2025 CVE Vulnerabilities

45,187 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-4072HIGH8.8A vulnerability was found in PHPGurukul Online Nurse Hiring System 1.0 and classified as critical. This issue affects so...
CVE-2025-45956HIGH8.8A SQL injection vulnerability in manage_damage.php in Sourcecodester Computer Laboratory Management System v1.0 allows a...
CVE-2025-23181HIGH8CWE-250: Execution with Unnecessary Privileges
CVE-2025-23180HIGH8CWE-250: Execution with Unnecessary Privileges
CVE-2025-4069HIGH7.8A vulnerability, which was classified as critical, has been found in code-projects Product Management System 1.0. Affect...
CVE-2025-4068HIGH7.8A vulnerability classified as critical was found in code-projects Simple Movie Ticket Booking System 1.0. Affected by th...
CVE-2025-40619HIGH7.5Bookgy does not provide for proper authorisation control in multiple areas of the application. This deficiency could all...
CVE-2025-32354HIGH8.8In Zimbra Collaboration (ZCS) 9.0 through 10.1, a Cross-Site Request Forgery (CSRF) vulnerability exists in the GraphQL ...
CVE-2025-23178HIGH7.6CWE-923: Improper Restriction of Communication Channel to Intended Endpoints
CVE-2025-23177HIGH7.6CWE-427: Uncontrolled Search Path Element
CVE-2025-4065HIGH7.5A vulnerability was found in ScriptAndTools Online-Travling-System 1.0. It has been declared as critical. This vulnerabi...
CVE-2025-4093HIGH8.1Memory safety bug present in Firefox ESR 128.9, and Thunderbird 128.9. This bug showed evidence of memory corruption and...
CVE-2025-4091HIGH8.1Memory safety bugs present in Firefox 137, Thunderbird 137, Firefox ESR 128.9, and Thunderbird 128.9. Some of these bugs...
CVE-2025-4085HIGH7.1An attacker with control over a content process could potentially leverage the privileged UITour actor to leak sensitive...
CVE-2025-4063HIGH7.8A vulnerability was found in code-projects Student Information Management System 1.0 and classified as critical. Affecte...
CVE-2025-4062HIGH7.8A vulnerability has been found in code-projects Theater Seat Booking System 1.0 and classified as critical. Affected by ...
CVE-2025-2817HIGH8.8Thunderbird's update mechanism allowed a medium-integrity user process to interfere with the SYSTEM-level updater by man...
CVE-2025-4061HIGH7.8A vulnerability, which was classified as critical, was found in code-projects Clothing Store Management System up to 1.0...
CVE-2025-4059HIGH7.8A vulnerability classified as critical was found in code-projects Prison Management System 1.0. This vulnerability affec...
CVE-2025-3891HIGH7.5A flaw was found in the mod_auth_openidc module for Apache httpd. This flaw allows a remote, unauthenticated attacker to...
CVE-2025-30194HIGH7.5When DNSdist is configured to provide DoH via the nghttp2 provider, an attacker can cause a denial of service by craftin...
CVE-2025-24252HIGH8.8A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 18.4 and iPadOS 18.4, i...
CVE-2025-24206HIGH7.7An authentication issue was addressed with improved state management. This issue is fixed in iOS 18.4 and iPadOS 18.4, i...
CVE-2025-46328HIGH7snowflake-connector-nodejs is a NodeJS driver for Snowflake. Versions starting from 1.10.0 to before 2.0.4, are vulnerab...
CVE-2025-46327HIGH7gosnowflake is the Snowflake Golang driver. Versions starting from 1.7.0 to before 1.13.3, are vulnerable to a Time-of-C...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now