2025 CVE Vulnerabilities
45,320 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-14330 | CRITICAL | 9.8 | 0.4% | Dec 9, 2025 | JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 140... |
| CVE-2025-14326 | CRITICAL | 9.8 | 0.4% | Dec 9, 2025 | Use-after-free in the Audio/Video: GMP component. This vulnerability was fixed in Firefox 146 and Thunderbird 146. |
| CVE-2025-14324 | CRITICAL | 9.8 | 0.5% | Dec 9, 2025 | JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 115... |
| CVE-2025-14321 | CRITICAL | 9.8 | 0.5% | Dec 9, 2025 | Use-after-free in the WebRTC: Signaling component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thund... |
| CVE-2025-14310 | CRITICAL | 9.3 | 0.4% | Dec 9, 2025 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in rethinkdb.This issue affects ret... |
| CVE-2025-14308 | CRITICAL | 9.8 | 0.5% | Dec 9, 2025 | An integer overflow vulnerability exists in the write method of the Buffer class in Robocode version 1.9.3.6. The method... |
| CVE-2025-14306 | CRITICAL | 9.1 | 0.9% | Dec 9, 2025 | A directory traversal vulnerability exists in the CacheCleaner component of Robocode version 1.9.3.6. The recursivelyDel... |
| CVE-2025-12504 | CRITICAL | 9.8 | 0.5% | Dec 9, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Talent Software UN... |
| CVE-2025-11022 | CRITICAL | 9.6 | 0.5% | Dec 9, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Personal Project Panilux allows Cross Site Request Forgery. This ... |
| CVE-2025-66481 | CRITICAL | 9.6 | 0.5% | Dec 9, 2025 | DeepChat is an open-source AI chat platform that supports cloud models and LLMs. Versions 0.5.1 and below are vulnerable... |
| CVE-2025-14285 | CRITICAL | 9.8 | 0.3% | Dec 9, 2025 | A vulnerability was found in code-projects Employee Profile Management System 1.0. Affected is an unknown function of th... |
| CVE-2025-65849 | CRITICAL | 9.1 | 0.2% | Dec 8, 2025 | A cryptanalytic break in Altcha Proof-of-Work obfuscation mode version 0.8.0 and later allows for remote visitors to rec... |
| CVE-2025-65548 | CRITICAL | 9.1 | 0.4% | Dec 8, 2025 | NUT-14 allows cashu tokens to be created with a preimage hash. However, nutshell (cashubtc/nuts) before 0.18.0 do not va... |
| CVE-2025-64081 | CRITICAL | 9.8 | 0.4% | Dec 8, 2025 | SQL injection vulnerability in /php/api_patient_schedule.php in SourceCodester Patients Waiting Area Queue Management Sy... |
| CVE-2025-14258 | CRITICAL | 9.8 | 0.3% | Dec 8, 2025 | A vulnerability has been found in itsourcecode Student Management System 1.0. Affected by this vulnerability is an unkno... |
| CVE-2025-48626 | CRITICAL | 9.8 | 0.3% | Dec 8, 2025 | In multiple locations, there is a possible way to launch an application from the background due to a precondition check ... |
| CVE-2025-14257 | CRITICAL | 9.8 | 0.4% | Dec 8, 2025 | A flaw has been found in itsourcecode Student Management System 1.0. Affected is an unknown function of the file /newrec... |
| CVE-2025-14256 | CRITICAL | 9.8 | 0.4% | Dec 8, 2025 | A vulnerability was detected in itsourcecode Student Management System 1.0. This impacts an unknown function of the file... |
| CVE-2025-61318 | CRITICAL | 9.1 | 0.6% | Dec 8, 2025 | Emlog Pro 2.5.20 has an arbitrary file deletion vulnerability. This vulnerability stems from the admin/template.php comp... |
| CVE-2025-14251 | CRITICAL | 9.8 | 0.3% | Dec 8, 2025 | A security vulnerability has been detected in code-projects Online Ordering System 1.0. This affects an unknown function... |
| CVE-2025-14250 | CRITICAL | 9.8 | 0.3% | Dec 8, 2025 | A weakness has been identified in code-projects Online Ordering System 1.0. The impacted element is an unknown function ... |
| CVE-2025-14249 | CRITICAL | 9.8 | 0.3% | Dec 8, 2025 | A security flaw has been discovered in code-projects Online Ordering System 1.0. The affected element is an unknown func... |
| CVE-2025-14248 | CRITICAL | 9.8 | 0.3% | Dec 8, 2025 | A vulnerability was identified in code-projects Simple Shopping Cart 1.0. Impacted is an unknown function of the file /a... |
| CVE-2025-14247 | CRITICAL | 9.8 | 0.3% | Dec 8, 2025 | A vulnerability was determined in code-projects Simple Shopping Cart 1.0. This issue affects some unknown processing of ... |
| CVE-2025-14246 | CRITICAL | 9.8 | 0.3% | Dec 8, 2025 | A vulnerability was found in code-projects Simple Shopping Cart 1.0. This vulnerability affects unknown code of the file... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now