2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-68341 | CRITICAL | 9.8 | 0.2% | Dec 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: veth: reduce XDP no_direct return section to fix ra... |
| CVE-2025-14388 | CRITICAL | 9.8 | 0.4% | Dec 23, 2025 | The PhastPress plugin for WordPress is vulnerable to Unauthenticated Arbitrary File Read via null byte injection in all ... |
| CVE-2025-15034 | CRITICAL | 9.8 | 0.3% | Dec 23, 2025 | A security flaw has been discovered in itsourcecode Student Management System 1.0. This affects an unknown part of the f... |
| CVE-2025-68615 | CRITICAL | 9.8 | 42.7% | Dec 23, 2025 | net-snmp is a SNMP application library, tools and daemon. Prior to versions 5.9.5 and 5.10.pre2, a specially crafted pac... |
| CVE-2025-65856 | CRITICAL | 9.8 | 0.7% | Dec 22, 2025 | Authentication bypass vulnerability in Xiongmai XM530 IP cameras on Firmware V5.00.R02.000807D8.10010.346624.S.ONVIF 21.... |
| CVE-2025-67418 | CRITICAL | 9.8 | 0.6% | Dec 22, 2025 | ClipBucket 5.5.2 is affected by an improper access control issue where the product is shipped or deployed with hardcoded... |
| CVE-2025-67288 | CRITICAL | 10 | 0.5% | Dec 22, 2025 | An arbitrary file upload vulnerability in Umbraco CMS v16.3.3 allows attackers to execute arbitrary code by uploading a ... |
| CVE-2025-67289 | CRITICAL | 9.6 | 0.4% | Dec 22, 2025 | An arbitrary file upload vulnerability in the Attachments module of Frappe Framework v15.89.0 allows attackers to execut... |
| CVE-2025-11545 | CRITICAL | 9.5 | 0.3% | Dec 22, 2025 | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Sharp Display Solutions proj... |
| CVE-2025-11544 | CRITICAL | 9.5 | 0.3% | Dec 22, 2025 | Improper Validation of Integrity Check Value vulnerability in Sharp Display Solutions projectors allows a attacker may c... |
| CVE-2025-15012 | CRITICAL | 9.8 | 0.3% | Dec 22, 2025 | A vulnerability was determined in code-projects Refugee Food Management System 1.0. The affected element is an unknown f... |
| CVE-2025-12049 | CRITICAL | 9.8 | 0.3% | Dec 22, 2025 | Missing Authentication for Critical Function vulnerability in Sharp Display Solutions Media Player MP-01 All Verisons al... |
| CVE-2025-11543 | CRITICAL | 9.8 | 0.2% | Dec 22, 2025 | Improper Validation of Integrity Check Value vulnerability in Sharp Display Solutions projectors allows a attacker may c... |
| CVE-2025-11542 | CRITICAL | 9.8 | 0.4% | Dec 22, 2025 | Stack-based Buffer Overflow vulnerability in Sharp Display Solutions projectors allows a attacker may execute arbitrary ... |
| CVE-2025-11541 | CRITICAL | 9.8 | 0.4% | Dec 22, 2025 | Stack-based Buffer Overflow vulnerability in Sharp Display Solutions projectors allows a attacker may execute arbitrary ... |
| CVE-2025-15016 | CRITICAL | 9.8 | 0.4% | Dec 22, 2025 | Enterprise Cloud Database developed by Ragic has a Hard-coded Cryptographic Key vulnerability, allowing unauthenticated ... |
| CVE-2025-15011 | CRITICAL | 9.8 | 0.3% | Dec 22, 2025 | A vulnerability was found in code-projects Simple Stock System 1.0. Impacted is an unknown function of the file /logout.... |
| CVE-2025-15010 | CRITICAL | 9.8 | 0.9% | Dec 22, 2025 | A vulnerability has been found in Tenda WH450 1.0.0.18. This issue affects some unknown processing of the file /goform/S... |
| CVE-2025-15008 | CRITICAL | 9.8 | 0.5% | Dec 22, 2025 | A vulnerability was detected in Tenda WH450 1.0.0.18. This affects an unknown part of the file /goform/L7Port of the com... |
| CVE-2025-15007 | CRITICAL | 9.8 | 0.9% | Dec 22, 2025 | A security vulnerability has been detected in Tenda WH450 1.0.0.18. Affected by this issue is some unknown functionality... |
| CVE-2025-15006 | CRITICAL | 9.8 | 0.8% | Dec 22, 2025 | A weakness has been identified in Tenda WH450 1.0.0.18. Affected by this vulnerability is an unknown functionality of th... |
| CVE-2025-15002 | CRITICAL | 9.8 | 0.4% | Dec 21, 2025 | A vulnerability has been found in SeaCMS up to 13.3. The affected element is an unknown function of the file js/player/d... |
| CVE-2025-14990 | CRITICAL | 9.8 | 0.3% | Dec 21, 2025 | A security flaw has been discovered in Campcodes Complete Online Beauty Parlor Management System 1.0. Impacted is an unk... |
| CVE-2025-14989 | CRITICAL | 9.8 | 0.3% | Dec 21, 2025 | A vulnerability was identified in Campcodes Complete Online Beauty Parlor Management System 1.0. This issue affects some... |
| CVE-2025-13619 | CRITICAL | 9.8 | 0.3% | Dec 20, 2025 | The Flex Store Users plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now