2025 CVE Vulnerabilities

45,320 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-66844CRITICAL9.1In grav <1.7.49.5, a SSRF (Server-Side Request Forgery) vector may be triggered via Twig templates when page content is ...
CVE-2025-13888CRITICAL9.1A flaw was found in OpenShift GitOps. Namespace admins can create ArgoCD Custom Resources (CRs) that trick the system in...
CVE-2025-14156CRITICAL9.8The Fox LMS – WordPress LMS Plugin plugin for WordPress is vulnerable to privilege escalation in all versions up to, and...
CVE-2025-14711CRITICAL9.8A flaw has been found in FantasticLBP Hotels Server up to 67b44df162fab26df209bd5d5d542875fcbec1d0. This vulnerability a...
CVE-2025-14710CRITICAL9.8A vulnerability was detected in FantasticLBP Hotels Server up to 67b44df162fab26df209bd5d5d542875fcbec1d0. This affects ...
CVE-2025-14709CRITICAL9.8A security vulnerability has been detected in Shiguangwu sgwbox N3 2.0.25. Affected by this issue is some unknown functi...
CVE-2025-14707CRITICAL9.8A security flaw has been discovered in Shiguangwu sgwbox N3 2.0.25. Affected is an unknown function of the file /usr/sbi...
CVE-2025-14706CRITICAL9.8A vulnerability was identified in Shiguangwu sgwbox N3 2.0.25. This impacts an unknown function of the file /usr/sbin/ht...
CVE-2025-14705CRITICAL9.8A vulnerability was determined in Shiguangwu sgwbox N3 2.0.25. This affects an unknown function of the component SHARESE...
CVE-2025-14704CRITICAL9.8A vulnerability was found in Shiguangwu sgwbox N3 2.0.25. The impacted element is an unknown function of the file /eshel...
CVE-2025-67906CRITICAL9In MISP before 2.5.28, app/View/Elements/Workflows/executionPath.ctp allows XSS in the workflow execution path.
CVE-2025-14673CRITICAL9.8A vulnerability has been found in gmg137 snap7-rs up to 1.142.1. Affected is the function snap7_rs::client::S7Client::as...
CVE-2025-14672CRITICAL9.8A flaw has been found in gmg137 snap7-rs up to 1.142.1. This impacts the function TSnap7MicroClient::opWriteArea of the ...
CVE-2025-14668CRITICAL9.8A vulnerability was detected in campcodes Advanced Online Examination System 1.0. This affects an unknown function of th...
CVE-2025-14667CRITICAL9.8A security vulnerability has been detected in itsourcecode COVID Tracking System 1.0. The impacted element is an unknown...
CVE-2025-14666CRITICAL9.8A weakness has been identified in itsourcecode COVID Tracking System 1.0. The affected element is an unknown function of...
CVE-2025-14665CRITICAL9.8A security flaw has been discovered in Tenda WH450 1.0.0.18. Impacted is an unknown function of the file /goform/DhcpLis...
CVE-2025-14664CRITICAL9.8A vulnerability was identified in Campcodes Supplier Management System 1.0. This issue affects some unknown processing o...
CVE-2025-14661CRITICAL9.8A vulnerability has been found in itsourcecode Student Managemen System 1.0. Affected by this issue is some unknown func...
CVE-2025-14659CRITICAL9.8A vulnerability was detected in D-Link DIR-860LB1 and DIR-868LB1 203b01/203b03. Affected is an unknown function of the c...
CVE-2025-14653CRITICAL9.8A vulnerability was determined in itsourcecode Student Management System 1.0. Impacted is an unknown function of the fil...
CVE-2025-14652CRITICAL9.8A vulnerability was found in itsourcecode Online Cake Ordering System 1.0. This issue affects some unknown processing of...
CVE-2025-14650CRITICAL9.8A flaw has been found in itsourcecode Online Cake Ordering System 1.0. This affects an unknown part of the file /cakesho...
CVE-2025-14649CRITICAL9.8A vulnerability was detected in itsourcecode Online Cake Ordering System 1.0. Affected by this issue is some unknown fun...
CVE-2025-14647CRITICAL9.8A weakness has been identified in code-projects Computer Book Store 1.0. Affected is an unknown function of the file /ad...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now