2025 CVE Vulnerabilities
45,158 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-47696 | HIGH | 8.1 | 0.4% | Aug 31, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-9690 | HIGH | 8.8 | 0.3% | Aug 30, 2025 | A flaw has been found in SourceCodester Advanced School Management System 1.0. This affects an unknown function of the f... |
| CVE-2025-9689 | HIGH | 8.8 | 0.3% | Aug 30, 2025 | A vulnerability was detected in SourceCodester Advanced School Management System 1.0. The impacted element is an unknown... |
| CVE-2025-9687 | HIGH | 8.8 | 0.4% | Aug 30, 2025 | A weakness has been identified in Portabilis i-Educar up to 2.10. Impacted is an unknown function of the file /module/Hi... |
| CVE-2025-9686 | HIGH | 8.8 | 0.4% | Aug 30, 2025 | A security flaw has been discovered in Portabilis i-Educar up to 2.10. This issue affects some unknown processing of the... |
| CVE-2025-9685 | HIGH | 8.8 | 0.4% | Aug 30, 2025 | A vulnerability was identified in Portabilis i-Educar up to 2.10. This vulnerability affects unknown code of the file /m... |
| CVE-2025-9684 | HIGH | 8.8 | 0.4% | Aug 30, 2025 | A vulnerability was determined in Portabilis i-Educar up to 2.10. This affects an unknown part of the file /module/Formu... |
| CVE-2025-38677 | HIGH | 7.1 | 0.2% | Aug 30, 2025 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid out-of-boundary access in dnode ... |
| CVE-2025-34165 | HIGH | 8.8 | 0.5% | Aug 30, 2025 | A stack-based buffer overflow vulnerability in NetSupport Manager 14.x versions prior to 14.12.0000 allows a remote, una... |
| CVE-2025-58159 | HIGH | 8.8 | 0.7% | Aug 29, 2025 | WeGIA is a Web manager for charitable institutions. Prior to version 3.4.11, a remote code execution vulnerability was i... |
| CVE-2025-58157 | HIGH | 7.5 | 0.5% | Aug 29, 2025 | gnark is a zero-knowledge proof system framework. In version 0.12.0, there is a potential denial of service vulnerabilit... |
| CVE-2025-57822 | HIGH | 8.2 | 2.3% | Aug 29, 2025 | Next.js is a React framework for building full-stack web applications. Prior to versions 14.2.32 and 15.4.7, when next()... |
| CVE-2025-56577 | HIGH | 8.4 | 0.1% | Aug 29, 2025 | An issue in Evope Core v.1.1.3.20 allows a local attacker to obtain sensitive information via the use of hard coded cryp... |
| CVE-2025-9667 | HIGH | 8.8 | 0.4% | Aug 29, 2025 | A vulnerability was detected in code-projects Simple Grading System 1.0. This affects an unknown part of the file /delet... |
| CVE-2025-9666 | HIGH | 8.8 | 0.3% | Aug 29, 2025 | A security vulnerability has been detected in code-projects Simple Grading System 1.0. Affected by this issue is some un... |
| CVE-2025-9665 | HIGH | 8.8 | 0.4% | Aug 29, 2025 | A weakness has been identified in code-projects Simple Grading System 1.0. Affected by this vulnerability is an unknown ... |
| CVE-2025-9377 | HIGH | 7.2 | 11.7% | Aug 29, 2025 | The authenticated remote command execution (RCE) vulnerability exists in the Parental Control page on TP-Link Archer C7... |
| CVE-2025-58158 | HIGH | 8.8 | 0.5% | Aug 29, 2025 | Harness Open Source is an end-to-end developer platform with Source Control Management, CI/CD Pipelines, Hosted Develope... |
| CVE-2025-52861 | HIGH | 7 | 0.6% | Aug 29, 2025 | A path traversal vulnerability has been reported to affect VioStor. If a remote attacker gains an administrator account,... |
| CVE-2025-44015 | HIGH | 8.4 | 0.9% | Aug 29, 2025 | A command injection vulnerability has been reported to affect HybridDesk Station. If an attacker gains local network acc... |
| CVE-2025-30278 | HIGH | 8.8 | 0.2% | Aug 29, 2025 | An improper certificate validation vulnerability has been reported to affect Qsync Central. If a remote attacker gains a... |
| CVE-2025-30277 | HIGH | 8.8 | 0.2% | Aug 29, 2025 | An improper certificate validation vulnerability has been reported to affect Qsync Central. If a remote attacker gains a... |
| CVE-2025-30273 | HIGH | 8.1 | 0.3% | Aug 29, 2025 | An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If a remote att... |
| CVE-2025-30264 | HIGH | 8.8 | 0.9% | Aug 29, 2025 | A command injection vulnerability has been reported to affect several QNAP operating system versions. If a remote attack... |
| CVE-2025-29894 | HIGH | 8.8 | 0.4% | Aug 29, 2025 | An SQL injection vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, the... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now