2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-12933 | CRITICAL | 9.8 | 0.3% | Nov 10, 2025 | A vulnerability was identified in SourceCodester Baby Care System 1.0. This affects an unknown part of the file /updatew... |
| CVE-2025-12932 | CRITICAL | 9.8 | 0.3% | Nov 10, 2025 | A vulnerability was determined in SourceCodester Baby Care System 1.0. Affected by this issue is some unknown functional... |
| CVE-2025-12931 | CRITICAL | 9.8 | 0.3% | Nov 10, 2025 | A vulnerability was found in SourceCodester Food Ordering System 1.0. Affected by this vulnerability is an unknown funct... |
| CVE-2025-12930 | CRITICAL | 9.8 | 0.3% | Nov 10, 2025 | A vulnerability has been found in SourceCodester Food Ordering System 1.0. Affected is an unknown function of the file /... |
| CVE-2025-12929 | CRITICAL | 9.8 | 0.4% | Nov 10, 2025 | A flaw has been found in SourceCodester Survey Application System 1.0. This impacts the function save_user/update_user o... |
| CVE-2025-12928 | CRITICAL | 9.8 | 0.4% | Nov 10, 2025 | A vulnerability was detected in code-projects Online Job Search Engine 1.0. This affects an unknown function of the file... |
| CVE-2025-12868 | CRITICAL | 9.8 | 0.5% | Nov 10, 2025 | New Site Server developed by CyberTutor has a Use of Client-Side Authentication vulnerability, allowing unauthenticated ... |
| CVE-2025-12866 | CRITICAL | 9.8 | 0.5% | Nov 10, 2025 | EIP Plus developed by Hundred Plus has a Weak Password Recovery Mechanism vulnerability, allowing unauthenticated remote... |
| CVE-2025-12925 | CRITICAL | 9.8 | 0.4% | Nov 10, 2025 | A security flaw has been discovered in rymcu forest up to de53ce79db9faa2efc4e79ce1077a302c42a1224. Impacted is the func... |
| CVE-2025-12916 | CRITICAL | 9.8 | 4.7% | Nov 9, 2025 | A vulnerability was determined in Sangfor Operation and Maintenance Security Management System 3.0. Impacted is an unkno... |
| CVE-2025-12913 | CRITICAL | 9.8 | 0.3% | Nov 8, 2025 | A flaw has been found in code-projects Responsive Hotel Site 1.0. This affects an unknown part of the file /admin/roomde... |
| CVE-2025-64486 | CRITICAL | 9.3 | 0.2% | Nov 8, 2025 | calibre is an e-book manager. In versions 8.13.0 and prior, calibre does not validate filenames when handling binary ass... |
| CVE-2025-10230 | CRITICAL | 10 | 39.7% | Nov 7, 2025 | A flaw was found in Samba, in the front-end WINS hook handling: NetBIOS names from registration packets are passed to a ... |
| CVE-2025-12873 | CRITICAL | 9.8 | 0.3% | Nov 7, 2025 | A security flaw has been discovered in Campcodes School File Management 1.0. This affects an unknown part of the file /a... |
| CVE-2025-3222 | CRITICAL | 9.3 | 0.5% | Nov 7, 2025 | Improper Authentication vulnerability in GE Vernova Smallworld on Windows, Linux allows Authentication Abuse.This issue ... |
| CVE-2025-12862 | CRITICAL | 9.8 | 0.3% | Nov 7, 2025 | A vulnerability was identified in projectworlds Online Notes Sharing Platform 1.0. Affected by this issue is some unknow... |
| CVE-2025-63691 | CRITICAL | 9.6 | 0.3% | Nov 7, 2025 | In pig-mesh In Pig version 3.8.2 and below, within the Token Management function under the System Management module, the... |
| CVE-2025-63690 | CRITICAL | 9.1 | 0.9% | Nov 7, 2025 | In pig-mesh Pig versions 3.8.2 and below, when setting up scheduled tasks in the Quartz management function under the sy... |
| CVE-2025-63689 | CRITICAL | 10 | 0.8% | Nov 7, 2025 | Multiple SQL injection vulnerabilitites in ycf1998 money-pos system before commit 11f276bd20a41f089298d804e43cb1c39d041e... |
| CVE-2025-52425 | CRITICAL | 9.8 | 0.4% | Nov 7, 2025 | An SQL injection vulnerability has been reported to affect QuMagie. A remote attacker can exploit the vulnerability to e... |
| CVE-2025-34299 | CRITICAL | 9.8 | 72.5% | Nov 7, 2025 | Monsta FTP versions 2.11 and earlier contain a vulnerability that allows unauthenticated arbitrary file uploads. This fl... |
| CVE-2025-12857 | CRITICAL | 9.8 | 0.3% | Nov 7, 2025 | A security vulnerability has been detected in code-projects Responsive Hotel Site 1.0. The affected element is an unknow... |
| CVE-2025-12856 | CRITICAL | 9.8 | 0.3% | Nov 7, 2025 | A weakness has been identified in code-projects Responsive Hotel Site 1.0. Impacted is an unknown function of the file /... |
| CVE-2025-12855 | CRITICAL | 9.8 | 0.3% | Nov 7, 2025 | A security flaw has been discovered in code-projects Responsive Hotel Site 1.0. This issue affects some unknown processi... |
| CVE-2025-12853 | CRITICAL | 9.8 | 0.3% | Nov 7, 2025 | A vulnerability was determined in SourceCodester Best House Rental Management System 1.0. This affects the function dele... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now