2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-11630CRITICAL9.8A vulnerability was found in RainyGao DocSys up to 2.02.36. Affected is the function updateRealDoc of the file /Doc/uplo...
CVE-2025-11629CRITICAL9.8A vulnerability has been found in RainyGao DocSys up to 2.02.36. This impacts the function getUserList of the file /Mana...
CVE-2025-31998CRITICAL9.8HCL Unica Centralized Offer Management is vulnerable to poor unhandled exceptions which exposes sensitive information. ...
CVE-2025-31993CRITICAL9.8HCL Unica Centralized Offer Management is vulnerable to a potential Server-Side Request Forgery (SSRF). An attacker can ...
CVE-2025-11615CRITICAL9.8A security flaw has been discovered in SourceCodester Best Salon Management System 1.0. This affects an unknown part of ...
CVE-2025-11614CRITICAL9.8A vulnerability was identified in SourceCodester Best Salon Management System 1.0. Affected by this issue is some unknow...
CVE-2025-11608CRITICAL9.8A security vulnerability has been detected in code-projects E-Banking System 1.0. This affects an unknown function of th...
CVE-2025-11604CRITICAL9.8A vulnerability was determined in projectworlds Online Ordering Food System 1.0. This issue affects some unknown process...
CVE-2025-11601CRITICAL9.8A vulnerability was detected in SourceCodester Online Student Result System 1.0. Affected by this vulnerability is an un...
CVE-2025-11599CRITICAL9.8A weakness has been identified in Campcodes Online Apartment Visitor Management System 1.0. This impacts an unknown func...
CVE-2025-11597CRITICAL9.8A vulnerability was identified in code-projects E-Commerce Website 1.0. The impacted element is an unknown function of t...
CVE-2025-6439CRITICAL9.8The WooCommerce Designer Pro plugin for WordPress, used by the Pricom - Printing Company & Design Services WordPress the...
CVE-2025-11596CRITICAL9.8A vulnerability was determined in code-projects E-Commerce Website 1.0. The affected element is an unknown function of t...
CVE-2025-11595CRITICAL9.8A vulnerability was found in Campcodes Online Apartment Visitor Management System 1.0. Impacted is an unknown function o...
CVE-2025-6553CRITICAL9.8The Ovatheme Events Manager plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type valida...
CVE-2025-11533CRITICAL9.8The WP Freeio plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.2.21. T...
CVE-2025-11586CRITICAL9.8A vulnerability was determined in Tenda AC7 15.03.06.44. This affects an unknown function of the file /goform/setNotUpgr...
CVE-2025-11585CRITICAL9.8A vulnerability was found in code-projects Project Monitoring System 1.0. The impacted element is an unknown function of...
CVE-2025-11584CRITICAL9.8A vulnerability has been found in code-projects Online Job Search Engine 1.0. The affected element is an unknown functio...
CVE-2025-61929CRITICAL9.6Cherry Studio is a desktop client that supports for multiple LLM providers. Cherry Studio registers a custom protocol ca...
CVE-2025-11583CRITICAL9.8A flaw has been found in code-projects Online Job Search Engine 1.0. Impacted is an unknown function of the file /postjo...
CVE-2025-11582CRITICAL9.8A vulnerability was detected in code-projects Online Job Search Engine 1.0. This issue affects some unknown processing o...
CVE-2025-60306CRITICAL9.9code-projects Simple Car Rental System 1.0 has a permission bypass issue where low privilege users can forge high privil...
CVE-2025-60269CRITICAL9.4JEEWMS 20250820 is vulnerable to SQL Injection in the exportXls function located in the src/main/java/org/jeecgframework...
CVE-2025-60307CRITICAL9.8code-projects Computer Laboratory System 1.0 has a SQL injection vulnerability, where entering a universal password in t...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now