2025 CVE Vulnerabilities
45,224 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-11388 | HIGH | 8.8 | 0.7% | Oct 7, 2025 | A vulnerability was identified in Tenda AC15 15.03.05.18. This impacts an unknown function of the file /goform/setNotUpg... |
| CVE-2025-11387 | HIGH | 8.8 | 0.7% | Oct 7, 2025 | A vulnerability was determined in Tenda AC15 15.03.05.18. This affects an unknown function of the file /goform/fast_sett... |
| CVE-2025-11386 | HIGH | 8.8 | 0.7% | Oct 7, 2025 | A vulnerability was found in Tenda AC15 15.03.05.18. The impacted element is an unknown function of the file /goform/Set... |
| CVE-2025-11385 | HIGH | 8.8 | 0.7% | Oct 7, 2025 | A vulnerability has been found in Tenda AC20 up to 16.03.08.12. The affected element is the function sscanf of the file ... |
| CVE-2025-11360 | MEDIUM | 5.3 | 0.3% | Oct 7, 2025 | A vulnerability was detected in jakowenko double-take up to 1.13.1. The impacted element is the function app.use of the ... |
| CVE-2025-11359 | HIGH | 8.8 | 0.3% | Oct 7, 2025 | A security vulnerability has been detected in code-projects Simple Banking System 1.0. The affected element is an unknow... |
| CVE-2025-10645 | MEDIUM | 5.3 | 0.3% | Oct 7, 2025 | The WP Reset plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, ... |
| CVE-2025-7400 | MEDIUM | 6.4 | 0.2% | Oct 7, 2025 | The Featured Image from URL (FIFU) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via a post's Featur... |
| CVE-2025-11358 | HIGH | 8.8 | 0.3% | Oct 7, 2025 | A weakness has been identified in code-projects Simple Banking System 1.0. Impacted is an unknown function of the file /... |
| CVE-2025-11357 | HIGH | 8.8 | 0.3% | Oct 7, 2025 | A security flaw has been discovered in code-projects Simple Banking System 1.0. This issue affects some unknown processi... |
| CVE-2025-11356 | HIGH | 8.8 | 0.7% | Oct 7, 2025 | A vulnerability was found in Tenda AC23 up to 16.03.07.52. Affected by this issue is the function sscanf of the file /go... |
| CVE-2025-11355 | HIGH | 8.8 | 0.7% | Oct 7, 2025 | A vulnerability has been found in UTT 1250GW up to v2v3.2.2-200710. Affected by this vulnerability is the function strcp... |
| CVE-2025-11354 | CRITICAL | 9.8 | 0.4% | Oct 7, 2025 | A flaw has been found in code-projects Online Hotel Reservation System 1.0. Affected is an unknown function of the file ... |
| CVE-2025-11353 | HIGH | 8.8 | 0.3% | Oct 7, 2025 | A vulnerability was detected in code-projects Online Hotel Reservation System 1.0. This impacts an unknown function of t... |
| CVE-2025-10162 | HIGH | 7.5 | 3.7% | Oct 7, 2025 | The Admin and Customer Messages After Order for WooCommerce: OrderConvo WordPress plugin before 14 does not validate the... |
| CVE-2025-11362 | HIGH | 8.7 | 0.3% | Oct 7, 2025 | Versions of the package pdfmake from 0.3.0-beta.1 and before 0.3.0-beta.17 are vulnerable to Allocation of Resources Wit... |
| CVE-2025-11352 | HIGH | 8.8 | 0.3% | Oct 7, 2025 | A security vulnerability has been detected in code-projects Online Hotel Reservation System 1.0. This affects an unknown... |
| CVE-2025-11351 | HIGH | 8.8 | 0.3% | Oct 7, 2025 | A weakness has been identified in code-projects Online Hotel Reservation System 1.0. The impacted element is an unknown ... |
| CVE-2025-11350 | CRITICAL | 9.8 | 0.4% | Oct 7, 2025 | A security flaw has been discovered in Campcodes Online Apartment Visitor Management System 1.0. The affected element is... |
| CVE-2025-11349 | CRITICAL | 9.8 | 0.4% | Oct 7, 2025 | A vulnerability was identified in Campcodes Online Apartment Visitor Management System 1.0. Impacted is an unknown funct... |
| CVE-2025-11348 | CRITICAL | 9.8 | 0.4% | Oct 7, 2025 | A vulnerability was determined in Campcodes Online Apartment Visitor Management System 1.0. This issue affects some unkn... |
| CVE-2025-11347 | CRITICAL | 9.8 | 0.5% | Oct 7, 2025 | A vulnerability was found in code-projects Student Crud Operation up to 3.3. This vulnerability affects the function mov... |
| CVE-2025-34251 | HIGH | 8.6 | 0.5% | Oct 7, 2025 | Tesla Telematics Control Unit (TCU) firmware prior to v2025.14 contains an authentication bypass vulnerability. The TCU ... |
| CVE-2025-61774 | CRITICAL | 9.3 | 0.6% | Oct 6, 2025 | PyVista provides 3D plotting and mesh analysis through an interface for the Visualization Toolkit (VTK). Version 0.46.3 ... |
| CVE-2025-61768 | MEDIUM | 5.1 | 0.3% | Oct 6, 2025 | KUNO CMS is a fully deployable full-stack blog application. In versions prior to 1.3.15, an SSRF (Server-Side Request Fo... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now