2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-15167CRITICAL9.8A vulnerability was determined in itsourcecode Online Cake Ordering System 1.0. This impacts an unknown function of the ...
CVE-2025-15166CRITICAL9.8A vulnerability was found in itsourcecode Online Cake Ordering System 1.0. This affects an unknown function of the file ...
CVE-2025-15165CRITICAL9.8A vulnerability has been found in itsourcecode Online Cake Ordering System 1.0. The impacted element is an unknown funct...
CVE-2025-15127CRITICAL9.8A security vulnerability has been detected in FantasticLBP Hotels_Server up to 67b44df162fab26df209bd5d5d542875fcbec1d0....
CVE-2025-54322CRITICAL9.8Xspeeder SXZOS through 2025-12-26 allows root remote code execution via base64-encoded Python code in the chkid paramete...
CVE-2025-68952CRITICAL9.8Eigent is a multi-agent Workforce. In version 0.0.60, a 1-click Remote Code Execution (RCE) vulnerability has been ident...
CVE-2025-68932CRITICAL9.8FreshRSS is a free, self-hostable RSS aggregator. Prior to version 1.28.0, FreshRSS uses cryptographically weak random n...
CVE-2025-66203CRITICAL9.1StreamVault is a video download integration solution. Prior to version 251126, a Remote Code Execution (RCE) vulnerabili...
CVE-2025-68668CRITICAL9.9n8n is an open source workflow automation platform. From version 1.0.0 to before 2.0.0, a sandbox bypass vulnerability e...
CVE-2025-13158CRITICAL9.3Prototype pollution vulnerability in apidoc-core versions 0.2.0 and all subsequent versions allows remote attackers to m...
CVE-2025-13915CRITICAL9.8IBM API Connect 10.0.8.0 through 10.0.8.5, and 10.0.11.0 could allow a remote attacker to bypass authentication mechanis...
CVE-2025-15099CRITICAL9.8A vulnerability was identified in simstudioai sim up to 0.5.27. This vulnerability affects unknown code of the file apps...
CVE-2025-15092CRITICAL9.8A vulnerability was identified in UTT 进取 512W up to 1.7.7-171114. Impacted is the function strcpy of the file /goform/Co...
CVE-2025-68937CRITICAL9.5Forgejo before 13.0.2 allows attackers to write to unintended files, and possibly obtain server shell access, because of...
CVE-2025-15091CRITICAL9.8A vulnerability was determined in UTT 进取 512W up to 1.7.7-171114. This issue affects the function strcpy of the file /go...
CVE-2025-15090CRITICAL9.8A vulnerability was found in UTT 进取 512W up to 1.7.7-171114. This vulnerability affects the function strcpy of the file ...
CVE-2025-15089CRITICAL9.8A vulnerability has been found in UTT 进取 512W up to 1.7.7-171114. This affects the function strcpy of the file /goform/A...
CVE-2025-59683CRITICAL9.1Pexip Infinity 15.0 through 38.0 before 38.1 has Improper Access Control in the Secure Scheduler for Exchange service, w...
CVE-2025-15078CRITICAL9.8A vulnerability was detected in itsourcecode Student Management System 1.0. The impacted element is an unknown function ...
CVE-2025-15077CRITICAL9.8A security vulnerability has been detected in itsourcecode Student Management System 1.0. The affected element is an unk...
CVE-2025-15075CRITICAL9.8A security flaw has been discovered in itsourcecode Student Management System 1.0. This issue affects some unknown proce...
CVE-2025-15074CRITICAL9.8A vulnerability was identified in itsourcecode Online Frozen Foods Ordering System 1.0. This vulnerability affects unkno...
CVE-2025-15073CRITICAL9.8A vulnerability was determined in itsourcecode Online Frozen Foods Ordering System 1.0. This affects an unknown part of ...
CVE-2025-8769CRITICAL9.8Telenium Online Web Application is vulnerable due to a Perl script that is called to load the login page. Due to improp...
CVE-2025-68745CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Clear cmds after chip reset Commit ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now