2025 CVE Vulnerabilities
45,185 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-30390 | HIGH | 8.8 | 0.8% | Apr 30, 2025 | Improper authorization in Azure allows an authorized attacker to elevate privileges over a network. |
| CVE-2025-21416 | HIGH | 8.8 | 0.6% | Apr 30, 2025 | Missing authorization in Azure Virtual Desktop allows an authorized attacker to elevate privileges over a network. |
| CVE-2025-3599 | HIGH | 7.5 | 0.2% | Apr 30, 2025 | Symantec Endpoint Protection Windows Agent, running an ERASER Engine prior to 119.1.7.8, may be susceptible to an Elevat... |
| CVE-2025-4122 | HIGH | 8.8 | 3.1% | Apr 30, 2025 | A vulnerability was found in Netgear JWNR2000v2 1.0.0.11. It has been rated as critical. Affected by this issue is the f... |
| CVE-2025-46342 | HIGH | 8.2 | 0.6% | Apr 30, 2025 | Kyverno is a policy engine designed for cloud native platform engineering teams. Prior to versions 1.13.5 and 1.14.0, it... |
| CVE-2025-27409 | HIGH | 7.5 | 0.5% | Apr 30, 2025 | Joplin is a free, open source note taking and to-do application, which can handle a large number of notes organised into... |
| CVE-2025-27134 | HIGH | 8.8 | 1.7% | Apr 30, 2025 | Joplin is a free, open source note taking and to-do application, which can handle a large number of notes organised into... |
| CVE-2025-4119 | HIGH | 7.5 | 0.5% | Apr 30, 2025 | A vulnerability classified as critical was found in Weitong Mall 1.0.0. This vulnerability affects unknown code of the f... |
| CVE-2025-45020 | HIGH | 7.2 | 0.5% | Apr 30, 2025 | A SQL Injection vulnerability was discovered in the normal-bwdates-reports-details.php file of PHPGurukul Park Ticketing... |
| CVE-2025-3394 | HIGH | 7.8 | 0.1% | Apr 30, 2025 | Incorrect Permission Assignment for Critical Resource vulnerability in ABB Automation Builder.This issue affects Automat... |
| CVE-2025-24351 | HIGH | 8.8 | 0.7% | Apr 30, 2025 | A vulnerability in the “Remote Logging” functionality of the web application of ctrlX OS allows a remote authenticated (... |
| CVE-2025-24350 | HIGH | 7.1 | 0.3% | Apr 30, 2025 | A vulnerability in the “Certificates and Keys” functionality of the web application of ctrlX OS allows a remote authenti... |
| CVE-2025-24349 | HIGH | 7.1 | 0.5% | Apr 30, 2025 | A vulnerability in the “Network Interfaces” functionality of the web application of ctrlX OS allows a remote authenticat... |
| CVE-2025-24346 | HIGH | 7.5 | 0.4% | Apr 30, 2025 | A vulnerability in the “Proxy” functionality of the web application of ctrlX OS allows a remote authenticated (lowprivil... |
| CVE-2025-4113 | HIGH | 8.8 | 0.3% | Apr 30, 2025 | A vulnerability was found in PHPGurukul Curfew e-Pass Management System 1.0. It has been rated as critical. This issue a... |
| CVE-2025-4111 | HIGH | 8.8 | 0.3% | Apr 30, 2025 | A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0. It has been classified as critical. This affec... |
| CVE-2025-4110 | HIGH | 8.8 | 0.3% | Apr 30, 2025 | A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. Affected by this is... |
| CVE-2025-24338 | HIGH | 7.1 | 0.3% | Apr 30, 2025 | A vulnerability in the “Manages app data” functionality of the web application of ctrlX OS allows a remote authenticated... |
| CVE-2025-4109 | HIGH | 8.8 | 0.3% | Apr 30, 2025 | A vulnerability has been found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. Affected by th... |
| CVE-2025-46560 | HIGH | 7.5 | 0.4% | Apr 30, 2025 | vLLM is a high-throughput and memory-efficient inference and serving engine for LLMs. Versions starting from 0.8.0 and p... |
| CVE-2025-30202 | HIGH | 7.5 | 0.5% | Apr 30, 2025 | vLLM is a high-throughput and memory-efficient inference and serving engine for LLMs. Versions starting from 0.5.2 and p... |
| CVE-2025-29906 | HIGH | 8.6 | 0.2% | Apr 29, 2025 | Finit is a fast init for Linux systems. Versions starting from 3.0-rc1 and prior to version 4.11 bundle an implementatio... |
| CVE-2025-3501 | HIGH | 8.2 | 0.4% | Apr 29, 2025 | A flaw was found in Keycloak. By setting a verification policy to 'ALL', the trust store certificate verification is ski... |
| CVE-2025-4080 | HIGH | 8.8 | 0.3% | Apr 29, 2025 | A vulnerability has been found in PHPGurukul Online Nurse Hiring System 1.0 and classified as critical. Affected by this... |
| CVE-2025-4077 | HIGH | 7.8 | 0.3% | Apr 29, 2025 | A vulnerability classified as critical was found in code-projects School Billing System 1.0. This vulnerability affects ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now