2025 CVE Vulnerabilities
45,321 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-27034 | CRITICAL | 9.8 | 0.4% | Sep 24, 2025 | Memory corruption while selecting the PLMN from SOR failed list. |
| CVE-2025-21483 | CRITICAL | 9.8 | 0.4% | Sep 24, 2025 | Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs. |
| CVE-2025-9054 | CRITICAL | 9.8 | 0.3% | Sep 24, 2025 | The MultiLoca - WooCommerce Multi Locations Inventory Management plugin for WordPress is vulnerable to unauthorized modi... |
| CVE-2025-41715 | CRITICAL | 9.8 | 0.5% | Sep 24, 2025 | The database for the web application is exposed without authentication, allowing an unauthenticated remote attacker to g... |
| CVE-2025-59545 | CRITICAL | 9 | 0.5% | Sep 23, 2025 | DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. Prior to v... |
| CVE-2025-4993 | CRITICAL | 9.1 | 0.4% | Sep 23, 2025 | Untrusted Pointer Dereference vulnerability in RTI Connext Professional (Core Libraries) allows Pointer Manipulation. Th... |
| CVE-2025-1255 | CRITICAL | 9.1 | 0.4% | Sep 23, 2025 | Untrusted Pointer Dereference vulnerability in RTI Connext Professional (Core Libraries) allows Pointer Manipulation. Th... |
| CVE-2025-9846 | CRITICAL | 10 | 1.0% | Sep 23, 2025 | Unrestricted Upload of File with Dangerous Type vulnerability in TalentSys Consulting Information Technology Industry In... |
| CVE-2025-9965 | CRITICAL | 9.3 | 0.7% | Sep 23, 2025 | Improper authentication vulnerability in Novakon P series allows unauthenticated attackers to upload and download any ap... |
| CVE-2025-9963 | CRITICAL | 9.4 | 0.2% | Sep 23, 2025 | A path traversal vulnerability in Novakon P series allows to expose the root file system "/" and modify all files with r... |
| CVE-2025-9962 | CRITICAL | 10 | 1.1% | Sep 23, 2025 | A buffer overflow vulnerability in Novakon P series allows attackers to gain root permission without prior authenticatio... |
| CVE-2025-10412 | CRITICAL | 9.8 | 0.6% | Sep 23, 2025 | The Product Options and Price Calculation Formulas for WooCommerce – Uni CPO (Premium) plugin for WordPress is vulnerabl... |
| CVE-2025-10857 | CRITICAL | 9.8 | 0.5% | Sep 23, 2025 | A security flaw has been discovered in Campcodes Point of Sale System POS 1.0. Affected by this issue is some unknown fu... |
| CVE-2025-10147 | CRITICAL | 9.8 | 0.9% | Sep 23, 2025 | The Podlove Podcast Publisher plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type vali... |
| CVE-2025-9588 | CRITICAL | 9.8 | 1.1% | Sep 23, 2025 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Iron Mountai... |
| CVE-2025-10851 | CRITICAL | 9.8 | 0.4% | Sep 23, 2025 | A security flaw has been discovered in Campcodes Gym Management System 1.0. Impacted is an unknown function of the file ... |
| CVE-2025-10843 | CRITICAL | 9.8 | 0.4% | Sep 23, 2025 | A flaw has been found in Reservation Online Hotel Reservation System 1.0. Affected by this vulnerability is an unknown f... |
| CVE-2025-10842 | CRITICAL | 9.8 | 0.4% | Sep 23, 2025 | A vulnerability was detected in code-projects Online Bidding System 1.0. Affected is an unknown function of the file /ad... |
| CVE-2025-10841 | CRITICAL | 9.8 | 0.5% | Sep 23, 2025 | A security vulnerability has been detected in code-projects Online Bidding System 1.0. This impacts an unknown function ... |
| CVE-2025-9321 | CRITICAL | 9.8 | 0.8% | Sep 23, 2025 | The WPCasa plugin for WordPress is vulnerable to Code Injection in all versions up to, and including, 1.4.1. This is due... |
| CVE-2025-26399 | CRITICAL | 9.8 | 88.3% | Sep 23, 2025 | SolarWinds Web Help Desk was found to be susceptible to an unauthenticated AjaxProxy deserialization remote code executi... |
| CVE-2025-10836 | CRITICAL | 9.8 | 0.4% | Sep 23, 2025 | A weakness has been identified in SourceCodester Pet Grooming Management Software 1.0. Affected is an unknown function o... |
| CVE-2025-10834 | CRITICAL | 9.8 | 0.4% | Sep 23, 2025 | A vulnerability was identified in itsourcecode Open Source Job Portal 1.0. This affects an unknown function of the file ... |
| CVE-2025-10833 | CRITICAL | 9.8 | 0.4% | Sep 23, 2025 | A vulnerability was determined in 1000projects Bookstore Management System 1.0. The impacted element is an unknown funct... |
| CVE-2025-10832 | CRITICAL | 9.8 | 0.4% | Sep 23, 2025 | A vulnerability was found in SourceCodester Pet Grooming Management Software 1.0. The affected element is an unknown fun... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now