2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-12257CRITICAL9.8A security vulnerability has been detected in SourceCodester Online Student Result System 1.0. This issue affects some u...
CVE-2025-12253CRITICAL9.8A vulnerability was determined in AMTT Hotel Broadband Operation System 1.0. Affected by this vulnerability is an unknow...
CVE-2025-12240CRITICAL9.8A security vulnerability has been detected in TOTOLINK A3300R 17.0.0cu.557_B20221024. This affects the function setDmzCf...
CVE-2025-12239CRITICAL9.8A weakness has been identified in TOTOLINK A3300R 17.0.0cu.557_B20221024. The impacted element is the function setDdnsCf...
CVE-2025-12237CRITICAL9.8A vulnerability was identified in projectworlds Advanced Library Management System 1.0. Impacted is an unknown function ...
CVE-2025-12232CRITICAL9.8A vulnerability was detected in Tenda CH22 1.0.0.1. Affected by this vulnerability is the function fromSafeClientFilter ...
CVE-2025-12226CRITICAL9.8A vulnerability was found in SourceCodester Best House Rental Management System 1.0. Impacted is the function save_house...
CVE-2025-12215CRITICAL9.8A flaw has been found in projectworlds Online Shopping System 1.0. Impacted is an unknown function of the file /login_su...
CVE-2025-12211CRITICAL9.8A security flaw has been discovered in Tenda O3 1.0.0.10(2478). Affected by this issue is the function SetValue/GetValue...
CVE-2025-12210CRITICAL9.8A vulnerability was identified in Tenda O3 1.0.0.10(2478). Affected by this vulnerability is the function SetValue/GetVa...
CVE-2025-12208CRITICAL9.8A vulnerability was found in SourceCodester Best House Rental Management System 1.0. This impacts the function login2 of...
CVE-2025-62959CRITICAL9.1Improper Control of Generation of Code ('Code Injection') vulnerability in videowhisper Paid Videochat Turnkey Site ppv-...
CVE-2025-12285CRITICAL9.8Missing Initial Password Change.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
CVE-2025-12275CRITICAL9.8Mail Configuration File Manipulation + Command Execution.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1....
CVE-2025-12220CRITICAL9.8Busybox 1.31.1 - Multiple Known Vulnerabilities.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
CVE-2025-12219CRITICAL9.8Vulnerable Components in Azure Access OS.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
CVE-2025-12218CRITICAL9.1Weak Default Credentials.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
CVE-2025-12217CRITICAL9.1SNMP Default Community String (public).This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
CVE-2025-62717CRITICAL9.1Emlog is an open source website building system. In version 2.5.23, Emlog Pro is vulnerable to a session verification co...
CVE-2025-60803CRITICAL9.8Antabot White-Jotter up to commit 9bcadc was discovered to contain an unauthenticated remote code execution (RCE) vulner...
CVE-2025-60554CRITICAL9.8D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formS...
CVE-2025-60553CRITICAL9.8D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formS...
CVE-2025-60548CRITICAL9.8D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formL...
CVE-2025-12176CRITICAL9.8Undocumented administrative accounts were getting created to facilitate access for applications running on board.This is...
CVE-2025-8536CRITICAL9.3A SQL injection vulnerability has been identified in DobryCMS. Improper neutralization of input provided by user into la...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now