2025 CVE Vulnerabilities

45,325 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-1945CRITICAL9.8picklescan before 0.0.23 fails to detect malicious pickle files inside PyTorch model archives when certain ZIP file flag...
CVE-2025-2115CRITICAL9.8A vulnerability, which was classified as critical, was found in zzskzy Warehouse Refinement Management System 3.1. Affec...
CVE-2025-2113CRITICAL9.8A vulnerability was found in AT Software Solutions ATSVD up to 3.4.1. It has been rated as critical. Affected by this is...
CVE-2025-2112CRITICAL9.8A vulnerability was found in user-xiangpeng yaoqishan up to a47fec4a31cbd13698c592dfdc938c8824dd25e4. It has been declar...
CVE-2025-1323CRITICAL9.8The WP-Recall – Registration, Profile, Commerce & More plugin for WordPress is vulnerable to SQL Injection via the 'data...
CVE-2025-0177CRITICAL9.8The Javo Core plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 3.0.0.080...
CVE-2025-2097CRITICAL9.8A vulnerability, which was classified as critical, has been found in TOTOLINK EX1800T 9.1.0cu.2112_B20220316. This issue...
CVE-2025-2096CRITICAL9.8A vulnerability classified as critical was found in TOTOLINK EX1800T 9.1.0cu.2112_B20220316. This vulnerability affects ...
CVE-2025-2095CRITICAL9.8A vulnerability classified as critical has been found in TOTOLINK EX1800T 9.1.0cu.2112_B20220316. This affects the funct...
CVE-2025-2094CRITICAL9.8A vulnerability was found in TOTOLINK EX1800T 9.1.0cu.2112_B20220316. It has been rated as critical. Affected by this is...
CVE-2025-27603CRITICAL9.1XWiki Confluence Migrator Pro helps admins to import confluence packages into their XWiki instance. A user that doesn't ...
CVE-2025-27519CRITICAL9.3Cognita is a RAG (Retrieval Augmented Generation) Framework for building modular, open source applications for productio...
CVE-2025-2088CRITICAL9.8A vulnerability, which was classified as critical, was found in PHPGurukul Pre-School Enrollment System up to 1.0. Affec...
CVE-2025-1315CRITICAL9.8The InWave Jobs plugin for WordPress is vulnerable to privilege escalation via password reset in all versions up to, and...
CVE-2025-27816CRITICAL9.8A vulnerability was discovered in the Arctera InfoScale 7.0 through 8.0.2 where a .NET remoting endpoint can be exploite...
CVE-2025-1475CRITICAL9.8The WPCOM Member plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 1.7.5...
CVE-2025-27796CRITICAL9.8ReadWPGImage in WPG in GraphicsMagick before 1.3.46 mishandles palette buffer allocation, resulting in out-of-bounds acc...
CVE-2025-2067CRITICAL9.8A vulnerability was found in projectworlds Life Insurance Management System 1.0 and classified as critical. This issue a...
CVE-2025-2066CRITICAL9.8A vulnerability has been found in projectworlds Life Insurance Management System 1.0 and classified as critical. This vu...
CVE-2025-2065CRITICAL9.8A vulnerability, which was classified as critical, was found in projectworlds Life Insurance Management System 1.0. This...
CVE-2025-2064CRITICAL9.8A vulnerability, which was classified as critical, has been found in projectworlds Life Insurance Management System 1.0....
CVE-2025-2063CRITICAL9.8A vulnerability classified as critical was found in projectworlds Life Insurance Management System 1.0. Affected by this...
CVE-2025-2062CRITICAL9.8A vulnerability classified as critical has been found in projectworlds Life Insurance Management System 1.0. Affected is...
CVE-2025-2060CRITICAL9.8A vulnerability was found in PHPGurukul Emergency Ambulance Hiring Portal 1.0. It has been classified as critical. This ...
CVE-2025-2059CRITICAL9.8A vulnerability was found in PHPGurukul Emergency Ambulance Hiring Portal 1.0 and classified as critical. Affected by th...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now