2025 CVE Vulnerabilities
45,254 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-30048 | MEDIUM | 5.3 | 0.2% | Aug 27, 2025 | The "serverConfig" endpoint, which returns the module configuration including credentials, is accessible without authent... |
| CVE-2025-30041 | CRITICAL | 9 | 0.2% | Aug 27, 2025 | The paths "/cgi-bin/CliniNET.prd/utils/userlogstat.pl", "/cgi-bin/CliniNET.prd/utils/usrlogstat.pl", and "/cgi-bin/Clini... |
| CVE-2025-30040 | CRITICAL | 9 | 0.2% | Aug 27, 2025 | The vulnerability allows unauthenticated users to download a file containing session ID data by directly accessing the "... |
| CVE-2025-30039 | CRITICAL | 9 | 0.2% | Aug 27, 2025 | Unauthenticated access to the "/cgi-bin/CliniNET.prd/GetActiveSessions.pl" endpoint allows takeover of any user session ... |
| CVE-2025-30038 | HIGH | 7.3 | 0.2% | Aug 27, 2025 | The vulnerability consists of a session ID leak when saving a file downloaded from CGM CLININET. The identifier is expos... |
| CVE-2025-30037 | HIGH | 8.8 | 0.2% | Aug 27, 2025 | The system exposes several endpoints, typically including "/int/" in their path, that should be restricted to internal s... |
| CVE-2025-30036 | HIGH | 8.8 | 0.1% | Aug 27, 2025 | Stored XSS vulnerability exists in the "Oddział" (Ward) module, in the death diagnosis description field, and allows the... |
| CVE-2025-2313 | CRITICAL | 9.4 | 0.2% | Aug 27, 2025 | In the Print.pl service, the "uhcPrintServerPrint" function allows execution of arbitrary code via the "CopyCounter" par... |
| CVE-2025-9514 | LOW | 3.7 | 0.4% | Aug 27, 2025 | A vulnerability has been found in macrozheng mall up to 1.0.3. This impacts an unknown function of the component Registr... |
| CVE-2025-9513 | MEDIUM | 6.3 | 0.1% | Aug 27, 2025 | A flaw has been found in editso fuso up to 1.0.4-beta.7. This affects the function PenetrateRsaAndAesHandshake of the fi... |
| CVE-2025-9511 | CRITICAL | 9.8 | 0.4% | Aug 27, 2025 | A vulnerability was identified in itsourcecode Apartment Management System 1.0. This vulnerability affects unknown code ... |
| CVE-2025-57846 | HIGH | 8.5 | 0.1% | Aug 27, 2025 | Multiple i-フィルター products contain an issue with incorrect default permissions. If this vulnerability is exploited, a loc... |
| CVE-2025-57797 | HIGH | 8.5 | 0.1% | Aug 27, 2025 | Incorrect privilege assignment vulnerability exists in ScanSnap Manager installers versions prior to V6.5L61. If this vu... |
| CVE-2025-9510 | CRITICAL | 9.8 | 0.4% | Aug 27, 2025 | A security vulnerability has been detected in itsourcecode Apartment Management System 1.0. The affected element is an u... |
| CVE-2025-9509 | CRITICAL | 9.8 | 0.4% | Aug 27, 2025 | A security flaw has been discovered in itsourcecode Apartment Management System 1.0. This issue affects some unknown pro... |
| CVE-2025-9508 | CRITICAL | 9.8 | 0.4% | Aug 27, 2025 | A vulnerability was detected in itsourcecode Apartment Management System 1.0. The impacted element is an unknown functio... |
| CVE-2025-48081 | MEDIUM | 5.3 | 0.3% | Aug 27, 2025 | Path Traversal: '.../...//' vulnerability in Printeers Printeers Print & Ship allows Path Traversal.This issue affects P... |
| CVE-2025-9507 | CRITICAL | 9.8 | 0.4% | Aug 27, 2025 | A weakness has been identified in itsourcecode Apartment Management System 1.0. Impacted is an unknown function of the f... |
| CVE-2025-9506 | CRITICAL | 9.8 | 0.4% | Aug 27, 2025 | A vulnerability has been found in Campcodes Online Loan Management System 1.0. This affects an unknown part of the file ... |
| CVE-2025-9505 | CRITICAL | 9.8 | 0.4% | Aug 27, 2025 | A flaw has been found in Campcodes Online Loan Management System 1.0. Affected by this issue is some unknown functionali... |
| CVE-2025-9504 | CRITICAL | 9.8 | 0.4% | Aug 27, 2025 | A vulnerability was detected in Campcodes Online Loan Management System 1.0. Affected by this vulnerability is an unknow... |
| CVE-2025-49040 | MEDIUM | 4.3 | 0.1% | Aug 27, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Backup Bolt Backup Bolt backup-bolt allows Cross Site Request Forgery... |
| CVE-2025-49039 | MEDIUM | 5.9 | 0.2% | Aug 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in mibuthu Link View ... |
| CVE-2025-49035 | MEDIUM | 5.9 | 0.2% | Aug 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in chaimchaikin Admin... |
| CVE-2025-9503 | CRITICAL | 9.8 | 0.4% | Aug 27, 2025 | A security vulnerability has been detected in Campcodes Online Loan Management System 1.0. Affected is an unknown functi... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now