2025 CVE Vulnerabilities

45,325 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-3308CRITICAL9.8A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been declared as critical. Affected ...
CVE-2025-3307CRITICAL9.8A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been classified as critical. Affecte...
CVE-2025-3306CRITICAL9.8A vulnerability was found in code-projects Blood Bank Management System 1.0 and classified as critical. This issue affec...
CVE-2025-2941CRITICAL9.8The Drag and Drop Multiple File Upload for WooCommerce plugin for WordPress is vulnerable to arbitrary file moving due t...
CVE-2025-3268CRITICAL9.8A vulnerability has been found in qinguoyi TinyWebServer up to 1.0 and classified as critical. This vulnerability affect...
CVE-2025-3266CRITICAL9.8A vulnerability, which was classified as critical, has been found in qinguoyi TinyWebServer up to 1.0. Affected by this ...
CVE-2025-3265CRITICAL9.8A vulnerability classified as critical was found in PHPGurukul e-Diary Management System 1.0. Affected by this vulnerabi...
CVE-2025-3258CRITICAL9.8A vulnerability classified as critical was found in PHPGurukul Old Age Home Management System 1.0. This vulnerability af...
CVE-2025-3254CRITICAL9.8A vulnerability was found in xujiangfei admintwo 1.0. It has been classified as critical. Affected is an unknown functio...
CVE-2025-32118CRITICAL9.1Unrestricted Upload of File with Dangerous Type vulnerability in NiteoThemes CMP – Coming Soon & Maintenance cmp-coming-...
CVE-2025-31480CRITICAL9.1aiven-extras is a PostgreSQL extension. This is a privilege escalation vulnerability, allowing elevation to superuser in...
CVE-2025-27520CRITICAL9.8BentoML is a Python library for building online serving systems optimized for AI apps and model inference. A Remote Code...
CVE-2025-3249CRITICAL9.8A vulnerability classified as critical was found in TOTOLINK A6000R 1.0.1-B20201211.2000. Affected by this vulnerability...
CVE-2025-31403CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in shiptrack Booking ...
CVE-2025-2798CRITICAL9.8The Woffice CRM theme for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 5.4.21....
CVE-2025-28146CRITICAL9.8Edimax AC1200 Wave 2 Dual-Band Gigabit Router BR-6478AC V3 1.0.15 was discovered to contain a command injection vulnerab...
CVE-2025-3245CRITICAL9.8A vulnerability was found in itsourcecode Library Management System 1.0. It has been rated as critical. Affected by this...
CVE-2025-3242CRITICAL9.8A vulnerability has been found in PHPGurukul e-Diary Management System 1.0 and classified as critical. This vulnerabilit...
CVE-2025-3241CRITICAL9.8A vulnerability, which was classified as problematic, was found in zhangyanbo2007 youkefu up to 4.2.0. This affects an u...
CVE-2025-3240CRITICAL9.8A vulnerability, which was classified as critical, has been found in PHPGurukul Online Fire Reporting System 1.2. Affect...
CVE-2025-3239CRITICAL9.8A vulnerability classified as critical was found in PHPGurukul Online Fire Reporting System 1.2. Affected by this vulner...
CVE-2025-3238CRITICAL9.8A vulnerability classified as critical has been found in PHPGurukul Online Fire Reporting System 1.2. Affected is an unk...
CVE-2025-3235CRITICAL9.8A vulnerability was found in PHPGurukul Old Age Home Management System 1.0. It has been classified as critical. This aff...
CVE-2025-2244CRITICAL9.8A vulnerability in the sendMailFromRemoteSource method in Emails.php  as used in Bitdefender GravityZone Console unsafel...
CVE-2025-3231CRITICAL9.8A vulnerability was found in PHPGurukul Zoo Management System 2.1. It has been rated as critical. This issue affects som...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now