2025 CVE Vulnerabilities
45,321 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-49594 | CRITICAL | 9.2 | 0.5% | Oct 6, 2025 | XWiki OIDC has various tools to manipulate OpenID Connect protocol in XWiki. Starting in version 2.17.1 and prior to ver... |
| CVE-2025-11334 | CRITICAL | 9.8 | 0.4% | Oct 6, 2025 | A security flaw has been discovered in Campcodes Online Apartment Visitor Management System 1.0. Affected is an unknown ... |
| CVE-2025-11329 | CRITICAL | 9.8 | 0.4% | Oct 6, 2025 | A flaw has been found in code-projects Online Course Registration 1.0. Impacted is an unknown function of the file /admi... |
| CVE-2025-58587 | CRITICAL | 9.8 | 0.5% | Oct 6, 2025 | The application does not implement sufficient measures to prevent multiple failed authentication attempts within a short... |
| CVE-2025-11318 | CRITICAL | 9.8 | 0.5% | Oct 6, 2025 | A security flaw has been discovered in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. This vulnerabi... |
| CVE-2025-11317 | CRITICAL | 9.8 | 0.5% | Oct 6, 2025 | A vulnerability was identified in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. This affects the fu... |
| CVE-2025-11316 | CRITICAL | 9.8 | 0.5% | Oct 6, 2025 | A vulnerability was determined in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. Affected by this is... |
| CVE-2025-11315 | CRITICAL | 9.8 | 0.5% | Oct 6, 2025 | A vulnerability was found in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. Affected by this vulnera... |
| CVE-2025-11314 | CRITICAL | 9.8 | 0.5% | Oct 6, 2025 | A vulnerability has been found in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. Affected is the fun... |
| CVE-2025-11313 | CRITICAL | 9.8 | 0.5% | Oct 6, 2025 | A flaw has been found in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. This impacts the function fi... |
| CVE-2025-11312 | CRITICAL | 9.8 | 0.5% | Oct 6, 2025 | A vulnerability was detected in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. This affects the func... |
| CVE-2025-11311 | CRITICAL | 9.8 | 0.5% | Oct 6, 2025 | A security vulnerability has been detected in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. The imp... |
| CVE-2025-11310 | CRITICAL | 9.8 | 0.5% | Oct 6, 2025 | A weakness has been identified in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. The affected elemen... |
| CVE-2025-11309 | CRITICAL | 9.8 | 0.4% | Oct 5, 2025 | A security flaw has been discovered in Tipray 厦门天锐科技股份有限公司 Data Leakage Prevention System 天锐数据泄露防护系统 1.0. Impacted is th... |
| CVE-2025-11287 | CRITICAL | 9.8 | 0.6% | Oct 5, 2025 | A vulnerability was identified in samanhappy MCPHub up to 0.9.10. This vulnerability affects the function handleSseConne... |
| CVE-2025-61882 | CRITICAL | 9.8 | 99.7% | Oct 5, 2025 | Vulnerability in the Oracle Concurrent Processing product of Oracle E-Business Suite (component: BI Publisher Integratio... |
| CVE-2025-9485 | CRITICAL | 9.8 | 0.6% | Oct 4, 2025 | The OAuth Single Sign On – SSO (OAuth Client) plugin for WordPress is vulnerable to Improper Verification of Cryptograph... |
| CVE-2025-59944 | CRITICAL | 9.8 | 0.3% | Oct 3, 2025 | Cursor is a code editor built for programming with AI. Versions 1.6.23 and below contain case-sensitive checks in the wa... |
| CVE-2025-59943 | CRITICAL | 9.8 | 0.4% | Oct 3, 2025 | phpMyFAQ is an open source FAQ web application. Versions 4.0-nightly-2025-10-03 and below do not enforce uniqueness of e... |
| CVE-2025-49844 | CRITICAL | 9.9 | 86.3% | Oct 3, 2025 | Redis is an open source, in-memory database that persists on disk. Versions 8.2.1 and below allow an authenticated user ... |
| CVE-2025-10729 | CRITICAL | 9.4 | 0.2% | Oct 3, 2025 | The module will parse a <pattern> node which is not a child of a structural node. The node will be deleted after creatio... |
| CVE-2025-10728 | CRITICAL | 9.4 | 0.2% | Oct 3, 2025 | When the module renders a Svg file that contains a <pattern> element, it might end up rendering it recursively leading t... |
| CVE-2025-9286 | CRITICAL | 9.8 | 0.4% | Oct 3, 2025 | The Appy Pie Connect for WooCommerce plugin for WordPress is vulnerable to Privilege Escalation due to missing authoriza... |
| CVE-2025-9209 | CRITICAL | 9.8 | 2.2% | Oct 3, 2025 | The RestroPress – Online Food Ordering System plugin for WordPress is vulnerable to Authentication Bypass in versions 3.... |
| CVE-2025-7721 | CRITICAL | 9.8 | 0.6% | Oct 3, 2025 | The JoomSport – for Sports: Team & League, Football, Hockey & more plugin for WordPress is vulnerable to Local File Incl... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now