2025 CVE Vulnerabilities
45,153 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-15242 | LOW | 3.1 | 0.2% | Dec 30, 2025 | A vulnerability was detected in PHPEMS up to 11.0. The impacted element is an unknown function of the component Coupon H... |
| CVE-2025-15358 | HIGH | 7.5 | 0.3% | Dec 30, 2025 | DVP-12SE11T - Denial of Service Vulnerability |
| CVE-2025-15241 | LOW | 3.5 | 0.2% | Dec 30, 2025 | A security vulnerability has been detected in CloudPanel Community Edition up to 2.5.1. The affected element is an unkno... |
| CVE-2025-15234 | HIGH | 8.8 | 2.5% | Dec 30, 2025 | A weakness has been identified in Tenda M3 1.0.0.13(4903). Impacted is the function formSetRemoteInternetLanInfo of the ... |
| CVE-2025-15103 | CRITICAL | 9.8 | 0.3% | Dec 30, 2025 | DVP-12SE11T - Authentication Bypass via Partial Password Disclosure |
| CVE-2025-15102 | CRITICAL | 9.8 | 0.3% | Dec 30, 2025 | DVP-12SE11T - Password Protection Bypass |
| CVE-2025-15355 | MEDIUM | 6.1 | 0.2% | Dec 30, 2025 | ISOinsight developed by NetVision Information has a Reflected Cross-site Scripting vulnerability, allowing unauthenticat... |
| CVE-2025-15233 | HIGH | 8.8 | 0.6% | Dec 30, 2025 | A security flaw has been discovered in Tenda M3 1.0.0.13(4903). This issue affects the function formSetAdInfoDetails of ... |
| CVE-2025-15232 | HIGH | 8.8 | 0.6% | Dec 30, 2025 | A vulnerability was identified in Tenda M3 1.0.0.13(4903). This vulnerability affects the function formSetAdPushInfo of ... |
| CVE-2025-15231 | HIGH | 8.8 | 0.6% | Dec 30, 2025 | A vulnerability was determined in Tenda M3 1.0.0.13(4903). This affects the function formSetRemoteVlanInfo of the file /... |
| CVE-2025-15230 | HIGH | 8.8 | 0.6% | Dec 30, 2025 | A vulnerability was found in Tenda M3 1.0.0.13(4903). Affected by this issue is the function formSetVlanPolicy of the fi... |
| CVE-2025-15229 | HIGH | 7.5 | 3.9% | Dec 30, 2025 | A vulnerability has been found in Tenda CH22 up to 1.0.0.1. Affected by this vulnerability is the function fromDhcpListC... |
| CVE-2025-15222 | MEDIUM | 5 | 0.2% | Dec 30, 2025 | A vulnerability has been found in Dromara Sa-Token up to 1.44.0. This issue affects the function ObjectInputStream.readO... |
| CVE-2025-14313 | MEDIUM | 6.1 | 0.1% | Dec 30, 2025 | The Advance WP Query Search Filter WordPress plugin through 1.0.10 does not sanitise and escape a parameter before outpu... |
| CVE-2025-14312 | MEDIUM | 6.1 | 0.1% | Dec 30, 2025 | The Advance WP Query Search Filter WordPress plugin through 1.0.10 does not sanitise and escape a parameter before outpu... |
| CVE-2025-15221 | MEDIUM | 5.4 | 0.2% | Dec 30, 2025 | A flaw has been found in SohuTV CacheCloud up to 3.2.0. This vulnerability affects the function index of the file src/ma... |
| CVE-2025-15220 | MEDIUM | 6.1 | 0.3% | Dec 30, 2025 | A vulnerability was detected in SohuTV CacheCloud up to 3.2.0. This affects the function init of the file src/main/java/... |
| CVE-2025-15219 | MEDIUM | 5.4 | 0.2% | Dec 30, 2025 | A security vulnerability has been detected in SohuTV CacheCloud up to 3.2.0. Affected by this issue is the function doMa... |
| CVE-2025-15218 | HIGH | 8.8 | 2.9% | Dec 30, 2025 | A weakness has been identified in Tenda AC10U 15.03.06.48/15.03.06.49. Affected by this vulnerability is the function fr... |
| CVE-2025-15217 | HIGH | 8.8 | 0.6% | Dec 30, 2025 | A security flaw has been discovered in Tenda AC23 16.03.07.52. Affected is the function formSetPPTPUserList of the compo... |
| CVE-2025-15216 | HIGH | 8.8 | 0.6% | Dec 30, 2025 | A vulnerability was identified in Tenda AC23 16.03.07.52. This impacts the function fromSetIpMacBind of the file /goform... |
| CVE-2025-15215 | HIGH | 8.8 | 0.6% | Dec 30, 2025 | A vulnerability was determined in Tenda AC10U 15.03.06.48/15.03.06.49. This affects the function formSetPPTPUserList of ... |
| CVE-2025-69235 | HIGH | 7.5 | 0.1% | Dec 30, 2025 | Whale browser before 4.35.351.12 allows an attacker to bypass the Same-Origin Policy in a sidebar environment. |
| CVE-2025-69234 | CRITICAL | 9.1 | 0.3% | Dec 30, 2025 | Whale browser before 4.35.351.12 allows an attacker to escape the iframe sandbox in a sidebar environment. |
| CVE-2025-15214 | MEDIUM | 4.8 | 0.3% | Dec 30, 2025 | A vulnerability was found in Campcodes Park Ticketing System 1.0. The impacted element is the function save_pricing of t... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now