2025 CVE Vulnerabilities

45,185 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-30390HIGH8.8Improper authorization in Azure allows an authorized attacker to elevate privileges over a network.
CVE-2025-21416HIGH8.8Missing authorization in Azure Virtual Desktop allows an authorized attacker to elevate privileges over a network.
CVE-2025-3599HIGH7.5Symantec Endpoint Protection Windows Agent, running an ERASER Engine prior to 119.1.7.8, may be susceptible to an Elevat...
CVE-2025-4122HIGH8.8A vulnerability was found in Netgear JWNR2000v2 1.0.0.11. It has been rated as critical. Affected by this issue is the f...
CVE-2025-46342HIGH8.2Kyverno is a policy engine designed for cloud native platform engineering teams. Prior to versions 1.13.5 and 1.14.0, it...
CVE-2025-27409HIGH7.5Joplin is a free, open source note taking and to-do application, which can handle a large number of notes organised into...
CVE-2025-27134HIGH8.8Joplin is a free, open source note taking and to-do application, which can handle a large number of notes organised into...
CVE-2025-4119HIGH7.5A vulnerability classified as critical was found in Weitong Mall 1.0.0. This vulnerability affects unknown code of the f...
CVE-2025-45020HIGH7.2A SQL Injection vulnerability was discovered in the normal-bwdates-reports-details.php file of PHPGurukul Park Ticketing...
CVE-2025-3394HIGH7.8Incorrect Permission Assignment for Critical Resource vulnerability in ABB Automation Builder.This issue affects Automat...
CVE-2025-24351HIGH8.8A vulnerability in the “Remote Logging” functionality of the web application of ctrlX OS allows a remote authenticated (...
CVE-2025-24350HIGH7.1A vulnerability in the “Certificates and Keys” functionality of the web application of ctrlX OS allows a remote authenti...
CVE-2025-24349HIGH7.1A vulnerability in the “Network Interfaces” functionality of the web application of ctrlX OS allows a remote authenticat...
CVE-2025-24346HIGH7.5A vulnerability in the “Proxy” functionality of the web application of ctrlX OS allows a remote authenticated (lowprivil...
CVE-2025-4113HIGH8.8A vulnerability was found in PHPGurukul Curfew e-Pass Management System 1.0. It has been rated as critical. This issue a...
CVE-2025-4111HIGH8.8A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0. It has been classified as critical. This affec...
CVE-2025-4110HIGH8.8A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. Affected by this is...
CVE-2025-24338HIGH7.1A vulnerability in the “Manages app data” functionality of the web application of ctrlX OS allows a remote authenticated...
CVE-2025-4109HIGH8.8A vulnerability has been found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. Affected by th...
CVE-2025-46560HIGH7.5vLLM is a high-throughput and memory-efficient inference and serving engine for LLMs. Versions starting from 0.8.0 and p...
CVE-2025-30202HIGH7.5vLLM is a high-throughput and memory-efficient inference and serving engine for LLMs. Versions starting from 0.5.2 and p...
CVE-2025-29906HIGH8.6Finit is a fast init for Linux systems. Versions starting from 3.0-rc1 and prior to version 4.11 bundle an implementatio...
CVE-2025-3501HIGH8.2A flaw was found in Keycloak. By setting a verification policy to 'ALL', the trust store certificate verification is ski...
CVE-2025-4080HIGH8.8A vulnerability has been found in PHPGurukul Online Nurse Hiring System 1.0 and classified as critical. Affected by this...
CVE-2025-4077HIGH7.8A vulnerability classified as critical was found in code-projects School Billing System 1.0. This vulnerability affects ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now