2025 CVE Vulnerabilities

45,233 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-10644CRITICAL9.4Wondershare Repairit SAS Token Incorrect Permission Assignment Authentication Bypass Vulnerability. This vulnerability a...
CVE-2025-10643CRITICAL9.1Wondershare Repairit Incorrect Permission Assignment Authentication Bypass Vulnerability. This vulnerability allows remo...
CVE-2025-10619MEDIUM6.3A vulnerability was detected in sequa-ai sequa-mcp up to 1.0.13. This affects the function redirectToAuthorization of th...
CVE-2025-10618HIGH8.8A security vulnerability has been detected in itsourcecode Online Clinic Management System 1.0. Affected by this issue i...
CVE-2025-10617HIGH8.8A weakness has been identified in SourceCodester Online Polling System 1.0. Affected by this vulnerability is an unknown...
CVE-2025-10616HIGH8.8A security flaw has been discovered in itsourcecode E-Commerce Website 1.0. Affected is an unknown function of the file ...
CVE-2025-59410LOW3.7Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, the code in the s...
CVE-2025-59354MEDIUM5.3Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, the DragonFly2 us...
CVE-2025-59353HIGH7.5Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, a peer can obtain...
CVE-2025-59352CRITICAL9.8Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, the gRPC API and ...
CVE-2025-59351MEDIUM5.3Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, the first return ...
CVE-2025-59350MEDIUM5.3Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, the access contro...
CVE-2025-59349LOW3.3Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, DragonFly2 uses t...
CVE-2025-59348HIGH7.5Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, the processPieceF...
CVE-2025-59347MEDIUM6.5Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, The Manager disab...
CVE-2025-59346MEDIUM5.3Dragonfly is an open source P2P-based file distribution and image acceleration system. Versions prior to 2.1.0 contain a...
CVE-2025-59340CRITICAL10jinjava is a Java-based template engine based on django template syntax, adapted to render jinja templates. Priori to 2....
CVE-2025-37122MEDIUM6.1A vulnerability in the web-based management interface of network access control services could allow an unauthenticated ...
CVE-2025-10615HIGH8.8A vulnerability was identified in itsourcecode E-Commerce Website 1.0. This impacts an unknown function of the file /adm...
CVE-2025-10614MEDIUM6.1A vulnerability was determined in itsourcecode E-Logbook with Health Monitoring System for COVID-19 1.0 on COVID. This a...
CVE-2025-59416HIGH7.2The Scratch Channel is a news website. If the user makes a fork, they can change the admins and make an article. Since t...
CVE-2025-59414LOW3.1Nuxt is an open-source web development framework for Vue.js. Prior to 3.19.0 and 4.1.0, A client-side path traversal vul...
CVE-2025-59345CRITICAL9.1Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, The /api/v1/jobs ...
CVE-2025-56648MEDIUM6.5npm parcel 2.0.0-alpha and before has an Origin Validation Error vulnerability. Malicious websites can send XMLHTTPReque...
CVE-2025-10613HIGH8.8A vulnerability has been found in itsourcecode Student Information System 1.0. The affected element is an unknown functi...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now