2025 CVE Vulnerabilities

45,206 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-64294MEDIUM5.3Missing Authorization vulnerability in d3wp WP Snow Effect wp-snow-effect allows Accessing Functionality Not Properly Co...
CVE-2025-40107In the Linux kernel, the following vulnerability has been resolved: can: hi311x: fix null pointer dereference when resu...
CVE-2025-12626MEDIUM4.3A security flaw has been discovered in jeecgboot jeewx-boot up to 641ab52c3e1845fec39996d7794c33fb40dad1dd. This affects...
CVE-2025-0987CRITICAL9.9Authorization Bypass Through User-Controlled Key vulnerability in CB Project Ltd. Co. CVLand allows Parameter Injection....
CVE-2025-48397HIGH7.1The privileged user could log in without sufficient credentials after enabling an application protocol. This security is...
CVE-2025-48396HIGH8.3Arbitrary code execution is possible due to improper validation of the file upload functionality in Eaton BLSS. This sec...
CVE-2025-12623LOW3.1A vulnerability was identified in fushengqian fuint up to 41e26be8a2c609413a0feaa69bdad33a71ae8032. Affected by this iss...
CVE-2025-12622CRITICAL9.8A vulnerability was determined in Tenda AC10 16.03.10.13. Affected by this vulnerability is the function formSysRunCmd o...
CVE-2025-12619CRITICAL9.8A vulnerability was found in Tenda A15 15.13.07.13. Affected is the function fromSetWirelessRepeat of the file /goform/o...
CVE-2025-12618CRITICAL9.8A vulnerability has been found in Tenda AC8 16.03.34.06. This impacts an unknown function of the file /goform/DatabaseIn...
CVE-2025-12503HIGH7.1EasyFlow .NET and EasyFlow AiNet developed by Digiwin has a SQL Injection vulnerability, allowing authenticated remote a...
CVE-2025-12617CRITICAL9.8A flaw has been found in itsourcecode Billing System 1.0. This affects an unknown function of the file /admin/app/login_...
CVE-2025-12616MEDIUM5.9A vulnerability was detected in PHPGurukul News Portal 1.0. The impacted element is an unknown function of the file /onp...
CVE-2025-12615HIGH8.1A security vulnerability has been detected in PHPGurukul News Portal 1.0. The affected element is an unknown function of...
CVE-2025-12614CRITICAL9.8A weakness has been identified in SourceCodester Best House Rental Management System 1.0. Impacted is the function delet...
CVE-2025-12612CRITICAL9.8A security flaw has been discovered in Campcodes School Fees Payment Management System 1.0. This issue affects some unkn...
CVE-2025-12611CRITICAL9.8A vulnerability was identified in Tenda AC21 16.03.08.16. This vulnerability affects the function formSetPPTPServer of t...
CVE-2025-12610HIGH7.2A vulnerability was determined in CodeAstro Gym Management System 1.0. This affects an unknown part of the file /admin/v...
CVE-2025-12609HIGH8.8A vulnerability was found in CodeAstro Gym Management System 1.0. Affected by this issue is some unknown functionality o...
CVE-2025-12608CRITICAL9.8A security flaw has been discovered in itsourcecode Online Loan Management System 1.0. The affected element is an unknow...
CVE-2025-12607CRITICAL9.8A vulnerability was identified in itsourcecode Online Loan Management System 1.0. Impacted is an unknown function of the...
CVE-2025-12606CRITICAL9.8A vulnerability was determined in itsourcecode Online Loan Management System 1.0. This issue affects some unknown proces...
CVE-2025-12605CRITICAL9.8A vulnerability was found in itsourcecode Online Loan Management System 1.0. This vulnerability affects unknown code of ...
CVE-2025-12604CRITICAL9.8A vulnerability has been found in itsourcecode Online Loan Management System 1.0. This affects an unknown part of the fi...
CVE-2025-12598CRITICAL9.8A flaw has been found in SourceCodester Best House Rental Management System 1.0. Affected by this issue is the function ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now