2025 CVE Vulnerabilities
45,325 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-26007 | CRITICAL | 9.8 | 0.4% | Mar 26, 2025 | Telesquare TLR-2005KSH 1.1.4 has an unauthorized stack overflow vulnerability in the login interface when requesting sys... |
| CVE-2025-26006 | CRITICAL | 9.8 | 0.4% | Mar 26, 2025 | Telesquare TLR-2005KSH 1.1.4 has an unauthorized stack overflow vulnerability when requesting the admin.cgi parameter wi... |
| CVE-2025-26005 | CRITICAL | 9.8 | 0.4% | Mar 26, 2025 | Telesquare TLR-2005KSH 1.1.4 is vulnerable to unauthorized stack overflow vulnerability when requesting admin.cgi parame... |
| CVE-2025-26004 | CRITICAL | 9.8 | 0.4% | Mar 26, 2025 | Telesquare TLR-2005KSH 1.1.4 is vulnerable to unauthorized stack buffer overflow vulnerability when requesting admin.cgi... |
| CVE-2025-26003 | CRITICAL | 9.8 | 0.6% | Mar 26, 2025 | Telesquare TLR-2005KSH 1.1.4 is affected by an unauthorized command execution vulnerability when requesting the admin.cg... |
| CVE-2025-26002 | CRITICAL | 9.8 | 0.5% | Mar 26, 2025 | Telesquare TLR-2005KSH 1.1.4 is affected by an unauthorized stack overflow vulnerability when requesting the admin.cgi p... |
| CVE-2025-25535 | CRITICAL | 9.8 | 0.5% | Mar 26, 2025 | HTTP Response Manipulation in SCRIPT CASE v.1.0.002 Build7 allows a remote attacker to escalate privileges via a crafted... |
| CVE-2025-30524 | CRITICAL | 9.3 | 0.6% | Mar 26, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in origincode Product... |
| CVE-2025-28942 | CRITICAL | 9.3 | 0.6% | Mar 26, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Trust Payments Tru... |
| CVE-2025-28916 | CRITICAL | 9.8 | 0.8% | Mar 26, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-28898 | CRITICAL | 9.3 | 0.6% | Mar 26, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPExperts.io WP Mu... |
| CVE-2025-28893 | CRITICAL | 9.9 | 0.7% | Mar 26, 2025 | Improper Control of Generation of Code ('Code Injection') vulnerability in Govind Visual Text Editor visual-text-editor ... |
| CVE-2025-26941 | CRITICAL | 9.3 | 0.6% | Mar 26, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in andy_moyle Church ... |
| CVE-2025-1542 | CRITICAL | 9.3 | 0.4% | Mar 26, 2025 | Improper permission control vulnerability in the OXARI ServiceDesk application could allow an attacker using a guest acc... |
| CVE-2025-27837 | CRITICAL | 9.8 | 0.6% | Mar 25, 2025 | An issue was discovered in Artifex Ghostscript before 10.05.0. Access to arbitrary files can occur through a truncated p... |
| CVE-2025-27836 | CRITICAL | 9.8 | 0.6% | Mar 25, 2025 | An issue was discovered in Artifex Ghostscript before 10.05.0. The BJ10V device has a Print buffer overflow in contrib/j... |
| CVE-2025-27832 | CRITICAL | 9.8 | 0.8% | Mar 25, 2025 | An issue was discovered in Artifex Ghostscript before 10.05.0. The NPDL device has a Compression buffer overflow for con... |
| CVE-2025-27831 | CRITICAL | 9.8 | 0.6% | Mar 25, 2025 | An issue was discovered in Artifex Ghostscript before 10.05.0. The DOCXWRITE TXTWRITE device has a text buffer overflow ... |
| CVE-2025-25373 | CRITICAL | 9.8 | 0.5% | Mar 25, 2025 | The Memory Management Module of NASA cFS (Core Flight System) Aquila has insecure permissions, which can be exploited to... |
| CVE-2025-30216 | CRITICAL | 9.1 | 2.4% | Mar 25, 2025 | CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDL... |
| CVE-2025-28904 | CRITICAL | 9.3 | 0.3% | Mar 25, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Shamalli Web Direc... |
| CVE-2025-30091 | CRITICAL | 9.4 | 0.7% | Mar 25, 2025 | In Tiny MoxieManager PHP before 4.0.0, remote code execution can occur in the installer command. This vulnerability allo... |
| CVE-2025-2739 | CRITICAL | 9.8 | 0.5% | Mar 25, 2025 | A vulnerability was found in PHPGurukul Old Age Home Management System 1.0. It has been rated as critical. This issue af... |
| CVE-2025-2738 | CRITICAL | 9.8 | 0.4% | Mar 25, 2025 | A vulnerability was found in PHPGurukul Old Age Home Management System 1.0. It has been declared as critical. This vulne... |
| CVE-2025-2737 | CRITICAL | 9.8 | 0.4% | Mar 25, 2025 | A vulnerability was found in PHPGurukul Old Age Home Management System 1.0. It has been classified as critical. This aff... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now