2025 CVE Vulnerabilities

45,254 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-30048MEDIUM5.3The "serverConfig" endpoint, which returns the module configuration including credentials, is accessible without authent...
CVE-2025-30041CRITICAL9The paths "/cgi-bin/CliniNET.prd/utils/userlogstat.pl", "/cgi-bin/CliniNET.prd/utils/usrlogstat.pl", and "/cgi-bin/Clini...
CVE-2025-30040CRITICAL9The vulnerability allows unauthenticated users to download a file containing session ID data by directly accessing the "...
CVE-2025-30039CRITICAL9Unauthenticated access to the "/cgi-bin/CliniNET.prd/GetActiveSessions.pl" endpoint allows takeover of any user session ...
CVE-2025-30038HIGH7.3The vulnerability consists of a session ID leak when saving a file downloaded from CGM CLININET. The identifier is expos...
CVE-2025-30037HIGH8.8The system exposes several endpoints, typically including "/int/" in their path, that should be restricted to internal s...
CVE-2025-30036HIGH8.8Stored XSS vulnerability exists in the "Oddział" (Ward) module, in the death diagnosis description field, and allows the...
CVE-2025-2313CRITICAL9.4In the Print.pl service, the "uhcPrintServerPrint" function allows execution of arbitrary code via the "CopyCounter" par...
CVE-2025-9514LOW3.7A vulnerability has been found in macrozheng mall up to 1.0.3. This impacts an unknown function of the component Registr...
CVE-2025-9513MEDIUM6.3A flaw has been found in editso fuso up to 1.0.4-beta.7. This affects the function PenetrateRsaAndAesHandshake of the fi...
CVE-2025-9511CRITICAL9.8A vulnerability was identified in itsourcecode Apartment Management System 1.0. This vulnerability affects unknown code ...
CVE-2025-57846HIGH8.5Multiple i-フィルター products contain an issue with incorrect default permissions. If this vulnerability is exploited, a loc...
CVE-2025-57797HIGH8.5Incorrect privilege assignment vulnerability exists in ScanSnap Manager installers versions prior to V6.5L61. If this vu...
CVE-2025-9510CRITICAL9.8A security vulnerability has been detected in itsourcecode Apartment Management System 1.0. The affected element is an u...
CVE-2025-9509CRITICAL9.8A security flaw has been discovered in itsourcecode Apartment Management System 1.0. This issue affects some unknown pro...
CVE-2025-9508CRITICAL9.8A vulnerability was detected in itsourcecode Apartment Management System 1.0. The impacted element is an unknown functio...
CVE-2025-48081MEDIUM5.3Path Traversal: '.../...//' vulnerability in Printeers Printeers Print & Ship allows Path Traversal.This issue affects P...
CVE-2025-9507CRITICAL9.8A weakness has been identified in itsourcecode Apartment Management System 1.0. Impacted is an unknown function of the f...
CVE-2025-9506CRITICAL9.8A vulnerability has been found in Campcodes Online Loan Management System 1.0. This affects an unknown part of the file ...
CVE-2025-9505CRITICAL9.8A flaw has been found in Campcodes Online Loan Management System 1.0. Affected by this issue is some unknown functionali...
CVE-2025-9504CRITICAL9.8A vulnerability was detected in Campcodes Online Loan Management System 1.0. Affected by this vulnerability is an unknow...
CVE-2025-49040MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Backup Bolt Backup Bolt backup-bolt allows Cross Site Request Forgery...
CVE-2025-49039MEDIUM5.9Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in mibuthu Link View ...
CVE-2025-49035MEDIUM5.9Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in chaimchaikin Admin...
CVE-2025-9503CRITICAL9.8A security vulnerability has been detected in Campcodes Online Loan Management System 1.0. Affected is an unknown functi...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now