2025 CVE Vulnerabilities

45,253 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-9664HIGH8.8A security flaw has been discovered in code-projects Simple Grading System 1.0. Affected is an unknown function of the f...
CVE-2025-9663HIGH8.8A vulnerability was identified in code-projects Simple Grading System 1.0. This impacts an unknown function of the file ...
CVE-2025-9662CRITICAL9.8A vulnerability was determined in code-projects Simple Grading System 1.0. This affects an unknown function of the file ...
CVE-2025-9660CRITICAL9.8A vulnerability was found in SourceCodester Bakeshop Online Ordering System 1.0. The impacted element is an unknown func...
CVE-2025-55763HIGH7.5Buffer Overflow in the URI parser of CivetWeb 1.14 through 1.16 (latest) allows a remote attacker to achieve remote code...
CVE-2025-55580MEDIUM5.4SolidInvoice version 2.3.7 is vulnerable to a stored cross-site scripting (XSS) issue in the Clients module. An authenti...
CVE-2025-55579MEDIUM5.4SolidInvoice version 2.3.7 is vulnerable to a Stored Cross-Site Scripting (XSS) issue in the Tax Rates functionality. Th...
CVE-2025-29879MEDIUM6.5A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user a...
CVE-2025-29878MEDIUM6.5A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user a...
CVE-2025-29875MEDIUM6.5A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user a...
CVE-2025-29874MEDIUM6.5A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user a...
CVE-2025-22483MEDIUM4.8A cross-site scripting (XSS) vulnerability has been reported to affect several QNAP operating system versions. If a remo...
CVE-2025-9659MEDIUM5.4A vulnerability has been found in O2OA up to 10.0-410. The affected element is an unknown function of the file /x_portal...
CVE-2025-9658MEDIUM5.4A flaw has been found in O2OA up to 10.0-410. Impacted is an unknown function of the file /x_portal_assemble_designer/ja...
CVE-2025-9657MEDIUM5.4A vulnerability was detected in O2OA up to 10.0-410. This issue affects some unknown processing of the file /x_program_c...
CVE-2025-9656MEDIUM6.1A security vulnerability has been detected in PHPGurukul Directory Management System 2.0. This vulnerability affects unk...
CVE-2025-5808HIGH7.3Improper Input Validation vulnerability in OpenText Self Service Password Reset allows Authentication Bypass.This issue ...
CVE-2025-55750MEDIUM6.5Gitpod is a developer platform for cloud development environments. In versions before main-gha.33628 for both Gitpod Cla...
CVE-2025-55202MEDIUM5.3Opencast is a free, open-source platform to support the management of educational audio and video content. In version 18...
CVE-2025-55177MEDIUM5.4Incomplete authorization of linked device synchronization messages in WhatsApp for iOS prior to v2.25.21.73, WhatsApp Bu...
CVE-2025-54877MEDIUM5.3Tuleap is an Open Source Suite created to facilitate management of software development and collaboration. In Tuleap Com...
CVE-2025-47909HIGH7.3Hosts listed in TrustedOrigins implicitly allow requests from the corresponding HTTP origins, allowing network MitMs to ...
CVE-2025-9655MEDIUM5.4A weakness has been identified in O2OA up to 10.0-410. This affects an unknown part of the file /x_organization_assemble...
CVE-2025-9654MEDIUM6.3A security flaw has been discovered in AiondaDotCom mcp-ssh up to 1.0.3. Affected by this issue is some unknown function...
CVE-2025-9653MEDIUM5.4A vulnerability was identified in Portabilis i-Educar up to 2.10. Affected by this vulnerability is an unknown functiona...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now