2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-54339CRITICAL10An Incorrect Access Control vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.1...
CVE-2025-64446CRITICAL9.8A relative path traversal vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.1, FortiWeb 7.6.0 through 7.6.4, FortiWeb...
CVE-2025-13170CRITICAL9.8A vulnerability was detected in code-projects Simple Online Hotel Reservation System 1.0. This issue affects some unknow...
CVE-2025-13169CRITICAL9.8A security vulnerability has been detected in code-projects Simple Online Hotel Reservation System 1.0. This vulnerabili...
CVE-2025-13168CRITICAL9.8A weakness has been identified in ury-erp ury up to 0.2.0. This affects the function overrided_past_order_list of the fi...
CVE-2025-36251CRITICAL9.8IBM AIX 7.2, and 7.3 and IBM VIOS 3.1, and 4.1 nimsh service SSL/TLS implementations could allow a remote attacker to ex...
CVE-2025-36250CRITICAL9.8IBM AIX 7.2, and 7.3 and IBM VIOS 3.1, and 4.1 NIM server (formerly known as NIM master) service (nimesis) could allow a...
CVE-2025-36236CRITICAL9.1IBM AIX 7.2, and 7.3 and IBM VIOS 3.1, and 4.1 NIM server (formerly known as NIM master) service (nimesis) could allow a...
CVE-2025-64709CRITICAL9.9Typebot is an open-source chatbot builder. In versions prior to 3.13.1, a Server-Side Request Forgery (SSRF) vulnerabili...
CVE-2025-13123CRITICAL9.8A flaw has been found in AMTT Hotel Broadband Operation System 1.0. The impacted element is an unknown function of the f...
CVE-2025-13122CRITICAL9.8A vulnerability was detected in SourceCodester Patients Waiting Area Queue Management System 1.0. The affected element i...
CVE-2025-64717CRITICAL9.8ZITADEL is an open source identity management platform. Starting in version 2.50.0 and prior to versions 2.71.19, 3.4.4,...
CVE-2025-62484CRITICAL9.8Inefficient regular expression complexity in certain Zoom Workplace Clients before version 6.5.10 may allow an unauthent...
CVE-2025-64741CRITICAL9.8Improper authorization handling in Zoom Workplace for Android before version 6.5.10 may allow an unauthenticated user to...
CVE-2025-12762CRITICAL9.8pgAdmin versions up to 9.9 are affected by a Remote Code Execution (RCE) vulnerability that occurs when running in serve...
CVE-2025-59367CRITICAL9.8An authentication bypass vulnerability has been identified in certain DSL series routers, may allow remote attackers to ...
CVE-2025-13076CRITICAL9.8A flaw has been found in code-projects Responsive Hotel Site 1.0. The affected element is an unknown function of the fil...
CVE-2025-13075CRITICAL9.8A vulnerability was detected in code-projects Responsive Hotel Site 1.0. Impacted is an unknown function of the file /ad...
CVE-2025-13060CRITICAL9.8A security vulnerability has been detected in SourceCodester Survey Application System 1.0. This affects an unknown func...
CVE-2025-13059CRITICAL9.8A weakness has been identified in SourceCodester Alumni Management System 1.0. The impacted element is an unknown functi...
CVE-2025-56385CRITICAL9.8A SQL injection vulnerability exists in the login functionality of WellSky Harmony version 4.1.0.2.83 within the 'xmHarm...
CVE-2025-13057CRITICAL9.8A vulnerability was identified in Campcodes School Fees Payment Management System 1.0. Impacted is an unknown function o...
CVE-2025-64281CRITICAL9.8An Authentication Bypass issue in CentralSquare Community Development 19.5.7 allows attackers to access the admin panel ...
CVE-2025-64280CRITICAL9.8A SQL Injection Vulnerability in CentralSquare Community Development 19.5.7 allows attackers to inject SQL via the permi...
CVE-2025-63353CRITICAL9.8A vulnerability in FiberHome GPON ONU HG6145F1 RP4423 allows the device's factory default Wi-Fi password (WPA/WPA2 pre-s...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now