2025 CVE Vulnerabilities

45,203 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-13276HIGH7.3A vulnerability was detected in g33kyrash Online-Banking-System up to 12dbfa690e5af649fb72d2e5d3674e88d6743455. This vul...
CVE-2025-13275MEDIUM4.7A security vulnerability has been detected in Iqbolshoh php-business-website up to 10677743a8dfc281f85291a27cf63a0bce043...
CVE-2025-13274HIGH8.8A weakness has been identified in Campcodes School Fees Payment Management System 1.0. Affected by this issue is some un...
CVE-2025-13273HIGH8.8A security flaw has been discovered in Campcodes School Fees Payment Management System 1.0. Affected by this vulnerabili...
CVE-2025-13272CRITICAL9.8A vulnerability was identified in Campcodes School Fees Payment Management System 1.0. Affected is an unknown function o...
CVE-2025-13271CRITICAL9.8A vulnerability was determined in Campcodes School Fees Payment Management System 1.0. This impacts an unknown function ...
CVE-2025-65073HIGH7.5OpenStack Keystone before 26.0.1, 27.0.0, and 28.0.0 allows a /v3/ec2tokens or /v3/s3tokens request with a valid AWS Sig...
CVE-2025-13270HIGH8.8A vulnerability was found in Campcodes School Fees Payment Management System 1.0. This affects an unknown function of th...
CVE-2025-13269HIGH8.8A vulnerability has been found in Campcodes School Fees Payment Management System 1.0. The impacted element is an unknow...
CVE-2025-13268MEDIUM6.3A flaw has been found in Dromara dataCompare up to 1.0.1. The affected element is the function DbConfig of the file src/...
CVE-2025-13267CRITICAL9.8A vulnerability was detected in SourceCodester Dental Clinic Appointment Reservation System 1.0. Impacted is an unknown ...
CVE-2025-13165HIGH8.7EasyFlow GP developed by Digiwin has a Denial of service vulnerability, allowing unauthenticated remote attackers to sen...
CVE-2025-13164MEDIUM6.9EasyFlow GP developed by Digiwin has an Insufficiently Protected Credentials vulnerability, allowing privileged remote a...
CVE-2025-13163MEDIUM6.9EasyFlow GP developed by Digiwin has an Insufficiently Protected Credentials vulnerability, allowing privileged remote a...
CVE-2025-9501CRITICAL9The W3 Total Cache WordPress plugin before 2.8.13 is vulnerable to command injection via the _parse_dynamic_mfunc functi...
CVE-2025-60022MEDIUM4.8Improper certificate validation vulnerability exists in 'デジラアプリ' App for iOS prior to ver.80.10.00. If this vulnerabilit...
CVE-2025-13266MEDIUM5.5A security vulnerability has been detected in wwwlike vlife up to 2.0.1. This issue affects the function create of the f...
CVE-2025-13265CRITICAL9.1A weakness has been identified in lsfusion platform up to 6.1. This vulnerability affects the function unpackFile of the...
CVE-2025-13264HIGH8.8A security flaw has been discovered in SourceCodester Online Magazine Management System 1.0. This affects an unknown par...
CVE-2025-13263HIGH8.8A vulnerability was identified in SourceCodester Online Magazine Management System 1.0. Affected by this issue is some u...
CVE-2025-13262CRITICAL9.8A vulnerability was determined in lsfusion platform up to 6.1. Affected by this vulnerability is the function UploadFile...
CVE-2025-13284CRITICAL9.8ThinPLUS developed by ThinPLUS has an OS Command Injection vulnerability, allowing unauthenticated remote attackers to i...
CVE-2025-13283HIGH7.1TenderDocTransfer developed by Chunghwa Telecom has a Arbitrary File Copy and Paste vulnerability. The application sets...
CVE-2025-13282HIGH8.1TenderDocTransfer developed by Chunghwa Telecom has a Arbitrary File Delete vulnerability. The application sets up a sim...
CVE-2025-13261MEDIUM5.3A vulnerability was found in lsfusion platform up to 6.1. Affected is the function DownloadFileRequestHandler of the fil...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now