2025 CVE Vulnerabilities

45,347 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-27387HIGH7.4OPPO Clone Phone uses a weak password WiFi hotspot to transfer files, resulting in Information disclosure.
CVE-2025-6487HIGH8.8A vulnerability was found in TOTOLINK A3002R 1.1.1-B20200824.0128. It has been rated as critical. This issue affects the...
CVE-2025-6486HIGH8.8A vulnerability was found in TOTOLINK A3002R 1.1.1-B20200824.0128. It has been declared as critical. This vulnerability ...
CVE-2025-6484HIGH7.2A vulnerability was found in code-projects Online Shopping Store 1.0 and classified as critical. Affected by this issue ...
CVE-2025-6422HIGH8.8A vulnerability classified as critical was found in Campcodes Online Recruitment Management System 1.0. Affected by this...
CVE-2025-6417HIGH8.8A vulnerability has been found in PHPGurukul Art Gallery Management System 1.1 and classified as critical. Affected by t...
CVE-2025-6416HIGH8.8A vulnerability, which was classified as critical, was found in PHPGurukul Art Gallery Management System 1.1. Affected i...
CVE-2025-6415HIGH8.8A vulnerability, which was classified as critical, has been found in PHPGurukul Art Gallery Management System 1.1. This ...
CVE-2025-6414HIGH8.8A vulnerability classified as critical was found in PHPGurukul Art Gallery Management System 1.1. This vulnerability aff...
CVE-2025-6413HIGH8.8A vulnerability classified as critical has been found in PHPGurukul Art Gallery Management System 1.1. This affects an u...
CVE-2025-6412HIGH8.8A vulnerability was found in PHPGurukul Art Gallery Management System 1.1. It has been rated as critical. Affected by th...
CVE-2025-6411HIGH8.8A vulnerability was found in PHPGurukul Art Gallery Management System 1.1. It has been declared as critical. Affected by...
CVE-2025-6410HIGH8.8A vulnerability was found in PHPGurukul Art Gallery Management System 1.1. It has been classified as critical. Affected ...
CVE-2025-3221HIGH7.5IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 could allow a remote attacker to cause a denial of service d...
CVE-2025-36016HIGH8.2IBM Process Mining 2.0.1 IF001 and 2.0.1 could allow a remote attacker to conduct phishing attacks, using an open redire...
CVE-2025-6402HIGH8.8A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105. It has been declared as critical. This vulnerability aff...
CVE-2025-6400HIGH8.8A vulnerability was found in TOTOLINK N300RH 6.1c.1390_B20191101 and classified as critical. Affected by this issue is s...
CVE-2025-5034HIGH7.1The wp-file-download WordPress plugin before 6.2.6 does not sanitise and escape a parameter before outputting it back in...
CVE-2025-6399HIGH8.8A vulnerability, which was classified as critical, was found in TOTOLINK X15 1.0.0-B20230714.1105. Affected is an unknow...
CVE-2025-52488HIGH8.6DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. In version...
CVE-2025-52487HIGH7.5DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. In version...
CVE-2025-52557HIGH8.6Mail-0's Zero is an open-source email solution. In version 0.8 it's possible for an attacker to craft an email that exec...
CVE-2025-6393HIGH7.5A vulnerability was found in TOTOLINK A702R, A3002R, A3002RU and EX1200T 3.0.0-B20230809.1615/4.0.0-B20230531.1404/4.0.0...
CVE-2025-6374HIGH8.8A vulnerability was found in D-Link DIR-619L 2.06B01 and classified as critical. This issue affects the function formSet...
CVE-2025-6218HIGH7.8RARLAB WinRAR Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to exe...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now