2025 CVE Vulnerabilities
45,252 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-9788 | CRITICAL | 9.8 | 0.4% | Sep 1, 2025 | A vulnerability was determined in SourceCodester/Campcodes School Log Management System 1.0. Affected by this vulnerabil... |
| CVE-2025-3586 | HIGH | 7.2 | 0.4% | Sep 1, 2025 | In Liferay Portal 7.4.3.27 through 7.4.3.42, and Liferay DXP 2024.Q1.1 through 2024.Q1.20, 2023.Q4.0 through 2023.Q4.10,... |
| CVE-2025-9375 | MEDIUM | 6.9 | 0.4% | Sep 1, 2025 | XML Injection vulnerability in xmltodict allows Input Data Manipulation. This issue affects xmltodict: from 0.14.2 befor... |
| CVE-2025-9786 | CRITICAL | 9.8 | 0.4% | Sep 1, 2025 | A vulnerability was found in Campcodes Online Learning Management System 1.0. Affected is an unknown function of the fil... |
| CVE-2025-57799 | HIGH | 8.7 | 1.3% | Sep 1, 2025 | StreamVault is a multi-platform video parsing and downloading tool. Prior to version 250822, after logging into the Stre... |
| CVE-2025-55007 | MEDIUM | 5.3 | 0.2% | Sep 1, 2025 | Knowage is an open source analytics and business intelligence suite. Prior to version 8.1.37, Knowage is vulnerable to s... |
| CVE-2025-9783 | HIGH | 8.8 | 0.6% | Sep 1, 2025 | A vulnerability was determined in TOTOLINK A702R 4.0.0-B20211108.1423. This issue affects the function sub_418030 of the... |
| CVE-2025-33102 | HIGH | 7.5 | 0.2% | Sep 1, 2025 | IBM Concert Software 1.0.0 through 1.1.0 uses weaker than expected cryptographic algorithms that could allow an attacker... |
| CVE-2025-33099 | MEDIUM | 5.9 | 0.2% | Sep 1, 2025 | IBM Concert Software 1.0.0 through 1.1.0 could allow a remote attacker to perform unauthorized actions using man in the ... |
| CVE-2025-33084 | MEDIUM | 5.9 | 0.2% | Sep 1, 2025 | IBM Concert Software 1.0.0 through 1.1.0 could allow a remote attacker to obtain sensitive information, caused by the fa... |
| CVE-2025-33083 | MEDIUM | 5.4 | 0.2% | Sep 1, 2025 | IBM Concert Software 1.0.0 through 1.1.0 is vulnerable to cross-site scripting. This vulnerability allows an authenticat... |
| CVE-2025-33082 | MEDIUM | 5.4 | 0.2% | Sep 1, 2025 | IBM Concert Software 1.0.0 through 1.1.0 is vulnerable to cross-site scripting. This vulnerability allows an authenticat... |
| CVE-2025-0656 | MEDIUM | 6.1 | 0.2% | Sep 1, 2025 | IBM Concert Software 1.0.0 through 1.1.0 is vulnerable to cross-site scripting. This vulnerability allows an unauthentic... |
| CVE-2025-9782 | HIGH | 8.8 | 0.6% | Sep 1, 2025 | A vulnerability was found in TOTOLINK A702R 4.0.0-B20211108.1423. This vulnerability affects the function sub_4466F8 of ... |
| CVE-2025-9781 | HIGH | 8.8 | 0.6% | Sep 1, 2025 | A vulnerability has been found in TOTOLINK A702R 4.0.0-B20211108.1423. This affects the function sub_4162DC of the file ... |
| CVE-2025-9780 | HIGH | 8.8 | 0.6% | Sep 1, 2025 | A flaw has been found in TOTOLINK A702R 4.0.0-B20211108.1423. Affected by this issue is the function sub_419BE0 of the f... |
| CVE-2025-9779 | HIGH | 8.8 | 0.6% | Sep 1, 2025 | A vulnerability was detected in TOTOLINK A702R 4.0.0-B20211108.1423. Affected by this vulnerability is the function sub_... |
| CVE-2025-2412 | HIGH | 8.6 | 0.3% | Sep 1, 2025 | Improper Restriction of Excessive Authentication Attempts vulnerability in Akinsoft QR Menu allows Authentication Bypass... |
| CVE-2025-0610 | HIGH | 8.6 | 0.2% | Sep 1, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Akınsoft QR Menü allows Cross Site Request Forgery. This issue affec... |
| CVE-2025-9778 | HIGH | 7 | 0.1% | Sep 1, 2025 | A security vulnerability has been detected in Tenda W12 up to 3.0.0.6(3948). Affected is an unknown function of the file... |
| CVE-2025-36133 | MEDIUM | 5.5 | 0.1% | Sep 1, 2025 | IBM App Connect Enterprise Certified Container CD: 9.2.0 through 11.6.0, 12.1.0 through 12.14.0, and 12.0 LTS: 12.0.0 th... |
| CVE-2025-9775 | CRITICAL | 9.8 | 0.5% | Sep 1, 2025 | A vulnerability was found in RemoteClinic up to 2.0. Impacted is an unknown function of the file /staff/edit-my-profile.... |
| CVE-2025-9774 | MEDIUM | 4.3 | 0.4% | Sep 1, 2025 | A vulnerability has been found in RemoteClinic up to 2.0. This issue affects some unknown processing of the file /patien... |
| CVE-2025-9773 | MEDIUM | 6.1 | 0.4% | Sep 1, 2025 | A flaw has been found in RemoteClinic up to 2.0. This vulnerability affects unknown code of the file /staff/edit.php. Ex... |
| CVE-2025-9772 | CRITICAL | 9.8 | 0.5% | Sep 1, 2025 | A vulnerability was detected in RemoteClinic up to 2.0. This affects an unknown part of the file /staff/edit.php. Perfor... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now