2025 CVE Vulnerabilities

45,325 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-28200CRITICAL9.8Victure RX1800 EN_V1.0.0_r12_110933 was discovered to utilize a weak default password which includes the last 8 digits o...
CVE-2025-45887CRITICAL9.1Yifang CMS v2.0.2 is vulnerable to Server-Side Request Forgery (SSRF) in /api/file/getRemoteContent.
CVE-2025-45885CRITICAL9.8PHPGURUKUL Vehicle Parking Management System v1.13 is vulnerable to SQL injection in the /vpms/users/login.php file. Att...
CVE-2025-1087CRITICAL9.3Kong Insomnia Desktop Application before 11.0.2 contains a template injection vulnerability that allows attackers to exe...
CVE-2025-4403CRITICAL9.8The Drag and Drop Multiple File Upload for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads in a...
CVE-2025-4468CRITICAL9.8A vulnerability was found in SourceCodester Online Student Clearance System 1.0. It has been rated as critical. This iss...
CVE-2025-4467CRITICAL9.8A vulnerability was found in SourceCodester Online Student Clearance System 1.0. It has been declared as critical. This ...
CVE-2025-3605CRITICAL9.8The Frontend Login and Registration Blocks plugin for WordPress is vulnerable to privilege escalation via account takeov...
CVE-2025-2253CRITICAL9.8The IMITHEMES Listing plugin is vulnerable to privilege escalation via account takeover in all versions up to, and inclu...
CVE-2025-4466CRITICAL9.8A vulnerability was found in itsourcecode Gym Management System 1.0. It has been classified as critical. This affects an...
CVE-2025-4465CRITICAL9.8A vulnerability was found in itsourcecode Gym Management System 1.0 and classified as critical. Affected by this issue i...
CVE-2025-4464CRITICAL9.8A vulnerability has been found in itsourcecode Gym Management System 1.0 and classified as critical. Affected by this vu...
CVE-2025-3463CRITICAL9.4"This issue is limited to motherboards and does not affect laptops, desktop computers, or other endpoints." An insuffici...
CVE-2025-4463CRITICAL9.8A vulnerability, which was classified as critical, was found in itsourcecode Gym Management System 1.0. Affected is an u...
CVE-2025-47737CRITICAL9.8lib.rs in the trailer crate through 0.1.2 for Rust mishandles allocating with a size of zero.
CVE-2025-47735CRITICAL9.8inner::drop in inner.rs in the wgp crate through 0.2.0 for Rust lacks drop_slow thread synchronization.
CVE-2025-4457CRITICAL9.8A vulnerability classified as critical was found in Project Worlds Car Rental Project 1.0. Affected by this vulnerabilit...
CVE-2025-4456CRITICAL9.8A vulnerability classified as critical has been found in Project Worlds Car Rental Project 1.0. Affected is an unknown f...
CVE-2025-3714CRITICAL9.8The LCD KVM over IP Switch CL5708IM has a Stack-based Buffer Overflow vulnerability in firmware versions prior to v2.2.2...
CVE-2025-3711CRITICAL9.8The LCD KVM over IP Switch CL5708IM has a Stack-based Buffer Overflow vulnerability in firmware versions prior to v2.2.2...
CVE-2025-3710CRITICAL9.8The LCD KVM over IP Switch CL5708IM has a Stack-based Buffer Overflow vulnerability in firmware versions prior to v2.2.2...
CVE-2025-4454CRITICAL9.8A vulnerability was found in D-Link DIR-619L 2.04B04. It has been declared as critical. This vulnerability affects the f...
CVE-2025-4453CRITICAL9.8A vulnerability was found in D-Link DIR-619L 2.04B04. It has been classified as critical. This affects the function form...
CVE-2025-3811CRITICAL9.8The WPBookit plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and ...
CVE-2025-3810CRITICAL9.8The WPBookit plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now