2025 CVE Vulnerabilities

45,172 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-14663MEDIUM4.8A vulnerability was determined in code-projects Student File Management System 1.0. This vulnerability affects unknown c...
CVE-2025-14662MEDIUM5.4A vulnerability was found in code-projects Student File Management System 1.0. This affects an unknown part of the file ...
CVE-2025-14661CRITICAL9.8A vulnerability has been found in itsourcecode Student Managemen System 1.0. Affected by this issue is some unknown func...
CVE-2025-14660MEDIUM5.6A flaw has been found in DecoCMS Mesh up to 1.0.0-alpha.31. Affected by this vulnerability is the function createTool of...
CVE-2025-14659CRITICAL9.8A vulnerability was detected in D-Link DIR-860LB1 and DIR-868LB1 203b01/203b03. Affected is an unknown function of the c...
CVE-2025-14656HIGH8.8A weakness has been identified in Tenda AC20 16.03.08.12. This affects the function httpd of the file /goform/openSchedW...
CVE-2025-14655HIGH8.8A security flaw has been discovered in Tenda AC20 16.03.08.12. The impacted element is the function formSetRebootTimer o...
CVE-2025-14654HIGH8.8A vulnerability was identified in Tenda AC20 16.03.08.12. The affected element is the function formSetPPTPUserList of th...
CVE-2025-14653CRITICAL9.8A vulnerability was determined in itsourcecode Student Management System 1.0. Impacted is an unknown function of the fil...
CVE-2025-14652CRITICAL9.8A vulnerability was found in itsourcecode Online Cake Ordering System 1.0. This issue affects some unknown processing of...
CVE-2025-14651LOW3.7A vulnerability has been found in MartialBE one-hub up to 0.14.27. This vulnerability affects unknown code of the file d...
CVE-2025-14650CRITICAL9.8A flaw has been found in itsourcecode Online Cake Ordering System 1.0. This affects an unknown part of the file /cakesho...
CVE-2025-14649CRITICAL9.8A vulnerability was detected in itsourcecode Online Cake Ordering System 1.0. Affected by this issue is some unknown fun...
CVE-2025-14648HIGH7.2A security vulnerability has been detected in DedeBIZ up to 6.5.9. Affected by this vulnerability is an unknown function...
CVE-2025-14647CRITICAL9.8A weakness has been identified in code-projects Computer Book Store 1.0. Affected is an unknown function of the file /ad...
CVE-2025-14646CRITICAL9.8A security flaw has been discovered in code-projects Student File Management System 1.0. This impacts an unknown functio...
CVE-2025-14645CRITICAL9.8A vulnerability was identified in code-projects Student File Management System 1.0. This affects an unknown function of ...
CVE-2025-12696MEDIUM5.3The HelloLeads CRM Form Shortcode WordPress plugin through 1.0 does not have authorisation and CSRF check when resetting...
CVE-2025-12537MEDIUM6.4The Addon Elements for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to...
CVE-2025-67897MEDIUM5.3In Sequoia before 2.1.0, aes_key_unwrap panics if passed a ciphertext that is too short. A remote attacker can take adva...
CVE-2025-13126HIGH7.5The wpForo Forum plugin for WordPress is vulnerable to generic SQL Injection via the `post_args` and `topic_args` parame...
CVE-2025-67896CRITICAL9.8Exim before 4.99.1, with certain non-default rate-limit configurations, allows a remote heap-based buffer overflow becau...
CVE-2025-14644CRITICAL9.8A vulnerability was determined in itsourcecode Student Management System 1.0. The impacted element is an unknown functio...
CVE-2025-14643CRITICAL9.8A vulnerability was found in code-projects Simple Attendance Record System 2.0. The affected element is an unknown funct...
CVE-2025-14642HIGH7.2A vulnerability has been found in code-projects Computer Laboratory System 1.0. Impacted is an unknown function of the f...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now