2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-61168CRITICAL9.8An issue in the cms_rest.php component of SIGB PMB v8.0.1.14 allows attackers to execute arbitrary code via unserializin...
CVE-2025-65085CRITICAL9.8A Heap-based Buffer Overflow vulnerability is present in Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share v...
CVE-2025-65084CRITICAL9.8An Out-of-Bounds Write vulnerability is present in Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share version...
CVE-2025-63729CRITICAL9An issue was discovered in Syrotech SY-GPON-1110-WDONT SYRO_3.7L_3.1.02-240517 allowing attackers to exctract the SSL Pr...
CVE-2025-60739CRITICAL9.6Cross Site Request Forgery (CSRF) vulnerability in Ilevia EVE X1 Server Firmware Version v4.7.18.0.eden and before, Logi...
CVE-2025-64693CRITICAL9.8Security Point (Windows) of MaLion and MaLionCloud contains a heap-based buffer overflow vulnerability in processing Con...
CVE-2025-62691CRITICAL9.8Security Point (Windows) of MaLion and MaLionCloud contains a stack-based buffer overflow vulnerability in processing HT...
CVE-2025-59366CRITICAL9.2An authentication-bypass vulnerability exists in AiCloud. This vulnerability can be triggered by an unintended side effe...
CVE-2025-13559CRITICAL9.8The EduKart Pro plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.0.3. ...
CVE-2025-6389CRITICAL9.8The Sneeit Framework plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 8...
CVE-2025-54347CRITICAL9.9A Directory Traversal vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6...
CVE-2025-63958CRITICAL9.8MILLENSYS Vision Tools Workspace 6.5.0.2585 exposes a sensitive configuration endpoint (/MILLENSYS/settings) that is acc...
CVE-2025-12977CRITICAL9.1Fluent Bit in_http, in_splunk, and in_elasticsearch input plugins fail to sanitize tag_key inputs. An attacker with netw...
CVE-2025-40212CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: nfsd: fix refcount leak in nfsd_set_fh_dentry() nf...
CVE-2025-13585CRITICAL9.8A vulnerability was detected in itsourcecode COVID Tracking System 1.0. This issue affects some unknown processing of th...
CVE-2025-13583CRITICAL9.8A weakness has been identified in code-projects Question Paper Generator 1.0. This affects an unknown part of the file /...
CVE-2025-13582CRITICAL9.8A security flaw has been discovered in code-projects Jonnys Liquor 1.0. Affected by this issue is some unknown functiona...
CVE-2025-13578CRITICAL9.8A vulnerability has been found in code-projects Library System 1.0. This affects an unknown function of the file /index....
CVE-2025-13572CRITICAL9.8A vulnerability was identified in projectworlds Advanced Library Management System 1.0. This affects an unknown part of ...
CVE-2025-13565CRITICAL9.1A weakness has been identified in SourceCodester Inventory Management System 1.0. The affected element is an unknown fun...
CVE-2025-13562CRITICAL9.8A vulnerability was identified in D-Link DIR-852 1.00. This issue affects some unknown processing of the file /gena.cgi....
CVE-2025-13561CRITICAL9.8A vulnerability was determined in SourceCodester Company Website CMS 1.0. This vulnerability affects unknown code of the...
CVE-2025-13560CRITICAL9.8A vulnerability was found in SourceCodester Company Website CMS 1.0. This affects an unknown part of the file /admin/res...
CVE-2025-13557CRITICAL9.8A vulnerability has been found in Campcodes Online Polling System 1.0. Affected by this issue is some unknown functional...
CVE-2025-13556CRITICAL9.8A flaw has been found in Campcodes Online Polling System 1.0. Affected by this vulnerability is an unknown functionality...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now