2025 CVE Vulnerabilities

45,224 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-11512MEDIUM6.1A vulnerability was found in code-projects Voting System 1.0. Affected by this issue is some unknown functionality of th...
CVE-2025-61913CRITICAL9.9Flowise is a drag & drop user interface to build a customized large language model flow. In versions prior to 3.0.8, Wri...
CVE-2025-11511CRITICAL9.8A flaw has been found in code-projects E-Commerce Website 1.0. Affected is an unknown function of the file /pages/suppli...
CVE-2025-11509CRITICAL9.8A vulnerability was detected in code-projects E-Commerce Website 1.0. This impacts an unknown function of the file /page...
CVE-2025-11508CRITICAL9.8A security vulnerability has been detected in code-projects Voting System 1.0. This affects an unknown function of the f...
CVE-2025-11535HIGH8.8MongoDB Connector for BI installation via MSI on Windows leaves ACLs unset on custom install directories allows Privileg...
CVE-2025-11507CRITICAL9.8A weakness has been identified in PHPGurukul Beauty Parlour Management System 1.1. The impacted element is an unknown fu...
CVE-2025-11506CRITICAL9.8A security flaw has been discovered in PHPGurukul Beauty Parlour Management System 1.1. The affected element is an unkno...
CVE-2025-11505CRITICAL9.8A vulnerability was identified in PHPGurukul Beauty Parlour Management System 1.1. Impacted is an unknown function of th...
CVE-2025-60311HIGH8.8ProjectWorlds Gym Management System1.0 is vulnerable to SQL Injection via the "id" parameter in the profile/edit.php pag...
CVE-2025-11503CRITICAL9.8A vulnerability was determined in PHPGurukul Beauty Parlour Management System 1.1. This issue affects some unknown proce...
CVE-2025-11495MEDIUM5.5A vulnerability was determined in GNU Binutils 2.45. The affected element is the function elf_x86_64_relocate_section of...
CVE-2025-11494MEDIUM5.5A vulnerability was found in GNU Binutils 2.45. Impacted is the function _bfd_x86_elf_late_size_sections of the file bfd...
CVE-2025-61524HIGH7.2An issue in the permission verification module and organization/application editing interface in Casdoor v2.26.0 and bef...
CVE-2025-57457HIGH8.8An OS Command Injection vulnerability in the Admin panel in Curo UC300 5.42.1.7.1.63R1 allows local attackers to inject ...
CVE-2025-11491CRITICAL9.8A vulnerability was found in wonderwhy-er DesktopCommanderMCP up to 0.2.13. The impacted element is the function Command...
CVE-2025-11490CRITICAL9.8A vulnerability has been found in wonderwhy-er DesktopCommanderMCP up to 0.2.13. The affected element is the function ex...
CVE-2025-9868HIGH8.7Server-Side Request Forgery (SSRF) in the Remote Browser Plugin in Sonatype Nexus Repository 2.x up to and including 2.1...
CVE-2025-61906MEDIUM4.3Opencast is a free, open-source platform to support the management of educational audio and video content. Prior to Open...
CVE-2025-61788MEDIUM5.4Opencast is a free, open-source platform to support the management of educational audio and video content. Prior to Open...
CVE-2025-42706MEDIUM6.5A logic error exists in the Falcon sensor for Windows that could allow an attacker, with the prior ability to execute co...
CVE-2025-42701MEDIUM5.6A race condition exists in the Falcon sensor for Windows that could allow an attacker, with the prior ability to execute...
CVE-2025-11489HIGH7A security vulnerability has been detected in wonderwhy-er DesktopCommanderMCP up to 0.2.13. This vulnerability affects ...
CVE-2025-11488HIGH7.3A weakness has been identified in D-Link DIR-852 up to 20251002. This affects an unknown part of the file /HNAP1/. Execu...
CVE-2025-11487CRITICAL9.8A security flaw has been discovered in SourceCodester Farm Management System 1.0. Affected by this issue is some unknown...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now