2025 | Kong Insomnia Desktop Application before 11.0.2 contains a template injection vulnerability that allows attackers to exe... |
| CVE-2025-4403 | CRITICAL | 9.8 | 1.8% | May 9, 2025 | The Drag and Drop Multiple File Upload for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads in a... |
| CVE-2025-4468 | CRITICAL | 9.8 | 0.9% | May 9, 2025 | A vulnerability was found in SourceCodester Online Student Clearance System 1.0. It has been rated as critical. This iss... |
| CVE-2025-4467 | CRITICAL | 9.8 | 0.8% | May 9, 2025 | A vulnerability was found in SourceCodester Online Student Clearance System 1.0. It has been declared as critical. This ... |
| CVE-2025-3605 | CRITICAL | 9.8 | 6.4% | May 9, 2025 | The Frontend Login and Registration Blocks plugin for WordPress is vulnerable to privilege escalation via account takeov... |
| CVE-2025-2253 | CRITICAL | 9.8 | 0.7% | May 9, 2025 | The IMITHEMES Listing plugin is vulnerable to privilege escalation via account takeover in all versions up to, and inclu... |
| CVE-2025-4466 | CRITICAL | 9.8 | 0.8% | May 9, 2025 | A vulnerability was found in itsourcecode Gym Management System 1.0. It has been classified as critical. This affects an... |
| CVE-2025-4465 | CRITICAL | 9.8 | 0.8% | May 9, 2025 | A vulnerability was found in itsourcecode Gym Management System 1.0 and classified as critical. Affected by this issue i... |
| CVE-2025-4464 | CRITICAL | 9.8 | 0.8% | May 9, 2025 | A vulnerability has been found in itsourcecode Gym Management System 1.0 and classified as critical. Affected by this vu... |
| CVE-2025-3463 | CRITICAL | 9.4 | 0.8% | May 9, 2025 | "This issue is limited to motherboards and does not affect laptops, desktop computers, or other endpoints." An insuffici... |
| CVE-2025-4463 | CRITICAL | 9.8 | 0.8% | May 9, 2025 | A vulnerability, which was classified as critical, was found in itsourcecode Gym Management System 1.0. Affected is an u... |
| CVE-2025-47737 | CRITICAL | 9.8 | 0.5% | May 9, 2025 | lib.rs in the trailer crate through 0.1.2 for Rust mishandles allocating with a size of zero. |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now