2025 CVE Vulnerabilities

45,172 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-6417HIGH8.8A vulnerability has been found in PHPGurukul Art Gallery Management System 1.1 and classified as critical. Affected by t...
CVE-2025-6416HIGH8.8A vulnerability, which was classified as critical, was found in PHPGurukul Art Gallery Management System 1.1. Affected i...
CVE-2025-6415HIGH8.8A vulnerability, which was classified as critical, has been found in PHPGurukul Art Gallery Management System 1.1. This ...
CVE-2025-6414HIGH8.8A vulnerability classified as critical was found in PHPGurukul Art Gallery Management System 1.1. This vulnerability aff...
CVE-2025-6413HIGH8.8A vulnerability classified as critical has been found in PHPGurukul Art Gallery Management System 1.1. This affects an u...
CVE-2025-6412HIGH8.8A vulnerability was found in PHPGurukul Art Gallery Management System 1.1. It has been rated as critical. Affected by th...
CVE-2025-6411HIGH8.8A vulnerability was found in PHPGurukul Art Gallery Management System 1.1. It has been declared as critical. Affected by...
CVE-2025-6410HIGH8.8A vulnerability was found in PHPGurukul Art Gallery Management System 1.1. It has been classified as critical. Affected ...
CVE-2025-3221HIGH7.5IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 could allow a remote attacker to cause a denial of service d...
CVE-2025-36016HIGH8.2IBM Process Mining 2.0.1 IF001 and 2.0.1 could allow a remote attacker to conduct phishing attacks, using an open redire...
CVE-2025-6402HIGH8.8A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105. It has been declared as critical. This vulnerability aff...
CVE-2025-6400HIGH8.8A vulnerability was found in TOTOLINK N300RH 6.1c.1390_B20191101 and classified as critical. Affected by this issue is s...
CVE-2025-5034HIGH7.1The wp-file-download WordPress plugin before 6.2.6 does not sanitise and escape a parameter before outputting it back in...
CVE-2025-6399HIGH8.8A vulnerability, which was classified as critical, was found in TOTOLINK X15 1.0.0-B20230714.1105. Affected is an unknow...
CVE-2025-52488HIGH8.6DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. In version...
CVE-2025-52487HIGH7.5DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. In version...
CVE-2025-52557HIGH8.6Mail-0's Zero is an open-source email solution. In version 0.8 it's possible for an attacker to craft an email that exec...
CVE-2025-6393HIGH7.5A vulnerability was found in TOTOLINK A702R, A3002R, A3002RU and EX1200T 3.0.0-B20230809.1615/4.0.0-B20230531.1404/4.0.0...
CVE-2025-6374HIGH8.8A vulnerability was found in D-Link DIR-619L 2.06B01 and classified as critical. This issue affects the function formSet...
CVE-2025-6218HIGH7.8RARLAB WinRAR Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to exe...
CVE-2025-5820HIGH8.8Sony XAV-AX8500 Bluetooth ERTM Channel Authentication Bypass Vulnerability. This vulnerability allows network-adjacent a...
CVE-2025-5479HIGH7.5Sony XAV-AX8500 Bluetooth AVCTP Protocol Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabil...
CVE-2025-5478HIGH8.8Sony XAV-AX8500 Bluetooth SDP Protocol Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows n...
CVE-2025-5477HIGH7.5Sony XAV-AX8500 Bluetooth L2CAP Protocol Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabil...
CVE-2025-5476HIGH8.8Sony XAV-AX8500 Bluetooth Improper Isolation Authentication Bypass Vulnerability. This vulnerability allows network-adja...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now