2025 CVE Vulnerabilities
45,172 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-14663 | MEDIUM | 4.8 | 0.2% | Dec 14, 2025 | A vulnerability was determined in code-projects Student File Management System 1.0. This vulnerability affects unknown c... |
| CVE-2025-14662 | MEDIUM | 5.4 | 0.2% | Dec 14, 2025 | A vulnerability was found in code-projects Student File Management System 1.0. This affects an unknown part of the file ... |
| CVE-2025-14661 | CRITICAL | 9.8 | 0.3% | Dec 14, 2025 | A vulnerability has been found in itsourcecode Student Managemen System 1.0. Affected by this issue is some unknown func... |
| CVE-2025-14660 | MEDIUM | 5.6 | 0.3% | Dec 14, 2025 | A flaw has been found in DecoCMS Mesh up to 1.0.0-alpha.31. Affected by this vulnerability is the function createTool of... |
| CVE-2025-14659 | CRITICAL | 9.8 | 3.4% | Dec 14, 2025 | A vulnerability was detected in D-Link DIR-860LB1 and DIR-868LB1 203b01/203b03. Affected is an unknown function of the c... |
| CVE-2025-14656 | HIGH | 8.8 | 0.6% | Dec 14, 2025 | A weakness has been identified in Tenda AC20 16.03.08.12. This affects the function httpd of the file /goform/openSchedW... |
| CVE-2025-14655 | HIGH | 8.8 | 2.9% | Dec 14, 2025 | A security flaw has been discovered in Tenda AC20 16.03.08.12. The impacted element is the function formSetRebootTimer o... |
| CVE-2025-14654 | HIGH | 8.8 | 2.9% | Dec 14, 2025 | A vulnerability was identified in Tenda AC20 16.03.08.12. The affected element is the function formSetPPTPUserList of th... |
| CVE-2025-14653 | CRITICAL | 9.8 | 0.3% | Dec 14, 2025 | A vulnerability was determined in itsourcecode Student Management System 1.0. Impacted is an unknown function of the fil... |
| CVE-2025-14652 | CRITICAL | 9.8 | 0.3% | Dec 14, 2025 | A vulnerability was found in itsourcecode Online Cake Ordering System 1.0. This issue affects some unknown processing of... |
| CVE-2025-14651 | LOW | 3.7 | 0.3% | Dec 14, 2025 | A vulnerability has been found in MartialBE one-hub up to 0.14.27. This vulnerability affects unknown code of the file d... |
| CVE-2025-14650 | CRITICAL | 9.8 | 0.3% | Dec 14, 2025 | A flaw has been found in itsourcecode Online Cake Ordering System 1.0. This affects an unknown part of the file /cakesho... |
| CVE-2025-14649 | CRITICAL | 9.8 | 0.3% | Dec 14, 2025 | A vulnerability was detected in itsourcecode Online Cake Ordering System 1.0. Affected by this issue is some unknown fun... |
| CVE-2025-14648 | HIGH | 7.2 | 6.5% | Dec 14, 2025 | A security vulnerability has been detected in DedeBIZ up to 6.5.9. Affected by this vulnerability is an unknown function... |
| CVE-2025-14647 | CRITICAL | 9.8 | 0.3% | Dec 14, 2025 | A weakness has been identified in code-projects Computer Book Store 1.0. Affected is an unknown function of the file /ad... |
| CVE-2025-14646 | CRITICAL | 9.8 | 0.4% | Dec 14, 2025 | A security flaw has been discovered in code-projects Student File Management System 1.0. This impacts an unknown functio... |
| CVE-2025-14645 | CRITICAL | 9.8 | 0.4% | Dec 14, 2025 | A vulnerability was identified in code-projects Student File Management System 1.0. This affects an unknown function of ... |
| CVE-2025-12696 | MEDIUM | 5.3 | 0.1% | Dec 14, 2025 | The HelloLeads CRM Form Shortcode WordPress plugin through 1.0 does not have authorisation and CSRF check when resetting... |
| CVE-2025-12537 | MEDIUM | 6.4 | 0.2% | Dec 14, 2025 | The Addon Elements for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to... |
| CVE-2025-67897 | MEDIUM | 5.3 | 0.3% | Dec 14, 2025 | In Sequoia before 2.1.0, aes_key_unwrap panics if passed a ciphertext that is too short. A remote attacker can take adva... |
| CVE-2025-13126 | HIGH | 7.5 | 0.3% | Dec 14, 2025 | The wpForo Forum plugin for WordPress is vulnerable to generic SQL Injection via the `post_args` and `topic_args` parame... |
| CVE-2025-67896 | CRITICAL | 9.8 | 0.4% | Dec 14, 2025 | Exim before 4.99.1, with certain non-default rate-limit configurations, allows a remote heap-based buffer overflow becau... |
| CVE-2025-14644 | CRITICAL | 9.8 | 0.3% | Dec 14, 2025 | A vulnerability was determined in itsourcecode Student Management System 1.0. The impacted element is an unknown functio... |
| CVE-2025-14643 | CRITICAL | 9.8 | 0.4% | Dec 14, 2025 | A vulnerability was found in code-projects Simple Attendance Record System 2.0. The affected element is an unknown funct... |
| CVE-2025-14642 | HIGH | 7.2 | 0.3% | Dec 14, 2025 | A vulnerability has been found in code-projects Computer Laboratory System 1.0. Impacted is an unknown function of the f... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now