2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-61168 | CRITICAL | 9.8 | 0.5% | Nov 25, 2025 | An issue in the cms_rest.php component of SIGB PMB v8.0.1.14 allows attackers to execute arbitrary code via unserializin... |
| CVE-2025-65085 | CRITICAL | 9.8 | 0.4% | Nov 25, 2025 | A Heap-based Buffer Overflow vulnerability is present in Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share v... |
| CVE-2025-65084 | CRITICAL | 9.8 | 0.3% | Nov 25, 2025 | An Out-of-Bounds Write vulnerability is present in Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share version... |
| CVE-2025-63729 | CRITICAL | 9 | 0.1% | Nov 25, 2025 | An issue was discovered in Syrotech SY-GPON-1110-WDONT SYRO_3.7L_3.1.02-240517 allowing attackers to exctract the SSL Pr... |
| CVE-2025-60739 | CRITICAL | 9.6 | 0.3% | Nov 25, 2025 | Cross Site Request Forgery (CSRF) vulnerability in Ilevia EVE X1 Server Firmware Version v4.7.18.0.eden and before, Logi... |
| CVE-2025-64693 | CRITICAL | 9.8 | 0.6% | Nov 25, 2025 | Security Point (Windows) of MaLion and MaLionCloud contains a heap-based buffer overflow vulnerability in processing Con... |
| CVE-2025-62691 | CRITICAL | 9.8 | 0.6% | Nov 25, 2025 | Security Point (Windows) of MaLion and MaLionCloud contains a stack-based buffer overflow vulnerability in processing HT... |
| CVE-2025-59366 | CRITICAL | 9.2 | 15.1% | Nov 25, 2025 | An authentication-bypass vulnerability exists in AiCloud. This vulnerability can be triggered by an unintended side effe... |
| CVE-2025-13559 | CRITICAL | 9.8 | 0.3% | Nov 25, 2025 | The EduKart Pro plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.0.3. ... |
| CVE-2025-6389 | CRITICAL | 9.8 | 43.4% | Nov 25, 2025 | The Sneeit Framework plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 8... |
| CVE-2025-54347 | CRITICAL | 9.9 | 0.6% | Nov 24, 2025 | A Directory Traversal vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6... |
| CVE-2025-63958 | CRITICAL | 9.8 | 0.5% | Nov 24, 2025 | MILLENSYS Vision Tools Workspace 6.5.0.2585 exposes a sensitive configuration endpoint (/MILLENSYS/settings) that is acc... |
| CVE-2025-12977 | CRITICAL | 9.1 | 0.6% | Nov 24, 2025 | Fluent Bit in_http, in_splunk, and in_elasticsearch input plugins fail to sanitize tag_key inputs. An attacker with netw... |
| CVE-2025-40212 | CRITICAL | 9.8 | 0.2% | Nov 24, 2025 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix refcount leak in nfsd_set_fh_dentry() nf... |
| CVE-2025-13585 | CRITICAL | 9.8 | 0.3% | Nov 24, 2025 | A vulnerability was detected in itsourcecode COVID Tracking System 1.0. This issue affects some unknown processing of th... |
| CVE-2025-13583 | CRITICAL | 9.8 | 0.3% | Nov 24, 2025 | A weakness has been identified in code-projects Question Paper Generator 1.0. This affects an unknown part of the file /... |
| CVE-2025-13582 | CRITICAL | 9.8 | 0.3% | Nov 24, 2025 | A security flaw has been discovered in code-projects Jonnys Liquor 1.0. Affected by this issue is some unknown functiona... |
| CVE-2025-13578 | CRITICAL | 9.8 | 0.3% | Nov 24, 2025 | A vulnerability has been found in code-projects Library System 1.0. This affects an unknown function of the file /index.... |
| CVE-2025-13572 | CRITICAL | 9.8 | 0.4% | Nov 23, 2025 | A vulnerability was identified in projectworlds Advanced Library Management System 1.0. This affects an unknown part of ... |
| CVE-2025-13565 | CRITICAL | 9.1 | 0.4% | Nov 23, 2025 | A weakness has been identified in SourceCodester Inventory Management System 1.0. The affected element is an unknown fun... |
| CVE-2025-13562 | CRITICAL | 9.8 | 5.6% | Nov 23, 2025 | A vulnerability was identified in D-Link DIR-852 1.00. This issue affects some unknown processing of the file /gena.cgi.... |
| CVE-2025-13561 | CRITICAL | 9.8 | 0.3% | Nov 23, 2025 | A vulnerability was determined in SourceCodester Company Website CMS 1.0. This vulnerability affects unknown code of the... |
| CVE-2025-13560 | CRITICAL | 9.8 | 0.3% | Nov 23, 2025 | A vulnerability was found in SourceCodester Company Website CMS 1.0. This affects an unknown part of the file /admin/res... |
| CVE-2025-13557 | CRITICAL | 9.8 | 0.3% | Nov 23, 2025 | A vulnerability has been found in Campcodes Online Polling System 1.0. Affected by this issue is some unknown functional... |
| CVE-2025-13556 | CRITICAL | 9.8 | 0.3% | Nov 23, 2025 | A flaw has been found in Campcodes Online Polling System 1.0. Affected by this vulnerability is an unknown functionality... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now