2025 CVE Vulnerabilities

45,146 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-27583CRITICAL9.1Incorrect access control in the component /rest/staffResource/findAllUsersAcrossOrg of Serosoft Solutions Pvt Ltd Academ...
CVE-2025-25948CRITICAL9.1Incorrect access control in the component /rest/staffResource/create of Serosoft Solutions Pvt Ltd Academia Student Info...
CVE-2025-1843CRITICAL9.8A vulnerability, which was classified as critical, has been found in Mini-Tmall up to 20250211. This issue affects the f...
CVE-2025-1841CRITICAL9.8A vulnerability classified as critical has been found in ESAFENET CDG 5.6.3.154.205. This affects an unknown part of the...
CVE-2025-1840CRITICAL9.8A vulnerability was found in ESAFENET CDG 5.6.3.154.205. It has been rated as critical. Affected by this issue is some u...
CVE-2025-1834CRITICAL9.8A vulnerability, which was classified as critical, was found in zj1983 zz up to 2024-8. This affects an unknown part of ...
CVE-2025-1831CRITICAL9.8A vulnerability classified as critical has been found in zj1983 zz up to 2024-8. Affected is the function GetDBUser of t...
CVE-2025-1821CRITICAL9.8A vulnerability was found in zj1983 zz up to 2024-8 and classified as critical. Affected by this issue is the function g...
CVE-2025-1819CRITICAL9.8A vulnerability, which was classified as critical, was found in Tenda AC7 1200M 15.03.06.44. Affected is the function Te...
CVE-2025-1818CRITICAL9.8A vulnerability, which was classified as critical, has been found in zj1983 zz up to 2024-8. This issue affects some unk...
CVE-2025-1814CRITICAL9.8A vulnerability, which was classified as critical, has been found in Tenda AC6 15.03.05.16. Affected by this issue is so...
CVE-2025-1791CRITICAL9.8A vulnerability has been found in Zorlan SkyCaiji 2.9 and classified as critical. This vulnerability affects the functio...
CVE-2025-1671CRITICAL9.8The Academist Membership plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including...
CVE-2025-1638CRITICAL9.8The Alloggio Membership plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including...
CVE-2025-1564CRITICAL9.8The SetSail Membership plugin for WordPress is vulnerable to in all versions up to, and including, 1.0.3. This is due t...
CVE-2025-27554CRITICAL9.9ToDesktop before 2024-10-03, as used by Cursor before 2024-10-03 and other applications, allows remote attackers to exec...
CVE-2025-23116CRITICAL9.6An Authentication Bypass vulnerability on UniFi Protect Application with Auto-Adopt Bridge Devices enabled could allow a...
CVE-2025-23115CRITICAL9A Use After Free vulnerability on UniFi Protect Cameras could allow a Remote Code Execution (RCE) by a malicious actor w...
CVE-2025-25379CRITICAL9.6Cross Site Request Forgery vulnerability in 07FLYCMS v.1.3.9 allows a remote attacker to execute arbitrary code via the ...
CVE-2025-0160CRITICAL9.8IBM FlashSystem (IBM Storage Virtualize (8.5.0.0 through 8.5.0.13, 8.5.1.0, 8.5.2.0 through 8.5.2.3, 8.5.3.0 through 8.5...
CVE-2025-0159CRITICAL9.1IBM FlashSystem (IBM Storage Virtualize (8.5.0.0 through 8.5.0.13, 8.5.1.0, 8.5.2.0 through 8.5.2.3, 8.5.3.0 through 8.5...
CVE-2025-22273CRITICAL9.3Application does not limit the number or frequency of user interactions, such as the number of incoming requests. At the...
CVE-2025-1570CRITICAL9.8The Directorist: AI-Powered Business Directory Plugin with Classified Ads Listings plugin for WordPress is vulnerable to...
CVE-2025-1744CRITICAL9.8Out-of-bounds Write vulnerability in radareorg radare2 allows heap-based buffer over-read or buffer overflow.This issu...
CVE-2025-26325CRITICAL9.8ShopXO 6.4.0 is vulnerable to File Upload in ThemeDataService.php.

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now