2025 CVE Vulnerabilities

45,254 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-9422MEDIUM5.4A vulnerability was found in oitcode samarium up to 0.9.6. This impacts an unknown function of the file /dashboard/team ...
CVE-2025-9421CRITICAL9.8A vulnerability has been found in itsourcecode Apartment Management System 1.0. This affects an unknown function of the ...
CVE-2025-9420CRITICAL9.8A flaw has been found in itsourcecode Apartment Management System 1.0. The impacted element is an unknown function of th...
CVE-2025-8627HIGH8.8The TP-Link KP303 Smartplug can be issued unauthenticated protocol commands that may cause unintended power-off conditio...
CVE-2025-57814MEDIUM5.5request-filtering-agent is an http(s).Agent implementation that blocks requests to Private/Reserved IP addresses. Versio...
CVE-2025-57809HIGH7.5XGrammar is an open-source library for efficient, flexible, and portable structured generation. Prior to version 0.1.21,...
CVE-2025-57805HIGH8.7The Scratch Channel is a news website. In versions 1 and 1.1, a POST request to the endpoint used to publish articles, c...
CVE-2025-9419CRITICAL9.8A vulnerability was detected in itsourcecode Apartment Management System 1.0. The affected element is an unknown functio...
CVE-2025-9418CRITICAL9.8A security vulnerability has been detected in itsourcecode Apartment Management System 1.0. Impacted is an unknown funct...
CVE-2025-6188HIGH7.5On affected platforms running Arista EOS, maliciously formed UDP packets with source port 3503 may be accepted by EOS. U...
CVE-2025-57804MEDIUM6.9h2 is a pure-Python implementation of a HTTP/2 protocol stack. Prior to version 4.3.0, an HTTP/2 request splitting vulne...
CVE-2025-9417HIGH8.8A weakness has been identified in itsourcecode Apartment Management System 1.0. This issue affects some unknown processi...
CVE-2025-9416LOW2.4A security flaw has been discovered in oitcode samarium up to 0.9.6. This vulnerability affects unknown code of the file...
CVE-2025-52130MEDIUM5.4File upload vulnerability in WebErpMesv2 1.17 in the app/Http/Controllers/FactoryController.php controller. This flaw al...
CVE-2025-3456LOW3.8On affected platforms running Arista EOS, the global common encryption key configuration may be logged in clear text, in...
CVE-2025-9415CRITICAL9.8A vulnerability was identified in GreenCMS up to 2.3.0603. This affects an unknown part of the file /index.php?m=admin&c...
CVE-2025-9414MEDIUM4.9A vulnerability was found in kalcaddle kodbox 1.61. Affected by this vulnerability is an unknown functionality of the fi...
CVE-2025-9413CRITICAL9.8A flaw has been found in lostvip-com ruoyi-go up to 2.1. This impacts the function SelectListByPage of the file modules/...
CVE-2025-9412CRITICAL9.8A vulnerability was detected in lostvip-com ruoyi-go up to 2.1. This affects the function SelectListByPage of the file m...
CVE-2025-57811HIGH7.2Craft is a platform for creating digital experiences. From versions 4.0.0-RC1 to 4.16.5 and 5.0.0-RC1 to 5.8.6, there is...
CVE-2025-57802HIGH8.7Airlink's Daemon interfaces with Docker and the Panel to provide secure access for controlling instances via the Panel. ...
CVE-2025-50383HIGH8.1alextselegidis Easy!Appointments v1.5.1 was discovered to contain a SQL injection vulnerability via the order_by paramet...
CVE-2025-9411CRITICAL9.8A security vulnerability has been detected in lostvip-com ruoyi-go up to 2.1. The impacted element is the function Selec...
CVE-2025-9410CRITICAL9.8A weakness has been identified in lostvip-com ruoyi-go up to 2.1. The affected element is the function SelectListByPage ...
CVE-2025-6737HIGH7.2Securden’s Unified PAM Remote Vendor Gateway access portal shares infrastructure and access tokens across multiple tenan...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now