2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-52410CRITICAL9.8Institute-of-Current-Students v1.0 contains a time-based blind SQL injection vulnerability in the mydetailsstudent.php e...
CVE-2025-60738CRITICAL9.8An issue in Ilevia EVE X1 Server Firmware Version v4.7.18.0.eden and before Logic Version v6.00 - 2025_07_21 and before ...
CVE-2025-34320CRITICAL9.3BASIS BBj versions prior to 25.00 contain a Jetty-served web endpoint that fails to properly validate or canonicalize in...
CVE-2025-40604CRITICAL9.8Download of Code Without Integrity Check Vulnerability in the SonicWall Email Security appliance loads root filesystem i...
CVE-2025-13451CRITICAL9.8A vulnerability was identified in SourceCodester Online Shop Project 1.0. The affected element is an unknown function of...
CVE-2025-13449CRITICAL9.8A vulnerability was found in code-projects Online Shop Project 1.0. This issue affects some unknown processing of the fi...
CVE-2025-13446CRITICAL9.8A vulnerability has been found in Tenda AC21 16.03.08.16. This vulnerability affects unknown code of the file /goform/Se...
CVE-2025-13445CRITICAL9.8A flaw has been found in Tenda AC21 16.03.08.16. This affects an unknown part of the file /goform/SetIpMacBind. Executin...
CVE-2025-13442CRITICAL9.8A security vulnerability has been detected in UTT 进取 750W up to 3.2.2-191225. Affected by this vulnerability is the func...
CVE-2025-12414CRITICAL9.2An attacker could take over a Looker account in a Looker instance configured with OIDC authentication, due to email addr...
CVE-2025-13424CRITICAL9.8A vulnerability has been found in Campcodes Supplier Management System 1.0. This affects an unknown function of the file...
CVE-2025-13422CRITICAL9.8A vulnerability was detected in freeprojectscodes Sports Club Management System 1.0. The affected element is an unknown ...
CVE-2025-13421CRITICAL9.8A security vulnerability has been detected in itsourcecode Human Resource Management System 1.0. Impacted is an unknown ...
CVE-2025-13420CRITICAL9.8A weakness has been identified in itsourcecode Human Resource Management System 1.0. This issue affects some unknown pro...
CVE-2025-13411CRITICAL9.8A vulnerability was found in Campcodes Retro Basketball Shoes Online Store 1.0. Affected by this vulnerability is an unk...
CVE-2025-13410CRITICAL9.8A vulnerability has been found in Campcodes Retro Basketball Shoes Online Store 1.0. Affected is an unknown function of ...
CVE-2025-63213CRITICAL9.8The QVidium Opera11 device (firmware version 2.9.0-Ax4x-opera11) is vulnerable to Remote Code Execution (RCE) due to imp...
CVE-2025-65099CRITICAL9.8Claude Code is an agentic coding tool. Prior to version 1.0.39, when running on a machine with Yarn 3.0 or above, Claude...
CVE-2025-65095CRITICAL9.4Lookyloo is a web interface that allows users to capture a website page and then display a tree of domains that call eac...
CVE-2025-65026CRITICAL9.6esm.sh is a nobuild content delivery network(CDN) for modern web development. Prior to version 136, The esm.sh CDN servi...
CVE-2025-65025CRITICAL9.8esm.sh is a nobuild content delivery network(CDN) for modern web development. Prior to version 136, the esm.sh CDN servi...
CVE-2025-65021CRITICAL9.1Rallly is an open-source scheduling and collaboration tool. Prior to version 4.5.4, an Insecure Direct Object Reference ...
CVE-2025-63210CRITICAL9.8The Newtec Celox UHD (models: CELOXA504, CELOXA820) running firmware version celox-21.6.13 is vulnerable to an authentic...
CVE-2025-63207CRITICAL9.8The R.V.R Elettronica TEX product (firmware TEXL-000400, Web GUI TLAN-000400) is vulnerable to broken access control due...
CVE-2025-63206CRITICAL9.8An authentication bypass issue was discovered in Dasan Switch DS2924 web based interface, firmware versions 1.01.18 and ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now