2025 CVE Vulnerabilities

45,230 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-39871HIGH7.8In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Remove improper idxd_free The cal...
CVE-2025-39870HIGH7.8In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Fix double free in idxd_setup_wqs(...
CVE-2025-39869HIGH7.1In the Linux kernel, the following vulnerability has been resolved: dmaengine: ti: edma: Fix memory allocation size for...
CVE-2025-39868HIGH7.8In the Linux kernel, the following vulnerability has been resolved: erofs: fix runtime warning on truncate_folio_batch_...
CVE-2025-39867Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2025-10843CRITICAL9.8A flaw has been found in Reservation Online Hotel Reservation System 1.0. Affected by this vulnerability is an unknown f...
CVE-2025-10842CRITICAL9.8A vulnerability was detected in code-projects Online Bidding System 1.0. Affected is an unknown function of the file /ad...
CVE-2025-10841CRITICAL9.8A security vulnerability has been detected in code-projects Online Bidding System 1.0. This impacts an unknown function ...
CVE-2025-9321CRITICAL9.8The WPCasa plugin for WordPress is vulnerable to Code Injection in all versions up to, and including, 1.4.1. This is due...
CVE-2025-26399CRITICAL9.8SolarWinds Web Help Desk was found to be susceptible to an unauthenticated AjaxProxy deserialization remote code executi...
CVE-2025-1131HIGH7.8A local privilege escalation vulnerability exists in the safe_asterisk script included with the Asterisk toolkit package...
CVE-2025-10840HIGH8.8A weakness has been identified in SourceCodester Pet Grooming Management Software 1.0. This affects an unknown function ...
CVE-2025-10839HIGH8.8A security flaw has been discovered in SourceCodester Pet Grooming Management Software 1.0. The impacted element is an u...
CVE-2025-10838HIGH8.8A vulnerability was identified in Tenda AC21 16.03.08.16. The affected element is the function sub_45BB10 of the file /g...
CVE-2025-8902MEDIUM6.4The Widget Options - Extended plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'do_sid...
CVE-2025-10837MEDIUM5.4A security vulnerability has been detected in code-projects Simple Food Ordering System 1.0. Affected by this vulnerabil...
CVE-2025-10836CRITICAL9.8A weakness has been identified in SourceCodester Pet Grooming Management Software 1.0. Affected is an unknown function o...
CVE-2025-10835HIGH8.8A security flaw has been discovered in SourceCodester Pet Grooming Management Software 1.0. This impacts an unknown func...
CVE-2025-10380HIGH8.8The Advanced Views – Display Posts, Custom Fields, and More plugin for WordPress is vulnerable to Server-Side Template I...
CVE-2025-59885Rejected reason: Not used
CVE-2025-59884Rejected reason: Not used
CVE-2025-59883Rejected reason: Not used
CVE-2025-59882Rejected reason: Not used
CVE-2025-59881Rejected reason: Not used
CVE-2025-59880Rejected reason: Not used

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now