2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-15357CRITICAL9.8A vulnerability was found in D-Link DI-7400G+ 19.12.25A1. This affects an unknown function of the file /msp_info.htm?fla...
CVE-2025-50343CRITICAL9.8An issue was discovered in matio 1.5.28. A heap-based memory corruption can occur in Mat_VarCreateStruct() when the nfie...
CVE-2025-15354CRITICAL9.8A flaw has been found in itsourcecode Society Management System 1.0. The affected element is an unknown function of the ...
CVE-2025-15353CRITICAL9.8A vulnerability was detected in itsourcecode Society Management System 1.0. Impacted is the function edit_admin_query of...
CVE-2025-15263CRITICAL9.8A weakness has been identified in BiggiDroid Simple PHP CMS 1.0. Affected is an unknown function of the file /admin/logi...
CVE-2025-56332CRITICAL9.1Authentication Bypass in fosrl/pangolin v1.6.2 and before allows attackers to access Pangolin resource via Insecure Defa...
CVE-2025-68926CRITICAL9.8RustFS is a distributed object storage system built in Rust. In versions prior to 1.0.0-alpha.78, RustFS implements gRPC...
CVE-2025-66848CRITICAL9.8JD Cloud NAS routers AX1800 (4.3.1.r4308 and earlier), AX3000 (4.3.1.r4318 and earlier), AX6600 (4.5.1.r4533 and earlier...
CVE-2025-52835CRITICAL9.6Cross-Site Request Forgery (CSRF) vulnerability in ConoHa by GMO WING WordPress Migrator wing-migrator allows Upload a W...
CVE-2025-15257CRITICAL9.8A security flaw has been discovered in Edimax BR-6208AC 1.02/1.03. Affected by this vulnerability is the function formRo...
CVE-2025-15256CRITICAL9.8A vulnerability was identified in Edimax BR-6208AC 1.02/1.03. Affected is the function formStaDrvSetup of the file /gofo...
CVE-2025-15255CRITICAL9.8A vulnerability was determined in Tenda W6-S 1.0.0.4(510). This impacts an unknown function of the file /bin/httpd of th...
CVE-2025-15247CRITICAL9.8A vulnerability was identified in gmg137 snap7-rs up to 153d3e8c16decd7271e2a5b2e3da4d6f68589424. Affected by this issue...
CVE-2025-15359CRITICAL9.8DVP-12SE11T - Out-of-bound memory write Vulnerability
CVE-2025-15243CRITICAL9.8A flaw has been found in code-projects Simple Stock System 1.0. This affects an unknown function of the file /market/log...
CVE-2025-15103CRITICAL9.8DVP-12SE11T - Authentication Bypass via Partial Password Disclosure
CVE-2025-15102CRITICAL9.8DVP-12SE11T - Password Protection Bypass
CVE-2025-69234CRITICAL9.1Whale browser before 4.35.351.12 allows an attacker to escape the iframe sandbox in a sidebar environment.
CVE-2025-15212CRITICAL9.8A vulnerability was detected in code-projects Refugee Food Management System 1.0. This issue affects some unknown proces...
CVE-2025-15211CRITICAL9.8A flaw has been found in code-projects Refugee Food Management System 1.0. Impacted is an unknown function of the file /...
CVE-2025-15210CRITICAL9.8A security vulnerability has been detected in code-projects Refugee Food Management System 1.0. This vulnerability affec...
CVE-2025-15209CRITICAL9.8A weakness has been identified in code-projects Refugee Food Management System 1.0. This affects an unknown part of the ...
CVE-2025-15208CRITICAL9.8A security flaw has been discovered in code-projects Refugee Food Management System 1.0. Affected by this issue is some ...
CVE-2025-68860CRITICAL9.8Authentication Bypass Using an Alternate Path or Channel vulnerability in Mobile Builder Mobile builder mobile-builder a...
CVE-2025-68562CRITICAL9.9Unrestricted Upload of File with Dangerous Type vulnerability in RomanCode MapSVG allows Upload a Web Shell to a Web Ser...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now