2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-30392 | CRITICAL | 9.8 | 0.9% | Apr 30, 2025 | Improper authorization in Azure Bot Framework SDK allows an unauthorized attacker to elevate privileges over a network. |
| CVE-2025-30389 | CRITICAL | 9.8 | 0.7% | Apr 30, 2025 | Improper authorization in Azure Bot Framework SDK allows an unauthorized attacker to elevate privileges over a network. |
| CVE-2025-32974 | CRITICAL | 9 | 0.3% | Apr 30, 2025 | XWiki is a generic wiki platform. In versions starting from 15.9-rc-1 to before 15.10.8 and from 16.0.0-rc-1 to before 1... |
| CVE-2025-32973 | CRITICAL | 9 | 0.3% | Apr 30, 2025 | XWiki is a generic wiki platform. In versions starting from 15.9-rc-1 to before 15.10.12, from 16.0.0-rc-1 to before 16.... |
| CVE-2025-4121 | CRITICAL | 9.8 | 3.3% | Apr 30, 2025 | A vulnerability was found in Netgear JWNR2000v2 1.0.0.11. It has been declared as critical. Affected by this vulnerabili... |
| CVE-2025-4120 | CRITICAL | 9.8 | 0.8% | Apr 30, 2025 | A vulnerability was found in Netgear JWNR2000v2 1.0.0.11. It has been classified as critical. Affected is the function s... |
| CVE-2025-4118 | CRITICAL | 9.1 | 0.5% | Apr 30, 2025 | A vulnerability classified as critical has been found in Weitong Mall 1.0.0. This affects an unknown part of the file /h... |
| CVE-2025-45018 | CRITICAL | 9.8 | 0.5% | Apr 30, 2025 | A SQL Injection vulnerability was discovered in the foreigner-bwdates-reports-details.php file of PHPGurukul Park Ticket... |
| CVE-2025-45017 | CRITICAL | 9.8 | 0.6% | Apr 30, 2025 | A SQL injection vulnerability was discovered in edit-ticket.php of PHPGurukul Park Ticketing Management System v2.0. Thi... |
| CVE-2025-4117 | CRITICAL | 9.8 | 0.5% | Apr 30, 2025 | A vulnerability, which was classified as critical, was found in Netgear JWNR2000v2 1.0.0.11. This affects the function s... |
| CVE-2025-4116 | CRITICAL | 9.8 | 0.8% | Apr 30, 2025 | A vulnerability, which was classified as critical, has been found in Netgear JWNR2000v2 1.0.0.11. Affected by this issue... |
| CVE-2025-4115 | CRITICAL | 9.8 | 0.8% | Apr 30, 2025 | A vulnerability classified as critical was found in Netgear JWNR2000v2 1.0.0.11. Affected by this vulnerability is the f... |
| CVE-2025-4114 | CRITICAL | 9.8 | 0.8% | Apr 30, 2025 | A vulnerability classified as critical has been found in Netgear JWNR2000v2 1.0.0.11. Affected is the function check_lan... |
| CVE-2025-4112 | CRITICAL | 9.8 | 0.4% | Apr 30, 2025 | A vulnerability was found in PHPGurukul Student Record System 3.20. It has been declared as critical. This vulnerability... |
| CVE-2025-4108 | CRITICAL | 9.8 | 0.4% | Apr 30, 2025 | A vulnerability, which was classified as critical, was found in PHPGurukul Student Record System 3.20. Affected is an un... |
| CVE-2025-4125 | CRITICAL | 9.8 | 0.3% | Apr 30, 2025 | Delta Electronics ISPSoft version 3.20 is vulnerable to an Out-Of-Bounds Write vulnerability that could allow an attacke... |
| CVE-2025-4124 | CRITICAL | 9.8 | 0.3% | Apr 30, 2025 | Delta Electronics ISPSoft version 3.20 is vulnerable to an Out-Of-Bounds Write vulnerability that could allow an attacke... |
| CVE-2025-22884 | CRITICAL | 9.8 | 0.3% | Apr 30, 2025 | Delta Electronics ISPSoft version 3.20 is vulnerable to a Stack-Based buffer overflow vulnerability that could allow an ... |
| CVE-2025-22883 | CRITICAL | 9.8 | 0.3% | Apr 30, 2025 | Delta Electronics ISPSoft version 3.20 is vulnerable to an Out-Of-Bounds Write vulnerability that could allow an attacke... |
| CVE-2025-22882 | CRITICAL | 9.8 | 0.3% | Apr 30, 2025 | Delta Electronics ISPSoft version 3.20 is vulnerable to a Stack-Based buffer overflow vulnerability that could allow an ... |
| CVE-2025-32444 | CRITICAL | 9.8 | 1.5% | Apr 30, 2025 | vLLM is a high-throughput and memory-efficient inference and serving engine for LLMs. Versions starting from 0.6.5 and p... |
| CVE-2025-46348 | CRITICAL | 9.8 | 0.6% | Apr 29, 2025 | YesWiki is a wiki system written in PHP. Prior to version 4.5.4, the request to commence a site backup can be performed ... |
| CVE-2025-0520 | CRITICAL | 9.4 | 0.9% | Apr 29, 2025 | An unrestricted file upload vulnerability in ShowDoc caused by improper validation of file extension allows execution of... |
| CVE-2025-4079 | CRITICAL | 9.8 | 0.6% | Apr 29, 2025 | A vulnerability, which was classified as critical, was found in PCMan FTP Server up to 2.0.7. Affected is an unknown fun... |
| CVE-2025-4074 | CRITICAL | 9.8 | 0.5% | Apr 29, 2025 | A vulnerability was found in PHPGurukul Curfew e-Pass Management System 1.0. It has been declared as critical. Affected ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now