2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-12055 | HIGH | 7.5 | 3.7% | Oct 27, 2025 | HYDRA X, MIP 2 and FEDRA 2 of MPDV Mikrolab GmbH suffer from an unauthenticated local file disclosure vulnerability in a... |
| CVE-2025-12231 | MEDIUM | 4.8 | 0.2% | Oct 27, 2025 | A security vulnerability has been detected in projectworlds Expense Management System 1.0. Affected is an unknown functi... |
| CVE-2025-12230 | MEDIUM | 4.8 | 0.2% | Oct 27, 2025 | A weakness has been identified in projectworlds Expense Management System 1.0. This impacts an unknown function of the f... |
| CVE-2025-12229 | MEDIUM | 4.8 | 0.2% | Oct 27, 2025 | A security flaw has been discovered in projectworlds Expense Management System 1.0. This affects an unknown function of ... |
| CVE-2025-12228 | MEDIUM | 4.8 | 0.2% | Oct 27, 2025 | A vulnerability was identified in projectworlds Expense Management System 1.0. The impacted element is an unknown functi... |
| CVE-2025-12227 | MEDIUM | 5.4 | 0.2% | Oct 27, 2025 | A vulnerability was determined in projectworlds Gate Pass Management System 1.0. The affected element is an unknown func... |
| CVE-2025-11154 | MEDIUM | 5.4 | 0.1% | Oct 27, 2025 | The IDonate WordPress plugin before 2.1.13 does not have authorisation and CSRF when deleting users via an action handl... |
| CVE-2025-12226 | CRITICAL | 9.8 | 0.4% | Oct 27, 2025 | A vulnerability was found in SourceCodester Best House Rental Management System 1.0. Impacted is the function save_house... |
| CVE-2025-12225 | HIGH | 8.8 | 0.9% | Oct 27, 2025 | A vulnerability has been found in Tenda AC6 15.03.06.50. This issue affects some unknown processing of the file /goform/... |
| CVE-2025-12224 | LOW | 3.5 | 0.2% | Oct 27, 2025 | A flaw has been found in Iqbolshoh php-business-website up to 10677743a8dfc281f85291a27cf63a0bce043c24. This vulnerabili... |
| CVE-2025-12223 | HIGH | 8.8 | 0.4% | Oct 27, 2025 | A vulnerability was detected in Bdtask Flight Booking Software up to 3.1. This affects an unknown part of the file /b2c/... |
| CVE-2025-12222 | HIGH | 8.8 | 0.4% | Oct 27, 2025 | A security vulnerability has been detected in Bdtask Flight Booking Software up to 3.1. Affected by this issue is some u... |
| CVE-2025-12215 | CRITICAL | 9.8 | 0.4% | Oct 27, 2025 | A flaw has been found in projectworlds Online Shopping System 1.0. Impacted is an unknown function of the file /login_su... |
| CVE-2025-12214 | HIGH | 8.8 | 0.7% | Oct 27, 2025 | A vulnerability was detected in Tenda O3 1.0.0.10(2478). This issue affects the function SetValue/GetValue of the file /... |
| CVE-2025-12213 | HIGH | 8.8 | 0.7% | Oct 27, 2025 | A security vulnerability has been detected in Tenda O3 1.0.0.10(2478). This vulnerability affects the function SetValue/... |
| CVE-2025-12212 | HIGH | 8.8 | 0.7% | Oct 27, 2025 | A weakness has been identified in Tenda O3 1.0.0.10(2478). This affects the function SetValue/GetValue of the file /gofo... |
| CVE-2025-12211 | CRITICAL | 9.8 | 0.8% | Oct 27, 2025 | A security flaw has been discovered in Tenda O3 1.0.0.10(2478). Affected by this issue is the function SetValue/GetValue... |
| CVE-2025-58918 | MEDIUM | 4.3 | 0.1% | Oct 27, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Waituk Entrada theme allows Cross Site Request Forgery.This issue aff... |
| CVE-2025-48088 | MEDIUM | 6.5 | 0.2% | Oct 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brainstorm_Force U... |
| CVE-2025-12210 | CRITICAL | 9.8 | 1.0% | Oct 27, 2025 | A vulnerability was identified in Tenda O3 1.0.0.10(2478). Affected by this vulnerability is the function SetValue/GetVa... |
| CVE-2025-12209 | HIGH | 8.8 | 0.9% | Oct 27, 2025 | A vulnerability was determined in Tenda O3 1.0.0.10(2478). Affected is the function SetValue/GetValue of the file /gofor... |
| CVE-2025-12208 | CRITICAL | 9.8 | 0.4% | Oct 27, 2025 | A vulnerability was found in SourceCodester Best House Rental Management System 1.0. This impacts the function login2 of... |
| CVE-2025-12207 | MEDIUM | 5.5 | 0.2% | Oct 27, 2025 | A vulnerability has been found in Kamailio 5.5. This affects the function yyerror_at of the file src/core/cfg.y of the c... |
| CVE-2025-12206 | MEDIUM | 5.5 | 0.2% | Oct 27, 2025 | A flaw has been found in Kamailio 5.5. The impacted element is the function rve_is_constant of the file src/core/rvalue.... |
| CVE-2025-12205 | HIGH | 7.8 | 0.2% | Oct 27, 2025 | A vulnerability was detected in Kamailio 5.5. The affected element is the function sr_push_yy_state of the file src/core... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now