2025 CVE Vulnerabilities
45,224 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-11512 | MEDIUM | 6.1 | 0.4% | Oct 9, 2025 | A vulnerability was found in code-projects Voting System 1.0. Affected by this issue is some unknown functionality of th... |
| CVE-2025-61913 | CRITICAL | 9.9 | 11.9% | Oct 8, 2025 | Flowise is a drag & drop user interface to build a customized large language model flow. In versions prior to 3.0.8, Wri... |
| CVE-2025-11511 | CRITICAL | 9.8 | 0.4% | Oct 8, 2025 | A flaw has been found in code-projects E-Commerce Website 1.0. Affected is an unknown function of the file /pages/suppli... |
| CVE-2025-11509 | CRITICAL | 9.8 | 0.4% | Oct 8, 2025 | A vulnerability was detected in code-projects E-Commerce Website 1.0. This impacts an unknown function of the file /page... |
| CVE-2025-11508 | CRITICAL | 9.8 | 0.4% | Oct 8, 2025 | A security vulnerability has been detected in code-projects Voting System 1.0. This affects an unknown function of the f... |
| CVE-2025-11535 | HIGH | 8.8 | 0.1% | Oct 8, 2025 | MongoDB Connector for BI installation via MSI on Windows leaves ACLs unset on custom install directories allows Privileg... |
| CVE-2025-11507 | CRITICAL | 9.8 | 0.4% | Oct 8, 2025 | A weakness has been identified in PHPGurukul Beauty Parlour Management System 1.1. The impacted element is an unknown fu... |
| CVE-2025-11506 | CRITICAL | 9.8 | 0.4% | Oct 8, 2025 | A security flaw has been discovered in PHPGurukul Beauty Parlour Management System 1.1. The affected element is an unkno... |
| CVE-2025-11505 | CRITICAL | 9.8 | 0.4% | Oct 8, 2025 | A vulnerability was identified in PHPGurukul Beauty Parlour Management System 1.1. Impacted is an unknown function of th... |
| CVE-2025-60311 | HIGH | 8.8 | 0.4% | Oct 8, 2025 | ProjectWorlds Gym Management System1.0 is vulnerable to SQL Injection via the "id" parameter in the profile/edit.php pag... |
| CVE-2025-11503 | CRITICAL | 9.8 | 0.4% | Oct 8, 2025 | A vulnerability was determined in PHPGurukul Beauty Parlour Management System 1.1. This issue affects some unknown proce... |
| CVE-2025-11495 | MEDIUM | 5.5 | 0.2% | Oct 8, 2025 | A vulnerability was determined in GNU Binutils 2.45. The affected element is the function elf_x86_64_relocate_section of... |
| CVE-2025-11494 | MEDIUM | 5.5 | 0.2% | Oct 8, 2025 | A vulnerability was found in GNU Binutils 2.45. Impacted is the function _bfd_x86_elf_late_size_sections of the file bfd... |
| CVE-2025-61524 | HIGH | 7.2 | 0.6% | Oct 8, 2025 | An issue in the permission verification module and organization/application editing interface in Casdoor v2.26.0 and bef... |
| CVE-2025-57457 | HIGH | 8.8 | 1.1% | Oct 8, 2025 | An OS Command Injection vulnerability in the Admin panel in Curo UC300 5.42.1.7.1.63R1 allows local attackers to inject ... |
| CVE-2025-11491 | CRITICAL | 9.8 | 4.4% | Oct 8, 2025 | A vulnerability was found in wonderwhy-er DesktopCommanderMCP up to 0.2.13. The impacted element is the function Command... |
| CVE-2025-11490 | CRITICAL | 9.8 | 3.6% | Oct 8, 2025 | A vulnerability has been found in wonderwhy-er DesktopCommanderMCP up to 0.2.13. The affected element is the function ex... |
| CVE-2025-9868 | HIGH | 8.7 | 0.5% | Oct 8, 2025 | Server-Side Request Forgery (SSRF) in the Remote Browser Plugin in Sonatype Nexus Repository 2.x up to and including 2.1... |
| CVE-2025-61906 | MEDIUM | 4.3 | 0.3% | Oct 8, 2025 | Opencast is a free, open-source platform to support the management of educational audio and video content. Prior to Open... |
| CVE-2025-61788 | MEDIUM | 5.4 | 0.2% | Oct 8, 2025 | Opencast is a free, open-source platform to support the management of educational audio and video content. Prior to Open... |
| CVE-2025-42706 | MEDIUM | 6.5 | 0.2% | Oct 8, 2025 | A logic error exists in the Falcon sensor for Windows that could allow an attacker, with the prior ability to execute co... |
| CVE-2025-42701 | MEDIUM | 5.6 | 0.1% | Oct 8, 2025 | A race condition exists in the Falcon sensor for Windows that could allow an attacker, with the prior ability to execute... |
| CVE-2025-11489 | HIGH | 7 | 0.2% | Oct 8, 2025 | A security vulnerability has been detected in wonderwhy-er DesktopCommanderMCP up to 0.2.13. This vulnerability affects ... |
| CVE-2025-11488 | HIGH | 7.3 | 1.7% | Oct 8, 2025 | A weakness has been identified in D-Link DIR-852 up to 20251002. This affects an unknown part of the file /HNAP1/. Execu... |
| CVE-2025-11487 | CRITICAL | 9.8 | 0.3% | Oct 8, 2025 | A security flaw has been discovered in SourceCodester Farm Management System 1.0. Affected by this issue is some unknown... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now