2025 CVE Vulnerabilities
45,325 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-1532 | CRITICAL | 9.1 | 0.3% | Apr 17, 2025 | Phoneservice module is affected by code injection vulnerability, successful exploitation of this vulnerability may affec... |
| CVE-2025-3113 | CRITICAL | 9 | 0.3% | Apr 17, 2025 | A valid, authenticated user with sufficient privileges and who is aware of Continuous Compliance’s internal database con... |
| CVE-2025-31340 | CRITICAL | 9.9 | 0.4% | Apr 17, 2025 | A improper control of filename for include/require statement in PHP program vulnerability in the retrieve course Informa... |
| CVE-2025-0756 | CRITICAL | 9.1 | 0.8% | Apr 16, 2025 | Overview The product receives input from an upstream component, but it does not restrict or incorrectly restric... |
| CVE-2025-32433 | CRITICAL | 10 | 97.7% | Apr 16, 2025 | Erlang/OTP is a set of libraries for the Erlang programming language. Prior to versions OTP-27.3.3, OTP-26.2.5.11, and O... |
| CVE-2025-3729 | CRITICAL | 9.8 | 3.0% | Apr 16, 2025 | A vulnerability, which was classified as critical, has been found in SourceCodester Web-based Pharmacy Product Managemen... |
| CVE-2025-3727 | CRITICAL | 9.8 | 0.6% | Apr 16, 2025 | A vulnerability classified as critical has been found in PCMan FTP Server 2.0.7. This affects an unknown part of the com... |
| CVE-2025-29709 | CRITICAL | 9.8 | 0.5% | Apr 16, 2025 | SourceCodester Company Website CMS 1.0 has a File upload vulnerability via the "Create portfolio" file /dashboard/portfo... |
| CVE-2025-29708 | CRITICAL | 9.8 | 0.5% | Apr 16, 2025 | SourceCodester Company Website CMS 1.0 contains a file upload vulnerability via the "Create Services" file /dashboard/Se... |
| CVE-2025-3726 | CRITICAL | 9.8 | 0.6% | Apr 16, 2025 | A vulnerability was found in PCMan FTP Server 2.0.7. It has been rated as critical. Affected by this issue is some unkno... |
| CVE-2025-3725 | CRITICAL | 9.8 | 0.6% | Apr 16, 2025 | A vulnerability was found in PCMan FTP Server 2.0.7. It has been declared as critical. Affected by this vulnerability is... |
| CVE-2025-3724 | CRITICAL | 9.8 | 0.6% | Apr 16, 2025 | A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as critical. Affected is an unknown function... |
| CVE-2025-3723 | CRITICAL | 9.8 | 0.6% | Apr 16, 2025 | A vulnerability was found in PCMan FTP Server 2.0.7 and classified as critical. This issue affects some unknown processi... |
| CVE-2025-31201 | CRITICAL | 9.8 | 12.4% | Apr 16, 2025 | This issue was addressed by removing the vulnerable code. This issue is fixed in iOS 18.4.1 and iPadOS 18.4.1, macOS Seq... |
| CVE-2025-31200 | CRITICAL | 9.8 | 21.3% | Apr 16, 2025 | A memory corruption issue was addressed with improved bounds checking. This issue is fixed in iOS 18.4.1 and iPadOS 18.4... |
| CVE-2025-2291 | CRITICAL | 9.8 | 0.3% | Apr 16, 2025 | Password can be used past expiry in PgBouncer due to auth_query not taking into account Postgres its VALID UNTIL value, ... |
| CVE-2025-27540 | CRITICAL | 9.8 | 0.8% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-27539 | CRITICAL | 9.8 | 0.8% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-27495 | CRITICAL | 9.8 | 0.8% | Apr 16, 2025 | A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is v... |
| CVE-2025-3694 | CRITICAL | 9.8 | 0.5% | Apr 16, 2025 | A vulnerability classified as critical has been found in SourceCodester Web-based Pharmacy Product Management System 1.0... |
| CVE-2025-22088 | CRITICAL | 9.8 | 0.2% | Apr 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: RDMA/erdma: Prevent use-after-free in erdma_accept_... |
| CVE-2025-3693 | CRITICAL | 9.8 | 4.6% | Apr 16, 2025 | A vulnerability was found in Tenda W12 3.0.0.5. It has been rated as critical. Affected by this issue is the function cg... |
| CVE-2025-3690 | CRITICAL | 9.8 | 0.6% | Apr 16, 2025 | A vulnerability was found in PHPGurukul Men Salon Management System 1.0 and classified as critical. This issue affects s... |
| CVE-2025-3689 | CRITICAL | 9.8 | 0.6% | Apr 16, 2025 | A vulnerability has been found in PHPGurukul Men Salon Management System 1.0 and classified as critical. This vulnerabil... |
| CVE-2025-39601 | CRITICAL | 9.6 | 0.3% | Apr 16, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in WPFactory Custom CSS, JS & PHP custom-css allows Remote Code Inclusio... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now