2025 CVE Vulnerabilities

45,153 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-15242LOW3.1A vulnerability was detected in PHPEMS up to 11.0. The impacted element is an unknown function of the component Coupon H...
CVE-2025-15358HIGH7.5DVP-12SE11T - Denial of Service Vulnerability
CVE-2025-15241LOW3.5A security vulnerability has been detected in CloudPanel Community Edition up to 2.5.1. The affected element is an unkno...
CVE-2025-15234HIGH8.8A weakness has been identified in Tenda M3 1.0.0.13(4903). Impacted is the function formSetRemoteInternetLanInfo of the ...
CVE-2025-15103CRITICAL9.8DVP-12SE11T - Authentication Bypass via Partial Password Disclosure
CVE-2025-15102CRITICAL9.8DVP-12SE11T - Password Protection Bypass
CVE-2025-15355MEDIUM6.1ISOinsight developed by NetVision Information has a Reflected Cross-site Scripting vulnerability, allowing unauthenticat...
CVE-2025-15233HIGH8.8A security flaw has been discovered in Tenda M3 1.0.0.13(4903). This issue affects the function formSetAdInfoDetails of ...
CVE-2025-15232HIGH8.8A vulnerability was identified in Tenda M3 1.0.0.13(4903). This vulnerability affects the function formSetAdPushInfo of ...
CVE-2025-15231HIGH8.8A vulnerability was determined in Tenda M3 1.0.0.13(4903). This affects the function formSetRemoteVlanInfo of the file /...
CVE-2025-15230HIGH8.8A vulnerability was found in Tenda M3 1.0.0.13(4903). Affected by this issue is the function formSetVlanPolicy of the fi...
CVE-2025-15229HIGH7.5A vulnerability has been found in Tenda CH22 up to 1.0.0.1. Affected by this vulnerability is the function fromDhcpListC...
CVE-2025-15222MEDIUM5A vulnerability has been found in Dromara Sa-Token up to 1.44.0. This issue affects the function ObjectInputStream.readO...
CVE-2025-14313MEDIUM6.1The Advance WP Query Search Filter WordPress plugin through 1.0.10 does not sanitise and escape a parameter before outpu...
CVE-2025-14312MEDIUM6.1The Advance WP Query Search Filter WordPress plugin through 1.0.10 does not sanitise and escape a parameter before outpu...
CVE-2025-15221MEDIUM5.4A flaw has been found in SohuTV CacheCloud up to 3.2.0. This vulnerability affects the function index of the file src/ma...
CVE-2025-15220MEDIUM6.1A vulnerability was detected in SohuTV CacheCloud up to 3.2.0. This affects the function init of the file src/main/java/...
CVE-2025-15219MEDIUM5.4A security vulnerability has been detected in SohuTV CacheCloud up to 3.2.0. Affected by this issue is the function doMa...
CVE-2025-15218HIGH8.8A weakness has been identified in Tenda AC10U 15.03.06.48/15.03.06.49. Affected by this vulnerability is the function fr...
CVE-2025-15217HIGH8.8A security flaw has been discovered in Tenda AC23 16.03.07.52. Affected is the function formSetPPTPUserList of the compo...
CVE-2025-15216HIGH8.8A vulnerability was identified in Tenda AC23 16.03.07.52. This impacts the function fromSetIpMacBind of the file /goform...
CVE-2025-15215HIGH8.8A vulnerability was determined in Tenda AC10U 15.03.06.48/15.03.06.49. This affects the function formSetPPTPUserList of ...
CVE-2025-69235HIGH7.5Whale browser before 4.35.351.12 allows an attacker to bypass the Same-Origin Policy in a sidebar environment.
CVE-2025-69234CRITICAL9.1Whale browser before 4.35.351.12 allows an attacker to escape the iframe sandbox in a sidebar environment.
CVE-2025-15214MEDIUM4.8A vulnerability was found in Campcodes Park Ticketing System 1.0. The impacted element is the function save_pricing of t...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now