2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-10842 | CRITICAL | 9.8 | 0.4% | Sep 23, 2025 | A vulnerability was detected in code-projects Online Bidding System 1.0. Affected is an unknown function of the file /ad... |
| CVE-2025-10841 | CRITICAL | 9.8 | 0.5% | Sep 23, 2025 | A security vulnerability has been detected in code-projects Online Bidding System 1.0. This impacts an unknown function ... |
| CVE-2025-9321 | CRITICAL | 9.8 | 0.8% | Sep 23, 2025 | The WPCasa plugin for WordPress is vulnerable to Code Injection in all versions up to, and including, 1.4.1. This is due... |
| CVE-2025-26399 | CRITICAL | 9.8 | 88.3% | Sep 23, 2025 | SolarWinds Web Help Desk was found to be susceptible to an unauthenticated AjaxProxy deserialization remote code executi... |
| CVE-2025-10836 | CRITICAL | 9.8 | 0.4% | Sep 23, 2025 | A weakness has been identified in SourceCodester Pet Grooming Management Software 1.0. Affected is an unknown function o... |
| CVE-2025-10834 | CRITICAL | 9.8 | 0.4% | Sep 23, 2025 | A vulnerability was identified in itsourcecode Open Source Job Portal 1.0. This affects an unknown function of the file ... |
| CVE-2025-10833 | CRITICAL | 9.8 | 0.4% | Sep 23, 2025 | A vulnerability was determined in 1000projects Bookstore Management System 1.0. The impacted element is an unknown funct... |
| CVE-2025-10832 | CRITICAL | 9.8 | 0.4% | Sep 23, 2025 | A vulnerability was found in SourceCodester Pet Grooming Management Software 1.0. The affected element is an unknown fun... |
| CVE-2025-10831 | CRITICAL | 9.8 | 0.4% | Sep 23, 2025 | A vulnerability has been found in Campcodes Computer Sales and Inventory System 1.0. Impacted is an unknown function of ... |
| CVE-2025-10830 | CRITICAL | 9.8 | 0.4% | Sep 23, 2025 | A flaw has been found in Campcodes Computer Sales and Inventory System 1.0. This issue affects some unknown processing o... |
| CVE-2025-10829 | CRITICAL | 9.8 | 0.4% | Sep 23, 2025 | A vulnerability was detected in Campcodes Computer Sales and Inventory System 1.0. This vulnerability affects unknown co... |
| CVE-2025-10817 | CRITICAL | 9.8 | 0.4% | Sep 22, 2025 | A weakness has been identified in Campcodes Online Learning Management System 1.0. This vulnerability affects unknown co... |
| CVE-2025-10816 | CRITICAL | 9.8 | 0.5% | Sep 22, 2025 | A security flaw has been discovered in Jinher OA 2.0. This affects an unknown part of the file /c6/Jhsoft.Web.module/Too... |
| CVE-2025-59528 | CRITICAL | 10 | 90.2% | Sep 22, 2025 | Flowise is a drag & drop user interface to build a customized large language model flow. In version 3.0.5, Flowise is vu... |
| CVE-2025-59434 | CRITICAL | 9.6 | 3.1% | Sep 22, 2025 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to August 2025 Cloud-Host... |
| CVE-2025-10813 | CRITICAL | 9.8 | 0.4% | Sep 22, 2025 | A vulnerability was found in code-projects Hostel Management System 1.0. Affected is an unknown function of the file /ju... |
| CVE-2025-10812 | CRITICAL | 9.8 | 0.4% | Sep 22, 2025 | A vulnerability has been found in code-projects Hostel Management System 1.0. This impacts an unknown function of the fi... |
| CVE-2025-58668 | CRITICAL | 9.8 | 0.3% | Sep 22, 2025 | Missing Authorization vulnerability in VibeThemes WPLMS wplms allows Exploiting Incorrectly Configured Access Control S... |
| CVE-2025-58255 | CRITICAL | 9.6 | 0.2% | Sep 22, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in yonisink Custom Post Type Images custom-post-types-image allows Code ... |
| CVE-2025-10811 | CRITICAL | 9.8 | 0.6% | Sep 22, 2025 | A flaw has been found in code-projects Hostel Management System 1.0. This affects an unknown function of the file /justi... |
| CVE-2025-10810 | CRITICAL | 9.8 | 0.6% | Sep 22, 2025 | A vulnerability was detected in Campcodes Online Learning Management System 1.0. The impacted element is an unknown func... |
| CVE-2025-57441 | CRITICAL | 9.8 | 0.5% | Sep 22, 2025 | The Blackmagic ATEM Mini Pro 2.7 exposes sensitive device and stream configuration information via an unauthenticated Te... |
| CVE-2025-57437 | CRITICAL | 9.8 | 0.5% | Sep 22, 2025 | The Blackmagic Web Presenter HD firmware version 3.3 exposes sensitive information via an unauthenticated Telnet service... |
| CVE-2025-10809 | CRITICAL | 9.8 | 0.5% | Sep 22, 2025 | A security vulnerability has been detected in Campcodes Online Learning Management System 1.0. The affected element is a... |
| CVE-2025-10808 | CRITICAL | 9.8 | 0.4% | Sep 22, 2025 | A weakness has been identified in Campcodes Farm Management System 1.0. Impacted is an unknown function of the file /upl... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now