2025 CVE Vulnerabilities
45,325 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-4005 | CRITICAL | 9.8 | 0.4% | Apr 28, 2025 | A vulnerability was found in PHPGurukul COVID19 Testing Management System 1.0. It has been rated as critical. This issue... |
| CVE-2025-4004 | CRITICAL | 9.8 | 0.4% | Apr 28, 2025 | A vulnerability was found in PHPGurukul COVID19 Testing Management System 1.0. It has been declared as critical. This vu... |
| CVE-2025-3998 | CRITICAL | 9.8 | 0.4% | Apr 28, 2025 | A vulnerability classified as critical was found in CodeAstro Membership Management System 1.0. This vulnerability affec... |
| CVE-2025-26692 | CRITICAL | 9.2 | 0.8% | Apr 28, 2025 | Quick Agent V3 and Quick Agent V2 contain an issue with improper limitation of a pathname to a restricted directory ('Pa... |
| CVE-2025-3976 | CRITICAL | 9.8 | 0.4% | Apr 27, 2025 | A vulnerability was found in PHPGurukul COVID19 Testing Management System 1.0. It has been classified as critical. Affec... |
| CVE-2025-3974 | CRITICAL | 9.8 | 0.4% | Apr 27, 2025 | A vulnerability has been found in PHPGurukul COVID19 Testing Management System 1.0 and classified as critical. This vuln... |
| CVE-2025-3973 | CRITICAL | 9.8 | 0.4% | Apr 27, 2025 | A vulnerability, which was classified as critical, was found in PHPGurukul COVID19 Testing Management System 1.0. This a... |
| CVE-2025-3972 | CRITICAL | 9.8 | 0.4% | Apr 27, 2025 | A vulnerability, which was classified as critical, has been found in PHPGurukul COVID19 Testing Management System 1.0. A... |
| CVE-2025-3971 | CRITICAL | 9.8 | 0.4% | Apr 27, 2025 | A vulnerability classified as critical was found in PHPGurukul COVID19 Testing Management System 1.0. Affected by this v... |
| CVE-2025-3969 | CRITICAL | 9.8 | 0.4% | Apr 27, 2025 | A vulnerability was found in codeprojects News Publishing Site Dashboard 1.0. It has been rated as critical. This issue ... |
| CVE-2025-3963 | CRITICAL | 9.8 | 0.5% | Apr 27, 2025 | A vulnerability, which was classified as critical, has been found in withstars Books-Management-System 1.0. This issue a... |
| CVE-2025-3960 | CRITICAL | 9.8 | 0.5% | Apr 27, 2025 | A vulnerability was found in withstars Books-Management-System 1.0. It has been rated as critical. Affected by this issu... |
| CVE-2025-3957 | CRITICAL | 9.8 | 0.4% | Apr 27, 2025 | A vulnerability was found in opplus springboot-admin 1.0 and classified as critical. This issue affects some unknown pro... |
| CVE-2025-3956 | CRITICAL | 9.8 | 0.4% | Apr 27, 2025 | A vulnerability has been found in 201206030 novel-cloud 1.4.0 and classified as critical. This vulnerability affects the... |
| CVE-2025-46674 | CRITICAL | 9.9 | 0.5% | Apr 27, 2025 | NASA CryptoLib before 1.3.2 uses Extended Procedures that are a Work in Progress (not intended for use during flight), p... |
| CVE-2025-46673 | CRITICAL | 9.9 | 0.4% | Apr 27, 2025 | NASA CryptoLib before 1.3.2 does not check whether the SA is in an operational state before use, possibly leading to a b... |
| CVE-2025-2907 | CRITICAL | 9.8 | 1.3% | Apr 26, 2025 | The Order Delivery Date WordPress plugin before 12.3.1 does not have authorization and CSRF checks when importing settin... |
| CVE-2025-32985 | CRITICAL | 9.8 | 0.4% | Apr 25, 2025 | NETSCOUT nGeniusONE before 6.4.0 b2350 has Hardcoded Credentials that can be obtained from JAR files. |
| CVE-2025-32980 | CRITICAL | 9.8 | 0.4% | Apr 25, 2025 | NETSCOUT nGeniusONE before 6.4.0 P11 b3245 has a Weak Sudo Configuration. |
| CVE-2025-25775 | CRITICAL | 9.8 | 0.5% | Apr 25, 2025 | Codeastro Bus Ticket Booking System v1.0 is vulnerable to SQL injection via the kodetiket parameter in /BusTicket-CI/tik... |
| CVE-2025-46433 | CRITICAL | 9.8 | 0.4% | Apr 25, 2025 | In JetBrains TeamCity before 2025.03.1 improper path validation in loggingPreset parameter was possible |
| CVE-2025-32432 | CRITICAL | 10 | 99.8% | Apr 25, 2025 | Craft is a flexible, user-friendly CMS for creating custom digital experiences on the web and beyond. Starting from vers... |
| CVE-2025-2470 | CRITICAL | 9.8 | 0.4% | Apr 25, 2025 | The Service Finder Bookings plugin for WordPress, used by the Service Finder - Directory and Job Board WordPress Theme, ... |
| CVE-2025-46616 | CRITICAL | 9.9 | 0.6% | Apr 25, 2025 | Quantum StorNext Web GUI API before 7.2.4 allows potential Arbitrary Remote Code Execution (RCE) via upload of a file. T... |
| CVE-2025-46275 | CRITICAL | 9.8 | 0.5% | Apr 24, 2025 | WGS-80HPT-V2 and WGS-4215-8T2S are missing authentication that could allow an attacker to create an administrator accou... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now