2025 CVE Vulnerabilities

45,320 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-14346CRITICAL9.8WHILL Model C2 Electric Wheelchairs and Model F Power Chairs do not enforce authentication for Bluetooth connections. An...
CVE-2025-15029CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Centreon Infra Mon...
CVE-2025-15026CRITICAL9.8Missing Authentication for Critical Function vulnerability in Centreon Infra Monitoring centreon-awie (Awie import modul...
CVE-2025-68865CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Infility Infility ...
CVE-2025-31048CRITICAL9.9Unrestricted Upload of File with Dangerous Type vulnerability in Themify Shopo allows Upload a Web Shell to a Web Server...
CVE-2025-30633CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AA-Team Amazon Nat...
CVE-2025-15458CRITICAL9.8A vulnerability was determined in bg5sbk MiniCMS up to 1.8. This affects an unknown function of the file /mc-admin/post-...
CVE-2025-15457CRITICAL9.8A vulnerability was found in bg5sbk MiniCMS up to 1.8. The impacted element is an unknown function of the file /minicms/...
CVE-2025-15449CRITICAL9.1A vulnerability was determined in cld378632668 JavaMall up to 994f1e2b019378ec9444cdf3fce2d5b5f72d28f0. Affected is the ...
CVE-2025-15448CRITICAL9.8A vulnerability was found in cld378632668 JavaMall up to 994f1e2b019378ec9444cdf3fce2d5b5f72d28f0. This impacts the func...
CVE-2025-3654CRITICAL9.8Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an information disclosure vulnerability that allows un...
CVE-2025-3653CRITICAL9.8Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an improper access control vulnerability that allows u...
CVE-2025-15115CRITICAL9.8Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an authentication bypass vulnerability that allows una...
CVE-2025-64125CRITICAL9.4A vulnerability in Nuvation Energy nCloud VPN Service allowed Network Boundary Bridging.This issue affected the nCloud V...
CVE-2025-64123CRITICAL9.8Unintended Proxy or Intermediary vulnerability in Nuvation Energy Multi-Stack Controller (MSC) allows Network Boundary B...
CVE-2025-64121CRITICAL9.8Authentication Bypass Using an Alternate Path or Channel vulnerability in Nuvation Energy Multi-Stack Controller (MSC) a...
CVE-2025-64119CRITICAL9.3A vulnerability in Nuvation Battery Management System allows Authentication Bypass.This issue affects Battery Management...
CVE-2025-67268CRITICAL9.8gpsd before commit dc966aa contains a heap-based out-of-bounds write vulnerability in the drivers/driver_nmea2000.c file...
CVE-2025-59389CRITICAL9.8An SQL injection vulnerability has been reported to affect Hyper Data Protector. The remote attackers can then exploit t...
CVE-2025-11837CRITICAL9.8An improper control of generation of code vulnerability has been reported to affect Malware Remover. The remote attacker...
CVE-2025-65125CRITICAL9.8SQL injection in gosaliajainam/online-movie-booking 5.5 in movie_details.php allows attackers to gain sensitive informat...
CVE-2025-15436CRITICAL9.8A vulnerability has been found in Yonyou KSOA 9.0. Affected by this issue is some unknown functionality of the file /wor...
CVE-2025-15435CRITICAL9.8A flaw has been found in Yonyou KSOA 9.0. Affected by this vulnerability is an unknown functionality of the file /worksh...
CVE-2025-15434CRITICAL9.8A vulnerability was detected in Yonyou KSOA 9.0. Affected is an unknown function of the file /kp/PrintZPYG.jsp. The mani...
CVE-2025-15425CRITICAL9.8A vulnerability was determined in Yonyou KSOA 9.0. The impacted element is an unknown function of the file /worksheet/de...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now