2025 CVE Vulnerabilities

45,184 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-4258HIGH8.8A vulnerability, which was classified as critical, was found in zhangyanbo2007 youkefu up to 4.2.0. Affected is the func...
CVE-2025-4247HIGH8.8A vulnerability, which was classified as critical, was found in SourceCodester Simple To-Do List System 1.0. Affected is...
CVE-2025-47245HIGH8.1In BlueWave Checkmate through 2.0.2 before d4a6072, an invite request can be modified to specify a privileged role.
CVE-2025-47244HIGH7.3Inedo ProGet through 2024.22 allows remote attackers to reach restricted functionality through the C# reflection layer, ...
CVE-2025-4244HIGH8.8A vulnerability, which was classified as critical, was found in code-projects Online Bus Reservation System 1.0. This af...
CVE-2025-4243HIGH8.8A vulnerability, which was classified as critical, has been found in code-projects Online Bus Reservation System 1.0. Af...
CVE-2025-46723HIGH7.8OpenVM is a performant and modular zkVM framework built for customization and extensibility. In version 1.0.0, OpenVM is...
CVE-2025-4218HIGH7.8A vulnerability was found in handrew browserpilot up to 0.2.51. It has been declared as critical. Affected by this vulne...
CVE-2025-3879HIGH8.8Vault Community, Vault Enterprise (“Vault”) Azure Auth method did not correctly validate the claims in the Azure-issued ...
CVE-2025-4210HIGH7.3A vulnerability classified as critical was found in Casdoor up to 1.811.0. This vulnerability affects the function Handl...
CVE-2025-37798HIGH7.8In the Linux kernel, the following vulnerability has been resolved: codel: remove sch->q.qlen check before qdisc_tree_r...
CVE-2025-37797HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net_sched: hfsc: Fix a UAF vulnerability in class h...
CVE-2025-1884HIGH7.8Use-After-Free vulnerability exists in the SLDPRT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS D...
CVE-2025-1883HIGH7.8Out-Of-Bounds Write vulnerability exists in the OBJ file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS...
CVE-2025-4204HIGH7.5The Ultimate Auction Pro plugin for WordPress is vulnerable to SQL Injection via the ‘auction_id’ parameter in all versi...
CVE-2025-2605HIGH8.8Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Honeywell MB...
CVE-2025-0427HIGH7.8Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Ge...
CVE-2025-0072HIGH7.8Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver al...
CVE-2025-3438HIGH7.3The MStore API – Create Native Android & iOS Apps On The Cloud plugin for WordPress is vulnerable to limited privilege e...
CVE-2025-4179HIGH7.3The Flynax Bridge plugin for WordPress is vulnerable to limited Privilege Escalation due to a missing capability check o...
CVE-2025-4197HIGH8.8A vulnerability classified as critical has been found in code-projects Patient Record Management System 1.0. Affected is...
CVE-2025-4196HIGH8.8A vulnerability was found in SourceCodester Patient Record Management System 1.0. It has been rated as critical. This is...
CVE-2025-46635HIGH7.1An issue was discovered on Tenda RX2 Pro 16.03.30.14 devices. Improper network isolation between the guest Wi-Fi network...
CVE-2025-46634HIGH8.2Cleartext transmission of sensitive information in the web management portal of the Tenda RX2 Pro 16.03.30.14 may allow ...
CVE-2025-46633HIGH8.2Cleartext transmission of sensitive information in the web management portal of the Tenda RX2 Pro 16.03.30.14 allows an ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now