2025 CVE Vulnerabilities

45,325 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-26007CRITICAL9.8Telesquare TLR-2005KSH 1.1.4 has an unauthorized stack overflow vulnerability in the login interface when requesting sys...
CVE-2025-26006CRITICAL9.8Telesquare TLR-2005KSH 1.1.4 has an unauthorized stack overflow vulnerability when requesting the admin.cgi parameter wi...
CVE-2025-26005CRITICAL9.8Telesquare TLR-2005KSH 1.1.4 is vulnerable to unauthorized stack overflow vulnerability when requesting admin.cgi parame...
CVE-2025-26004CRITICAL9.8Telesquare TLR-2005KSH 1.1.4 is vulnerable to unauthorized stack buffer overflow vulnerability when requesting admin.cgi...
CVE-2025-26003CRITICAL9.8Telesquare TLR-2005KSH 1.1.4 is affected by an unauthorized command execution vulnerability when requesting the admin.cg...
CVE-2025-26002CRITICAL9.8Telesquare TLR-2005KSH 1.1.4 is affected by an unauthorized stack overflow vulnerability when requesting the admin.cgi p...
CVE-2025-25535CRITICAL9.8HTTP Response Manipulation in SCRIPT CASE v.1.0.002 Build7 allows a remote attacker to escalate privileges via a crafted...
CVE-2025-30524CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in origincode Product...
CVE-2025-28942CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Trust Payments Tru...
CVE-2025-28916CRITICAL9.8Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2025-28898CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPExperts.io WP Mu...
CVE-2025-28893CRITICAL9.9Improper Control of Generation of Code ('Code Injection') vulnerability in Govind Visual Text Editor visual-text-editor ...
CVE-2025-26941CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in andy_moyle Church ...
CVE-2025-1542CRITICAL9.3Improper permission control vulnerability in the OXARI ServiceDesk application could allow an attacker using a guest acc...
CVE-2025-27837CRITICAL9.8An issue was discovered in Artifex Ghostscript before 10.05.0. Access to arbitrary files can occur through a truncated p...
CVE-2025-27836CRITICAL9.8An issue was discovered in Artifex Ghostscript before 10.05.0. The BJ10V device has a Print buffer overflow in contrib/j...
CVE-2025-27832CRITICAL9.8An issue was discovered in Artifex Ghostscript before 10.05.0. The NPDL device has a Compression buffer overflow for con...
CVE-2025-27831CRITICAL9.8An issue was discovered in Artifex Ghostscript before 10.05.0. The DOCXWRITE TXTWRITE device has a text buffer overflow ...
CVE-2025-25373CRITICAL9.8The Memory Management Module of NASA cFS (Core Flight System) Aquila has insecure permissions, which can be exploited to...
CVE-2025-30216CRITICAL9.1CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDL...
CVE-2025-28904CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Shamalli Web Direc...
CVE-2025-30091CRITICAL9.4In Tiny MoxieManager PHP before 4.0.0, remote code execution can occur in the installer command. This vulnerability allo...
CVE-2025-2739CRITICAL9.8A vulnerability was found in PHPGurukul Old Age Home Management System 1.0. It has been rated as critical. This issue af...
CVE-2025-2738CRITICAL9.8A vulnerability was found in PHPGurukul Old Age Home Management System 1.0. It has been declared as critical. This vulne...
CVE-2025-2737CRITICAL9.8A vulnerability was found in PHPGurukul Old Age Home Management System 1.0. It has been classified as critical. This aff...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now