2025 CVE Vulnerabilities
45,203 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-13276 | HIGH | 7.3 | 0.3% | Nov 17, 2025 | A vulnerability was detected in g33kyrash Online-Banking-System up to 12dbfa690e5af649fb72d2e5d3674e88d6743455. This vul... |
| CVE-2025-13275 | MEDIUM | 4.7 | 0.2% | Nov 17, 2025 | A security vulnerability has been detected in Iqbolshoh php-business-website up to 10677743a8dfc281f85291a27cf63a0bce043... |
| CVE-2025-13274 | HIGH | 8.8 | 0.3% | Nov 17, 2025 | A weakness has been identified in Campcodes School Fees Payment Management System 1.0. Affected by this issue is some un... |
| CVE-2025-13273 | HIGH | 8.8 | 0.3% | Nov 17, 2025 | A security flaw has been discovered in Campcodes School Fees Payment Management System 1.0. Affected by this vulnerabili... |
| CVE-2025-13272 | CRITICAL | 9.8 | 0.3% | Nov 17, 2025 | A vulnerability was identified in Campcodes School Fees Payment Management System 1.0. Affected is an unknown function o... |
| CVE-2025-13271 | CRITICAL | 9.8 | 0.3% | Nov 17, 2025 | A vulnerability was determined in Campcodes School Fees Payment Management System 1.0. This impacts an unknown function ... |
| CVE-2025-65073 | HIGH | 7.5 | 0.2% | Nov 17, 2025 | OpenStack Keystone before 26.0.1, 27.0.0, and 28.0.0 allows a /v3/ec2tokens or /v3/s3tokens request with a valid AWS Sig... |
| CVE-2025-13270 | HIGH | 8.8 | 0.3% | Nov 17, 2025 | A vulnerability was found in Campcodes School Fees Payment Management System 1.0. This affects an unknown function of th... |
| CVE-2025-13269 | HIGH | 8.8 | 0.3% | Nov 17, 2025 | A vulnerability has been found in Campcodes School Fees Payment Management System 1.0. The impacted element is an unknow... |
| CVE-2025-13268 | MEDIUM | 6.3 | 0.2% | Nov 17, 2025 | A flaw has been found in Dromara dataCompare up to 1.0.1. The affected element is the function DbConfig of the file src/... |
| CVE-2025-13267 | CRITICAL | 9.8 | 0.3% | Nov 17, 2025 | A vulnerability was detected in SourceCodester Dental Clinic Appointment Reservation System 1.0. Impacted is an unknown ... |
| CVE-2025-13165 | HIGH | 8.7 | 0.4% | Nov 17, 2025 | EasyFlow GP developed by Digiwin has a Denial of service vulnerability, allowing unauthenticated remote attackers to sen... |
| CVE-2025-13164 | MEDIUM | 6.9 | 0.3% | Nov 17, 2025 | EasyFlow GP developed by Digiwin has an Insufficiently Protected Credentials vulnerability, allowing privileged remote a... |
| CVE-2025-13163 | MEDIUM | 6.9 | 0.3% | Nov 17, 2025 | EasyFlow GP developed by Digiwin has an Insufficiently Protected Credentials vulnerability, allowing privileged remote a... |
| CVE-2025-9501 | CRITICAL | 9 | 19.2% | Nov 17, 2025 | The W3 Total Cache WordPress plugin before 2.8.13 is vulnerable to command injection via the _parse_dynamic_mfunc functi... |
| CVE-2025-60022 | MEDIUM | 4.8 | 0.1% | Nov 17, 2025 | Improper certificate validation vulnerability exists in 'デジラアプリ' App for iOS prior to ver.80.10.00. If this vulnerabilit... |
| CVE-2025-13266 | MEDIUM | 5.5 | 0.5% | Nov 17, 2025 | A security vulnerability has been detected in wwwlike vlife up to 2.0.1. This issue affects the function create of the f... |
| CVE-2025-13265 | CRITICAL | 9.1 | 0.5% | Nov 17, 2025 | A weakness has been identified in lsfusion platform up to 6.1. This vulnerability affects the function unpackFile of the... |
| CVE-2025-13264 | HIGH | 8.8 | 0.3% | Nov 17, 2025 | A security flaw has been discovered in SourceCodester Online Magazine Management System 1.0. This affects an unknown par... |
| CVE-2025-13263 | HIGH | 8.8 | 0.3% | Nov 17, 2025 | A vulnerability was identified in SourceCodester Online Magazine Management System 1.0. Affected by this issue is some u... |
| CVE-2025-13262 | CRITICAL | 9.8 | 0.5% | Nov 17, 2025 | A vulnerability was determined in lsfusion platform up to 6.1. Affected by this vulnerability is the function UploadFile... |
| CVE-2025-13284 | CRITICAL | 9.8 | 1.6% | Nov 17, 2025 | ThinPLUS developed by ThinPLUS has an OS Command Injection vulnerability, allowing unauthenticated remote attackers to i... |
| CVE-2025-13283 | HIGH | 7.1 | 0.2% | Nov 17, 2025 | TenderDocTransfer developed by Chunghwa Telecom has a Arbitrary File Copy and Paste vulnerability. The application sets... |
| CVE-2025-13282 | HIGH | 8.1 | 0.2% | Nov 17, 2025 | TenderDocTransfer developed by Chunghwa Telecom has a Arbitrary File Delete vulnerability. The application sets up a sim... |
| CVE-2025-13261 | MEDIUM | 5.3 | 0.6% | Nov 17, 2025 | A vulnerability was found in lsfusion platform up to 6.1. Affected is the function DownloadFileRequestHandler of the fil... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now