2025 CVE Vulnerabilities

45,158 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-29893HIGH8.8An SQL injection vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, the...
CVE-2025-29887HIGH7.2A command injection vulnerability has been reported to affect QuRouter 2.5.1. If a remote attacker gains an administrato...
CVE-2025-9664HIGH8.8A security flaw has been discovered in code-projects Simple Grading System 1.0. Affected is an unknown function of the f...
CVE-2025-9663HIGH8.8A vulnerability was identified in code-projects Simple Grading System 1.0. This impacts an unknown function of the file ...
CVE-2025-55763HIGH7.5Buffer Overflow in the URI parser of CivetWeb 1.14 through 1.16 (latest) allows a remote attacker to achieve remote code...
CVE-2025-5808HIGH7.3Improper Input Validation vulnerability in OpenText Self Service Password Reset allows Authentication Bypass.This issue ...
CVE-2025-47909HIGH7.3Hosts listed in TrustedOrigins implicitly allow requests from the corresponding HTTP origins, allowing network MitMs to ...
CVE-2025-53508HIGH8.6Multiple products provided by iND Co.,Ltd contain an OS command injection vulnerability. If exploited, an arbitrary OS c...
CVE-2025-53507HIGH7.1Multiple products provided by iND Co.,Ltd contain an insecure storage of sensitive information vulnerability. If exploit...
CVE-2025-9639HIGH8.7The QbiCRMGateway developed by Ai3 has an Arbitrary File Reading vulnerability, allowing unauthenticated remote attacker...
CVE-2025-9609HIGH8.8A vulnerability was found in Portabilis i-Educar up to 2.10. This vulnerability affects unknown code of the file /educac...
CVE-2025-8858HIGH8.7Clinic Image System developed by Changing has a SQL Injection vulnerability, allowing unauthenticated remote attackers t...
CVE-2025-9608HIGH8.8A vulnerability has been found in Portabilis i-Educar up to 2.10. This affects an unknown part of the file /module/Formu...
CVE-2025-9607HIGH8.8A flaw has been found in Portabilis i-Educar up to 2.10. Affected by this issue is some unknown functionality of the fil...
CVE-2025-9606HIGH8.8A vulnerability was detected in Portabilis i-Educar up to 2.10. Affected by this vulnerability is an unknown functionali...
CVE-2025-58323HIGH7.7NAVER MYBOX Explorer for Windows before 3.0.8.133 allows a local attacker to escalate privileges to NT AUTHORITY\SYSTEM ...
CVE-2025-39247HIGH8.6There is an Access Control Vulnerability in some HikCentral Professional versions. This could allow an unauthenticated u...
CVE-2025-43268HIGH7.8A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.6. A malicious a...
CVE-2025-43187HIGH7.8This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7...
CVE-2025-40927HIGH7.3CGI::Simple versions before 1.282 for Perl has a HTTP response splitting flaw This vulnerability is a confirmed HTTP res...
CVE-2025-58062HIGH7.3LSTM-Kirigaya's openmcp-client is a vscode plugin for mcp developer. Prior to version 0.1.12, when users on a Windows pl...
CVE-2025-9586HIGH8.8A vulnerability was identified in Comfast CF-N1 2.6.0. This vulnerability affects the function wireless_device_dissoc of...
CVE-2025-9585HIGH8.8A vulnerability was determined in Comfast CF-N1 2.6.0. This affects the function wifilith_delete_pic_file of the file /u...
CVE-2025-9584HIGH8.8A vulnerability was found in Comfast CF-N1 2.6.0. Affected by this issue is the function update_interface_png of the fil...
CVE-2025-9583HIGH8.8A vulnerability has been found in Comfast CF-N1 2.6.0. Affected by this vulnerability is the function ping_config of the...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now