2025 CVE Vulnerabilities
45,146 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-27583 | CRITICAL | 9.1 | 0.3% | Mar 3, 2025 | Incorrect access control in the component /rest/staffResource/findAllUsersAcrossOrg of Serosoft Solutions Pvt Ltd Academ... |
| CVE-2025-25948 | CRITICAL | 9.1 | 6.6% | Mar 3, 2025 | Incorrect access control in the component /rest/staffResource/create of Serosoft Solutions Pvt Ltd Academia Student Info... |
| CVE-2025-1843 | CRITICAL | 9.8 | 0.5% | Mar 3, 2025 | A vulnerability, which was classified as critical, has been found in Mini-Tmall up to 20250211. This issue affects the f... |
| CVE-2025-1841 | CRITICAL | 9.8 | 0.4% | Mar 3, 2025 | A vulnerability classified as critical has been found in ESAFENET CDG 5.6.3.154.205. This affects an unknown part of the... |
| CVE-2025-1840 | CRITICAL | 9.8 | 0.5% | Mar 3, 2025 | A vulnerability was found in ESAFENET CDG 5.6.3.154.205. It has been rated as critical. Affected by this issue is some u... |
| CVE-2025-1834 | CRITICAL | 9.8 | 0.5% | Mar 2, 2025 | A vulnerability, which was classified as critical, was found in zj1983 zz up to 2024-8. This affects an unknown part of ... |
| CVE-2025-1831 | CRITICAL | 9.8 | 0.5% | Mar 2, 2025 | A vulnerability classified as critical has been found in zj1983 zz up to 2024-8. Affected is the function GetDBUser of t... |
| CVE-2025-1821 | CRITICAL | 9.8 | 0.5% | Mar 2, 2025 | A vulnerability was found in zj1983 zz up to 2024-8 and classified as critical. Affected by this issue is the function g... |
| CVE-2025-1819 | CRITICAL | 9.8 | 1.8% | Mar 2, 2025 | A vulnerability, which was classified as critical, was found in Tenda AC7 1200M 15.03.06.44. Affected is the function Te... |
| CVE-2025-1818 | CRITICAL | 9.8 | 0.6% | Mar 2, 2025 | A vulnerability, which was classified as critical, has been found in zj1983 zz up to 2024-8. This issue affects some unk... |
| CVE-2025-1814 | CRITICAL | 9.8 | 0.9% | Mar 2, 2025 | A vulnerability, which was classified as critical, has been found in Tenda AC6 15.03.05.16. Affected by this issue is so... |
| CVE-2025-1791 | CRITICAL | 9.8 | 0.4% | Mar 1, 2025 | A vulnerability has been found in Zorlan SkyCaiji 2.9 and classified as critical. This vulnerability affects the functio... |
| CVE-2025-1671 | CRITICAL | 9.8 | 0.5% | Mar 1, 2025 | The Academist Membership plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including... |
| CVE-2025-1638 | CRITICAL | 9.8 | 0.6% | Mar 1, 2025 | The Alloggio Membership plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including... |
| CVE-2025-1564 | CRITICAL | 9.8 | 0.5% | Mar 1, 2025 | The SetSail Membership plugin for WordPress is vulnerable to in all versions up to, and including, 1.0.3. This is due t... |
| CVE-2025-27554 | CRITICAL | 9.9 | 0.7% | Mar 1, 2025 | ToDesktop before 2024-10-03, as used by Cursor before 2024-10-03 and other applications, allows remote attackers to exec... |
| CVE-2025-23116 | CRITICAL | 9.6 | 0.5% | Mar 1, 2025 | An Authentication Bypass vulnerability on UniFi Protect Application with Auto-Adopt Bridge Devices enabled could allow a... |
| CVE-2025-23115 | CRITICAL | 9 | 0.7% | Mar 1, 2025 | A Use After Free vulnerability on UniFi Protect Cameras could allow a Remote Code Execution (RCE) by a malicious actor w... |
| CVE-2025-25379 | CRITICAL | 9.6 | 0.3% | Feb 28, 2025 | Cross Site Request Forgery vulnerability in 07FLYCMS v.1.3.9 allows a remote attacker to execute arbitrary code via the ... |
| CVE-2025-0160 | CRITICAL | 9.8 | 0.5% | Feb 28, 2025 | IBM FlashSystem (IBM Storage Virtualize (8.5.0.0 through 8.5.0.13, 8.5.1.0, 8.5.2.0 through 8.5.2.3, 8.5.3.0 through 8.5... |
| CVE-2025-0159 | CRITICAL | 9.1 | 0.8% | Feb 28, 2025 | IBM FlashSystem (IBM Storage Virtualize (8.5.0.0 through 8.5.0.13, 8.5.1.0, 8.5.2.0 through 8.5.2.3, 8.5.3.0 through 8.5... |
| CVE-2025-22273 | CRITICAL | 9.3 | 0.6% | Feb 28, 2025 | Application does not limit the number or frequency of user interactions, such as the number of incoming requests. At the... |
| CVE-2025-1570 | CRITICAL | 9.8 | 0.4% | Feb 28, 2025 | The Directorist: AI-Powered Business Directory Plugin with Classified Ads Listings plugin for WordPress is vulnerable to... |
| CVE-2025-1744 | CRITICAL | 9.8 | 0.5% | Feb 28, 2025 | Out-of-bounds Write vulnerability in radareorg radare2 allows heap-based buffer over-read or buffer overflow.This issu... |
| CVE-2025-26325 | CRITICAL | 9.8 | 0.4% | Feb 27, 2025 | ShopXO 6.4.0 is vulnerable to File Upload in ThemeDataService.php. |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now