2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-15207CRITICAL9.8A vulnerability has been found in Campcodes Supplier Management System 1.0. Affected is an unknown function of the file ...
CVE-2025-15206CRITICAL9.8A flaw has been found in Campcodes Supplier Management System 1.0. This impacts an unknown function of the file /admin/a...
CVE-2025-68706CRITICAL9.8A stack-based buffer overflow exists in the GoAhead-Webs HTTP daemon on KuWFi 4G LTE AC900 devices with firmware 1.0.13....
CVE-2025-15198CRITICAL9.8A weakness has been identified in code-projects College Notes Uploading System 1.0. This issue affects some unknown proc...
CVE-2025-15196CRITICAL9.8A vulnerability was identified in code-projects Assessment Management 1.0. This affects an unknown part of the file logi...
CVE-2025-69201CRITICAL9.8Tugtainer is a self-hosted app for automating updates of docker containers. In versions prior to 1.15.1, arbitary argume...
CVE-2025-68897CRITICAL9.9Improper Control of Generation of Code ('Code Injection') vulnerability in Mohammad I. Okfie IF AS Shortcode if-as-short...
CVE-2025-56333CRITICAL9.8An issue in Fossorial fosrl/pangolin v.1.6.2 and before allows a remote attacker to escalate privileges via the 2FA comp...
CVE-2025-15195CRITICAL9.8A vulnerability was determined in code-projects Assessment Management 1.0. Affected by this issue is some unknown functi...
CVE-2025-15194CRITICAL9.8A vulnerability was found in D-Link DIR-600 up to 2.15WWb02. Affected by this vulnerability is an unknown functionality ...
CVE-2025-68929CRITICAL9Frappe is a full-stack web application framework. Prior to versions 14.99.6 and 15.88.1, an authenticated user with spec...
CVE-2025-65570CRITICAL9.8A type confusion in jsish 2.0 allows incorrect control flow during execution of the OP_NEXT opcode. When an “instanceof”...
CVE-2025-57460CRITICAL9.8File upload vulnerability in machsol machpanel 8.0.32 allows attacker to gain a webshell.
CVE-2025-15186CRITICAL9.8A vulnerability has been found in code-projects Refugee Food Management System 1.0. Affected by this issue is some unkno...
CVE-2025-15185CRITICAL9.8A flaw has been found in code-projects Refugee Food Management System 1.0. Affected by this vulnerability is an unknown ...
CVE-2025-15184CRITICAL9.8A vulnerability was detected in code-projects Refugee Food Management System 1.0. Affected is an unknown function of the...
CVE-2025-15183CRITICAL9.8A security vulnerability has been detected in code-projects Refugee Food Management System 1.0. This impacts an unknown ...
CVE-2025-15182CRITICAL9.8A weakness has been identified in code-projects Refugee Food Management System 1.0. This affects an unknown function of ...
CVE-2025-15181CRITICAL9.8A security flaw has been discovered in code-projects Refugee Food Management System 1.0. The impacted element is an unkn...
CVE-2025-15228CRITICAL9.8BPMFlowWebkit developed by WELLTEND TECHNOLOGY has a Arbitrary File Upload vulnerability, allowing unauthenticated remot...
CVE-2025-15226CRITICAL9.8WMPro developed by Sunnet has a Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload...
CVE-2025-15069CRITICAL9.8Improper Authentication vulnerability in Gmission Web Fax allows Privilege Escalation.This issue affects Web Fax: from 3...
CVE-2025-15068CRITICAL9.8Missing Authorization vulnerability in Gmission Web Fax allows Authentication Abuse, Session Credential Falsification th...
CVE-2025-52691CRITICAL10Successful exploitation of the vulnerability could allow an unauthenticated attacker to upload arbitrary files to any lo...
CVE-2025-15168CRITICAL9.8A vulnerability was identified in itsourcecode Student Management System 1.0. Affected is an unknown function of the fil...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now