2025 CVE Vulnerabilities

45,325 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-26818CRITICAL9.8Netwrix Password Secure through 9.2 allows command injection.
CVE-2025-26817CRITICAL9.8Netwrix Password Secure 9.2.0.32454 allows OS command injection.
CVE-2025-3175CRITICAL9.8A vulnerability was found in Project Worlds Online Lawyer Management System 1.0 and classified as critical. Affected by ...
CVE-2025-3174CRITICAL9.8A vulnerability has been found in Project Worlds Online Lawyer Management System 1.0 and classified as critical. Affecte...
CVE-2025-3173CRITICAL9.8A vulnerability, which was classified as critical, was found in Project Worlds Online Lawyer Management System 1.0. Affe...
CVE-2025-29647CRITICAL9.8SeaCMS v13.3 has a SQL injection vulnerability in the component admin_tempvideo.php.
CVE-2025-3172CRITICAL9.8A vulnerability, which was classified as critical, has been found in Project Worlds Online Lawyer Management System 1.0....
CVE-2025-3171CRITICAL9.8A vulnerability classified as critical was found in Project Worlds Online Lawyer Management System 1.0. This vulnerabili...
CVE-2025-3170CRITICAL9.8A vulnerability classified as critical has been found in Project Worlds Online Lawyer Management System 1.0. This affect...
CVE-2025-3168CRITICAL9.8A vulnerability was found in PHPGurukul Time Table Generator System 1.0. It has been declared as critical. Affected by t...
CVE-2025-3164CRITICAL9.8A vulnerability was found in Tencent Music Entertainment SuperSonic up to 0.9.8. It has been rated as critical. Affected...
CVE-2025-22457CRITICAL9.8A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.6, Ivanti Policy Secure before version 22.7...
CVE-2025-31911CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in reputeinfosystems ...
CVE-2025-29369CRITICAL9.8Code-Projects Matrimonial Site V1.0 is vulnerable to SQL Injection in /view_profile.php?id=1.
CVE-2025-22930CRITICAL9.8OS4ED openSIS v7.0 to v9.1 was discovered to contain a SQL injection vulnerability via the groupid parameter at /messagi...
CVE-2025-22929CRITICAL9.8OS4ED openSIS v7.0 to v9.1 was discovered to contain a SQL injection vulnerability via the filter_id parameter at /stude...
CVE-2025-22926CRITICAL9.8An issue in OS4ED openSIS v8.0 through v9.1 allows attackers to execute a directory traversal by sending a crafted POST ...
CVE-2025-22928CRITICAL9.8OS4ED openSIS v7.0 to v9.1 was discovered to contain a SQL injection vulnerability via the cp_id parameter at /modules/m...
CVE-2025-22927CRITICAL9.1An issue in OS4ED openSIS v8.0 through v9.1 allows attackers to execute a directory traversal by sending a crafted POST ...
CVE-2025-3151CRITICAL9.8A vulnerability was found in SourceCodester Gym Management System 1.0. It has been rated as critical. Affected by this i...
CVE-2025-3147CRITICAL9.8A vulnerability has been found in PHPGurukul Boat Booking System 1.0 and classified as critical. This vulnerability affe...
CVE-2025-3146CRITICAL9.8A vulnerability, which was classified as critical, was found in PHPGurukul Bus Pass Management System 1.0. This affects ...
CVE-2025-3141CRITICAL9.8A vulnerability was found in SourceCodester Online Medicine Ordering System 1.0. It has been declared as critical. This ...
CVE-2025-3140CRITICAL9.8A vulnerability was found in SourceCodester Online Medicine Ordering System 1.0. It has been classified as critical. Thi...
CVE-2025-3138CRITICAL9.8A vulnerability has been found in PHPGurukul Online Security Guards Hiring System 1.0 and classified as critical. Affect...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now