2025 CVE Vulnerabilities

45,325 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-27048HIGH7.8Memory corruption while processing camera platform driver IOCTL calls.
CVE-2025-11530HIGH8.8A weakness has been identified in code-projects Online Complaint Site 1.0. Affected is an unknown function of the file /...
CVE-2025-11528HIGH8.8A vulnerability was identified in Tenda AC7 15.03.06.44. This affects an unknown function of the file /goform/saveAutoQo...
CVE-2025-11527HIGH8.8A vulnerability was determined in Tenda AC7 15.03.06.44. The impacted element is an unknown function of the file /goform...
CVE-2025-11526HIGH8.8A vulnerability was found in Tenda AC7 15.03.06.44. The affected element is an unknown function of the file /goform/Wifi...
CVE-2025-11525HIGH8.8A vulnerability has been found in Tenda AC7 15.03.06.44. Impacted is an unknown function of the file /goform/SetUpnpCfg....
CVE-2025-11524HIGH8.8A flaw has been found in Tenda AC7 15.03.06.44. This issue affects some unknown processing of the file /goform/SetDDNSCf...
CVE-2025-11523HIGH8.8A vulnerability was detected in Tenda AC7 15.03.06.44. This vulnerability affects unknown code of the file /goform/AdvSe...
CVE-2025-10496HIGH7.2The Cookie Notice & Consent plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the uuid parameter in ...
CVE-2025-11516HIGH8.8A weakness has been identified in code-projects Online Complaint Site 1.0. Impacted is an unknown function of the file /...
CVE-2025-11515HIGH8.8A security flaw has been discovered in code-projects Online Complaint Site 1.0. This issue affects some unknown processi...
CVE-2025-11514HIGH8.8A vulnerability was identified in code-projects Online Complaint Site 1.0. This vulnerability affects unknown code of th...
CVE-2025-11535HIGH8.8MongoDB Connector for BI installation via MSI on Windows leaves ACLs unset on custom install directories allows Privileg...
CVE-2025-60311HIGH8.8ProjectWorlds Gym Management System1.0 is vulnerable to SQL Injection via the "id" parameter in the profile/edit.php pag...
CVE-2025-61524HIGH7.2An issue in the permission verification module and organization/application editing interface in Casdoor v2.26.0 and bef...
CVE-2025-57457HIGH8.8An OS Command Injection vulnerability in the Admin panel in Curo UC300 5.42.1.7.1.63R1 allows local attackers to inject ...
CVE-2025-9868HIGH8.7Server-Side Request Forgery (SSRF) in the Remote Browser Plugin in Sonatype Nexus Repository 2.x up to and including 2.1...
CVE-2025-11489HIGH7A security vulnerability has been detected in wonderwhy-er DesktopCommanderMCP up to 0.2.13. This vulnerability affects ...
CVE-2025-11488HIGH7.3A weakness has been identified in D-Link DIR-852 up to 20251002. This affects an unknown part of the file /HNAP1/. Execu...
CVE-2025-9970HIGH7.4Cleartext Storage of Sensitive Information in Memory vulnerability in ABB MConfig.This issue affects MConfig: through 1....
CVE-2025-53967HIGH8Framelink Figma MCP Server before 0.6.3 allows an unauthenticated remote attacker to execute arbitrary operating system ...
CVE-2025-11478HIGH8.8A weakness has been identified in SourceCodester Farm Management System 1.0. This issue affects some unknown processing ...
CVE-2025-11470HIGH7.2A security vulnerability has been detected in SourceCodester Hotel and Lodge Management System up to 1.0. The impacted e...
CVE-2025-11444HIGH8.8A security vulnerability has been detected in TOTOLINK N600R up to 4.3.0cu.7866_B20220506. This impacts the function set...
CVE-2025-11436HIGH8.8A vulnerability was detected in JhumanJ OpnForm up to 1.9.3. Affected by this issue is some unknown functionality of the...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now