2025 CVE Vulnerabilities

45,320 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-14330CRITICAL9.8JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 140...
CVE-2025-14326CRITICAL9.8Use-after-free in the Audio/Video: GMP component. This vulnerability was fixed in Firefox 146 and Thunderbird 146.
CVE-2025-14324CRITICAL9.8JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 115...
CVE-2025-14321CRITICAL9.8Use-after-free in the WebRTC: Signaling component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thund...
CVE-2025-14310CRITICAL9.3Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in rethinkdb.This issue affects ret...
CVE-2025-14308CRITICAL9.8An integer overflow vulnerability exists in the write method of the Buffer class in Robocode version 1.9.3.6. The method...
CVE-2025-14306CRITICAL9.1A directory traversal vulnerability exists in the CacheCleaner component of Robocode version 1.9.3.6. The recursivelyDel...
CVE-2025-12504CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Talent Software UN...
CVE-2025-11022CRITICAL9.6Cross-Site Request Forgery (CSRF) vulnerability in Personal Project Panilux allows Cross Site Request Forgery.  This ...
CVE-2025-66481CRITICAL9.6DeepChat is an open-source AI chat platform that supports cloud models and LLMs. Versions 0.5.1 and below are vulnerable...
CVE-2025-14285CRITICAL9.8A vulnerability was found in code-projects Employee Profile Management System 1.0. Affected is an unknown function of th...
CVE-2025-65849CRITICAL9.1A cryptanalytic break in Altcha Proof-of-Work obfuscation mode version 0.8.0 and later allows for remote visitors to rec...
CVE-2025-65548CRITICAL9.1NUT-14 allows cashu tokens to be created with a preimage hash. However, nutshell (cashubtc/nuts) before 0.18.0 do not va...
CVE-2025-64081CRITICAL9.8SQL injection vulnerability in /php/api_patient_schedule.php in SourceCodester Patients Waiting Area Queue Management Sy...
CVE-2025-14258CRITICAL9.8A vulnerability has been found in itsourcecode Student Management System 1.0. Affected by this vulnerability is an unkno...
CVE-2025-48626CRITICAL9.8In multiple locations, there is a possible way to launch an application from the background due to a precondition check ...
CVE-2025-14257CRITICAL9.8A flaw has been found in itsourcecode Student Management System 1.0. Affected is an unknown function of the file /newrec...
CVE-2025-14256CRITICAL9.8A vulnerability was detected in itsourcecode Student Management System 1.0. This impacts an unknown function of the file...
CVE-2025-61318CRITICAL9.1Emlog Pro 2.5.20 has an arbitrary file deletion vulnerability. This vulnerability stems from the admin/template.php comp...
CVE-2025-14251CRITICAL9.8A security vulnerability has been detected in code-projects Online Ordering System 1.0. This affects an unknown function...
CVE-2025-14250CRITICAL9.8A weakness has been identified in code-projects Online Ordering System 1.0. The impacted element is an unknown function ...
CVE-2025-14249CRITICAL9.8A security flaw has been discovered in code-projects Online Ordering System 1.0. The affected element is an unknown func...
CVE-2025-14248CRITICAL9.8A vulnerability was identified in code-projects Simple Shopping Cart 1.0. Impacted is an unknown function of the file /a...
CVE-2025-14247CRITICAL9.8A vulnerability was determined in code-projects Simple Shopping Cart 1.0. This issue affects some unknown processing of ...
CVE-2025-14246CRITICAL9.8A vulnerability was found in code-projects Simple Shopping Cart 1.0. This vulnerability affects unknown code of the file...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now