2025 CVE Vulnerabilities

45,325 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-1532CRITICAL9.1Phoneservice module is affected by code injection vulnerability, successful exploitation of this vulnerability may affec...
CVE-2025-3113CRITICAL9A valid, authenticated user with sufficient privileges and who is aware of Continuous Compliance’s internal database con...
CVE-2025-31340CRITICAL9.9A improper control of filename for include/require statement in PHP program vulnerability in the retrieve course Informa...
CVE-2025-0756CRITICAL9.1Overview   The product receives input from an upstream component, but it does not restrict or incorrectly restric...
CVE-2025-32433CRITICAL10Erlang/OTP is a set of libraries for the Erlang programming language. Prior to versions OTP-27.3.3, OTP-26.2.5.11, and O...
CVE-2025-3729CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Web-based Pharmacy Product Managemen...
CVE-2025-3727CRITICAL9.8A vulnerability classified as critical has been found in PCMan FTP Server 2.0.7. This affects an unknown part of the com...
CVE-2025-29709CRITICAL9.8SourceCodester Company Website CMS 1.0 has a File upload vulnerability via the "Create portfolio" file /dashboard/portfo...
CVE-2025-29708CRITICAL9.8SourceCodester Company Website CMS 1.0 contains a file upload vulnerability via the "Create Services" file /dashboard/Se...
CVE-2025-3726CRITICAL9.8A vulnerability was found in PCMan FTP Server 2.0.7. It has been rated as critical. Affected by this issue is some unkno...
CVE-2025-3725CRITICAL9.8A vulnerability was found in PCMan FTP Server 2.0.7. It has been declared as critical. Affected by this vulnerability is...
CVE-2025-3724CRITICAL9.8A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as critical. Affected is an unknown function...
CVE-2025-3723CRITICAL9.8A vulnerability was found in PCMan FTP Server 2.0.7 and classified as critical. This issue affects some unknown processi...
CVE-2025-31201CRITICAL9.8This issue was addressed by removing the vulnerable code. This issue is fixed in iOS 18.4.1 and iPadOS 18.4.1, macOS Seq...
CVE-2025-31200CRITICAL9.8A memory corruption issue was addressed with improved bounds checking. This issue is fixed in iOS 18.4.1 and iPadOS 18.4...
CVE-2025-2291CRITICAL9.8Password can be used past expiry in PgBouncer due to auth_query not taking into account Postgres its VALID UNTIL value, ...
CVE-2025-27540CRITICAL9.8A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v...
CVE-2025-27539CRITICAL9.8A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v...
CVE-2025-27495CRITICAL9.8A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v...
CVE-2025-3694CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Web-based Pharmacy Product Management System 1.0...
CVE-2025-22088CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: RDMA/erdma: Prevent use-after-free in erdma_accept_...
CVE-2025-3693CRITICAL9.8A vulnerability was found in Tenda W12 3.0.0.5. It has been rated as critical. Affected by this issue is the function cg...
CVE-2025-3690CRITICAL9.8A vulnerability was found in PHPGurukul Men Salon Management System 1.0 and classified as critical. This issue affects s...
CVE-2025-3689CRITICAL9.8A vulnerability has been found in PHPGurukul Men Salon Management System 1.0 and classified as critical. This vulnerabil...
CVE-2025-39601CRITICAL9.6Cross-Site Request Forgery (CSRF) vulnerability in WPFactory Custom CSS, JS & PHP custom-css allows Remote Code Inclusio...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now