2025 CVE Vulnerabilities

45,230 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-11041HIGH8.8A vulnerability has been found in itsourcecode Open Source Job Portal 1.0. Affected by this issue is some unknown functi...
CVE-2025-11040CRITICAL9.8A vulnerability was detected in code-projects Hostel Management System 1.0. Affected by this issue is some unknown funct...
CVE-2025-11039CRITICAL9.8A security vulnerability has been detected in Campcodes Computer Sales and Inventory System 1.0. Affected by this vulner...
CVE-2025-11038HIGH8.8A weakness has been identified in itsourcecode Online Clinic Management System 1.0. Affected is an unknown function of t...
CVE-2025-11037CRITICAL9.8A security flaw has been discovered in code-projects E-Commerce Website 1.0. This impacts an unknown function of the fil...
CVE-2025-11036CRITICAL9.8A vulnerability was identified in code-projects E-Commerce Website 1.0. This affects an unknown function of the file /pa...
CVE-2025-11035CRITICAL9.8A vulnerability was determined in Jinher OA 2.0. The impacted element is an unknown function of the file /c6/Jhsoft.Web....
CVE-2025-58384CRITICAL10In DOXENSE WATCHDOC before 6.1.1.5332, Deserialization of Untrusted Data can lead to remote code execution through the ....
CVE-2025-56383HIGH8.4Notepad++ v8.8.3 has a DLL hijacking vulnerability, which can replace the original DLL file to execute malicious code. N...
CVE-2025-55847HIGH8.8Wavlink M86X3A_V240730 contains a buffer overflow vulnerability in the /cgi-bin/ExportAllSettings.cgi file. The vulnerab...
CVE-2025-45994HIGH7.5An issue in Aranda PassRecovery v1.0 allows attackers to enumerate valid user accounts in Active Directory via sending a...
CVE-2025-11034MEDIUM4.3A vulnerability was found in Dibo Data Decision Making System up to 2.7.0. The affected element is the function download...
CVE-2025-11033CRITICAL9.8A vulnerability has been found in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464. Impacted ...
CVE-2025-11032CRITICAL9.8A flaw has been found in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464. This issue affects...
CVE-2025-59844HIGH7.7SonarQube Server and Cloud is a static analysis solution for continuous code quality and security inspection. A command ...
CVE-2025-55848HIGH8.8An issue was discovered in DIR-823 firmware 20250416. There is an RCE vulnerability in the set_cassword settings interfa...
CVE-2025-26258MEDIUM6.1Sourcecodester Employee Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via 'Add Designation.'
CVE-2025-11031MEDIUM5.5A flaw has been found in DataTables up to 1.10.13. The affected element is an unknown function of the file /examples/res...
CVE-2025-11030HIGH7.3A vulnerability was detected in Tutorials-Website Employee Management System up to 611887d8f8375271ce8abc704507d46340837...
CVE-2025-11029HIGH8.8A weakness has been identified in givanz Vvveb up to 1.0.7.2. This vulnerability affects unknown code. Executing manipul...
CVE-2025-59843MEDIUM5.3Flag Forge is a Capture The Flag (CTF) platform. From versions 2.0.0 to before 2.3.2, the public endpoint /api/user/[use...
CVE-2025-59842MEDIUM4.3jupyterlab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Archit...
CVE-2025-59362MEDIUM4Squid through 7.1 mishandles ASN.1 encoding of long SNMP OIDs. This occurs in asn_build_objid in lib/snmplib/asn1.c.
CVE-2025-58385HIGH7.1In DOXENSE WATCHDOC before 6.1.0.5094, private user puk codes can be disclosed for Active Directory registered users (th...
CVE-2025-56463MEDIUM6.8Mercusys MW305R 3.30 and below is has a Transport Layer Security (TLS) certificate private key disclosure.

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now