2025 CVE Vulnerabilities
45,320 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-14536 | CRITICAL | 9.8 | 0.5% | Dec 11, 2025 | A security flaw has been discovered in code-projects Class and Exam Timetable Management 1.0. Affected by this vulnerabi... |
| CVE-2025-14535 | CRITICAL | 9.8 | 4.9% | Dec 11, 2025 | A vulnerability was identified in UTT 进取 512W up to 3.1.7.7-171114. Affected is the function strcpy of the file /goform/... |
| CVE-2025-14534 | CRITICAL | 9.8 | 4.9% | Dec 11, 2025 | A vulnerability was determined in UTT 进取 512W up to 3.1.7.7-171114. This impacts the function strcpy of the file /goform... |
| CVE-2025-14529 | CRITICAL | 9.8 | 0.4% | Dec 11, 2025 | A flaw has been found in Campcodes Retro Basketball Shoes Online Store 1.0. The affected element is an unknown function ... |
| CVE-2025-66048 | CRITICAL | 9.8 | 0.5% | Dec 11, 2025 | Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbi... |
| CVE-2025-66047 | CRITICAL | 9.8 | 0.5% | Dec 11, 2025 | Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbi... |
| CVE-2025-66046 | CRITICAL | 9.8 | 0.5% | Dec 11, 2025 | Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbi... |
| CVE-2025-66045 | CRITICAL | 9.8 | 0.5% | Dec 11, 2025 | Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbi... |
| CVE-2025-66044 | CRITICAL | 9.8 | 0.5% | Dec 11, 2025 | Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbi... |
| CVE-2025-66043 | CRITICAL | 9.8 | 0.5% | Dec 11, 2025 | Several stack-based buffer overflow vulnerabilities exists in the MFER parsing functionality of The Biosig Project libbi... |
| CVE-2025-65474 | CRITICAL | 9.8 | 0.5% | Dec 11, 2025 | An arbitrary file rename vulnerability in the /admin/manager.php component of EasyImages 2.0 v2.8.6 and below allows att... |
| CVE-2025-65473 | CRITICAL | 9.1 | 0.5% | Dec 11, 2025 | An arbitrary file rename vulnerability in the /admin/filer.php component of EasyImages 2.0 v2.8.6 and below allows attac... |
| CVE-2025-14527 | CRITICAL | 9.8 | 0.3% | Dec 11, 2025 | A weakness has been identified in projectworlds Advanced Library Management System 1.0. This vulnerability affects unkno... |
| CVE-2025-14522 | CRITICAL | 9.8 | 0.3% | Dec 11, 2025 | A vulnerability was detected in baowzh hfly up to 638ff9abe9078bc977c132b37acbe1900b63491c. The impacted element is an u... |
| CVE-2025-14520 | CRITICAL | 9.1 | 0.5% | Dec 11, 2025 | A weakness has been identified in baowzh hfly up to 638ff9abe9078bc977c132b37acbe1900b63491c. Impacted is an unknown fun... |
| CVE-2025-14518 | CRITICAL | 9.8 | 0.3% | Dec 11, 2025 | A vulnerability was identified in PowerJob up to 5.1.2. This vulnerability affects the function checkConnectivity of the... |
| CVE-2025-14265 | CRITICAL | 9.1 | 0.3% | Dec 11, 2025 | In versions of ScreenConnect™ prior to 25.8, server-side validation and integrity checks within the extension subsystem ... |
| CVE-2025-14515 | CRITICAL | 9.8 | 0.3% | Dec 11, 2025 | A vulnerability has been found in Campcodes Supplier Management System 1.0. Affected by this vulnerability is an unknown... |
| CVE-2025-14514 | CRITICAL | 9.8 | 0.4% | Dec 11, 2025 | A flaw has been found in Campcodes Supplier Management System 1.0. Affected is an unknown function of the file /admin/ad... |
| CVE-2025-13764 | CRITICAL | 9.8 | 0.3% | Dec 11, 2025 | The WP CarDealer plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.2.16... |
| CVE-2025-67511 | CRITICAL | 9.6 | 1.8% | Dec 11, 2025 | Cybersecurity AI (CAI) is an open-source framework for building and deploying AI-powered offensive and defensive automat... |
| CVE-2025-67510 | CRITICAL | 9.4 | 0.4% | Dec 10, 2025 | Neuron is a PHP framework for creating and orchestrating AI Agents. In versions 2.8.11 and below, the MySQLWriteTool exe... |
| CVE-2025-65294 | CRITICAL | 9.8 | 1.0% | Dec 10, 2025 | Aqara Hub devices including Camera Hub G3 4.1.9_0027, Hub M2 4.3.6_0027, and Hub M3 4.3.6_0025 contain an undocumented r... |
| CVE-2025-65830 | CRITICAL | 9.1 | 0.2% | Dec 10, 2025 | Due to a lack of certificate validation, all traffic from the mobile application can be intercepted. As a result, an adv... |
| CVE-2025-65827 | CRITICAL | 9.1 | 0.2% | Dec 10, 2025 | The mobile application is configured to allow clear text traffic to all domains and communicates with an API server over... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now