2025 CVE Vulnerabilities

45,146 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-22930CRITICAL9.8OS4ED openSIS v7.0 to v9.1 was discovered to contain a SQL injection vulnerability via the groupid parameter at /messagi...
CVE-2025-22929CRITICAL9.8OS4ED openSIS v7.0 to v9.1 was discovered to contain a SQL injection vulnerability via the filter_id parameter at /stude...
CVE-2025-22926CRITICAL9.8An issue in OS4ED openSIS v8.0 through v9.1 allows attackers to execute a directory traversal by sending a crafted POST ...
CVE-2025-22928CRITICAL9.8OS4ED openSIS v7.0 to v9.1 was discovered to contain a SQL injection vulnerability via the cp_id parameter at /modules/m...
CVE-2025-22927CRITICAL9.1An issue in OS4ED openSIS v8.0 through v9.1 allows attackers to execute a directory traversal by sending a crafted POST ...
CVE-2025-3151CRITICAL9.8A vulnerability was found in SourceCodester Gym Management System 1.0. It has been rated as critical. Affected by this i...
CVE-2025-3147CRITICAL9.8A vulnerability has been found in PHPGurukul Boat Booking System 1.0 and classified as critical. This vulnerability affe...
CVE-2025-3146CRITICAL9.8A vulnerability, which was classified as critical, was found in PHPGurukul Bus Pass Management System 1.0. This affects ...
CVE-2025-3141CRITICAL9.8A vulnerability was found in SourceCodester Online Medicine Ordering System 1.0. It has been declared as critical. This ...
CVE-2025-3140CRITICAL9.8A vulnerability was found in SourceCodester Online Medicine Ordering System 1.0. It has been classified as critical. Thi...
CVE-2025-3138CRITICAL9.8A vulnerability has been found in PHPGurukul Online Security Guards Hiring System 1.0 and classified as critical. Affect...
CVE-2025-3137CRITICAL9.8A vulnerability, which was classified as critical, was found in PHPGurukul Online Security Guards Hiring System 1.0. Aff...
CVE-2025-3135CRITICAL9.8A vulnerability classified as critical was found in fcba_zzm ics-park Smart Park Management System 2.1. This vulnerabili...
CVE-2025-3120CRITICAL9.8A vulnerability was found in SourceCodester Apartment Visitors Management System 1.0. It has been rated as critical. Thi...
CVE-2025-3119CRITICAL9.8A vulnerability was found in SourceCodester Online Tutor Portal 1.0. It has been declared as critical. This vulnerabilit...
CVE-2025-31484CRITICAL9.3conda-forge infrastructure holds common configurations and settings for key pieces of the conda-forge infrastructure. Be...
CVE-2025-31477CRITICAL9.8The Tauri shell plugin allows access to the system shell. Prior to 2.2.1, the Tauri shell plugin exposes functionality t...
CVE-2025-3118CRITICAL9.8A vulnerability was found in SourceCodester Online Tutor Portal 1.0. It has been classified as critical. This affects an...
CVE-2025-29085CRITICAL9.8SQL injection vulnerability in vipshop Saturn v.3.5.1 and before allows a remote attacker to execute arbitrary code via ...
CVE-2025-29063CRITICAL9.8An issue in BL-AC2100 V1.0.4 and before allows a remote attacker to execute arbitrary code via the enable parameter pass...
CVE-2025-29062CRITICAL9.8An issue in BL-AC2100 <=V1.0.4 allows a remote attacker to execute arbitrary code via the time1 and time2 parameters in ...
CVE-2025-31286CRITICAL9An HTML injection vulnerability previously discovered in Trend Vision One could have allowed a malicious user to execute...
CVE-2025-2005CRITICAL9.8The Front End Users plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in ...
CVE-2025-0415CRITICAL9.2A remote attacker with web administrator privileges can exploit the device’s web interface to execute arbitrary system c...
CVE-2025-30356CRITICAL9.8CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDL...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now