2025 CVE Vulnerabilities
45,325 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-4151 | CRITICAL | 9.8 | 0.4% | May 1, 2025 | A vulnerability was found in PHPGurukul Curfew e-Pass Management System 1.0. It has been rated as critical. This issue a... |
| CVE-2025-4150 | CRITICAL | 9.8 | 1.3% | May 1, 2025 | A vulnerability was found in Netgear EX6200 1.0.3.94. It has been declared as critical. This vulnerability affects the f... |
| CVE-2025-4149 | CRITICAL | 9.8 | 1.3% | May 1, 2025 | A vulnerability was found in Netgear EX6200 1.0.3.94. It has been classified as critical. This affects the function sub_... |
| CVE-2025-4148 | CRITICAL | 9.8 | 1.3% | May 1, 2025 | A vulnerability was found in Netgear EX6200 1.0.3.94 and classified as critical. Affected by this issue is the function ... |
| CVE-2025-4147 | CRITICAL | 9.8 | 0.9% | May 1, 2025 | A vulnerability has been found in Netgear EX6200 1.0.3.94 and classified as critical. Affected by this vulnerability is ... |
| CVE-2025-4146 | CRITICAL | 9.8 | 1.1% | May 1, 2025 | A vulnerability, which was classified as critical, was found in Netgear EX6200 1.0.3.94. Affected is the function sub_41... |
| CVE-2025-4145 | CRITICAL | 9.8 | 0.9% | May 1, 2025 | A vulnerability, which was classified as critical, has been found in Netgear EX6200 1.0.3.94. This issue affects the fun... |
| CVE-2025-4144 | CRITICAL | 9.8 | 0.5% | May 1, 2025 | PKCE was implemented in the OAuth implementation in workers-oauth-provider that is part of MCP framework https://github... |
| CVE-2025-4142 | CRITICAL | 9.8 | 0.9% | Apr 30, 2025 | A vulnerability has been found in Netgear EX6200 1.0.3.94 and classified as critical. This vulnerability affects the fun... |
| CVE-2025-4141 | CRITICAL | 9.8 | 0.9% | Apr 30, 2025 | A vulnerability, which was classified as critical, was found in Netgear EX6200 1.0.3.94. This affects the function sub_3... |
| CVE-2025-4140 | CRITICAL | 9.8 | 0.9% | Apr 30, 2025 | A vulnerability, which was classified as critical, has been found in Netgear EX6120 1.0.3.94. Affected by this issue is ... |
| CVE-2025-46558 | CRITICAL | 9 | 0.4% | Apr 30, 2025 | XWiki Contrib's Syntax Markdown allows importing Markdown content into wiki pages and creating wiki content in Markdown.... |
| CVE-2025-46557 | CRITICAL | 9.8 | 0.5% | Apr 30, 2025 | XWiki is a generic wiki platform. In versions starting from 15.3-rc-1 to before 15.10.14, from 16.0.0-rc-1 to before 16.... |
| CVE-2025-46331 | CRITICAL | 9.8 | 0.3% | Apr 30, 2025 | OpenFGA is a high-performance and flexible authorization/permission engine built for developers and inspired by Google Z... |
| CVE-2025-44192 | CRITICAL | 9.8 | 0.4% | Apr 30, 2025 | SourceCodester Simple Barangay Management System v1.0 has a SQL injection vulnerability in /barangay_management/admin/?p... |
| CVE-2025-30392 | CRITICAL | 9.8 | 0.9% | Apr 30, 2025 | Improper authorization in Azure Bot Framework SDK allows an unauthorized attacker to elevate privileges over a network. |
| CVE-2025-30389 | CRITICAL | 9.8 | 0.7% | Apr 30, 2025 | Improper authorization in Azure Bot Framework SDK allows an unauthorized attacker to elevate privileges over a network. |
| CVE-2025-32974 | CRITICAL | 9 | 0.3% | Apr 30, 2025 | XWiki is a generic wiki platform. In versions starting from 15.9-rc-1 to before 15.10.8 and from 16.0.0-rc-1 to before 1... |
| CVE-2025-32973 | CRITICAL | 9 | 0.3% | Apr 30, 2025 | XWiki is a generic wiki platform. In versions starting from 15.9-rc-1 to before 15.10.12, from 16.0.0-rc-1 to before 16.... |
| CVE-2025-4121 | CRITICAL | 9.8 | 3.3% | Apr 30, 2025 | A vulnerability was found in Netgear JWNR2000v2 1.0.0.11. It has been declared as critical. Affected by this vulnerabili... |
| CVE-2025-4120 | CRITICAL | 9.8 | 0.8% | Apr 30, 2025 | A vulnerability was found in Netgear JWNR2000v2 1.0.0.11. It has been classified as critical. Affected is the function s... |
| CVE-2025-4118 | CRITICAL | 9.1 | 0.5% | Apr 30, 2025 | A vulnerability classified as critical has been found in Weitong Mall 1.0.0. This affects an unknown part of the file /h... |
| CVE-2025-45018 | CRITICAL | 9.8 | 0.5% | Apr 30, 2025 | A SQL Injection vulnerability was discovered in the foreigner-bwdates-reports-details.php file of PHPGurukul Park Ticket... |
| CVE-2025-45017 | CRITICAL | 9.8 | 0.6% | Apr 30, 2025 | A SQL injection vulnerability was discovered in edit-ticket.php of PHPGurukul Park Ticketing Management System v2.0. Thi... |
| CVE-2025-4117 | CRITICAL | 9.8 | 0.5% | Apr 30, 2025 | A vulnerability, which was classified as critical, was found in Netgear JWNR2000v2 1.0.0.11. This affects the function s... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now