2025 CVE Vulnerabilities

45,321 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-34204CRITICAL9.8Vasion Print (formerly PrinterLogic) Virtual Appliance Host and Application (VA and SaaS deployments) contains multiple ...
CVE-2025-34203CRITICAL9.8Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 22.0.1002 and Application versions prior t...
CVE-2025-34198CRITICAL9.8Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 22.0.951 and Application prior to 20.0.236...
CVE-2025-34195CRITICAL9.8Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 1.0.735 and Application prior to 20.0.1330...
CVE-2025-34193CRITICAL9.8Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 25.1.102 and Application versions prior to...
CVE-2025-34192CRITICAL9.8Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 22.0.893 and Application versions prior to...
CVE-2025-48703CRITICAL9CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1205 allows unauthenticated remote code execution via shell...
CVE-2025-57644CRITICAL9.1Accela Automation Platform 22.2.3.0.230103 contains multiple vulnerabilities in the Test Script feature. An authenticate...
CVE-2025-5948CRITICAL9.8The Service Finder Bookings plugin for WordPress is vulnerable to privilege escalation via account takeover in all versi...
CVE-2025-59717CRITICAL9.8In the @digitalocean/do-markdownit package through 1.16.1 (in npm), the callout and fence_environment plugins perform .i...
CVE-2025-10690CRITICAL9.8The Goza - Nonprofit Charity WordPress Theme theme for WordPress is vulnerable to unauthorized arbitrary file uploads du...
CVE-2025-10035CRITICAL9.8A deserialization vulnerability in the License Servlet of Fortra's GoAnywhere MFT allows an actor with a validly forged ...
CVE-2025-54807CRITICAL9.8The secret used for validating authentication tokens is hardcoded in device firmware for affected versions. An attacker...
CVE-2025-30519CRITICAL9.8Dover Fueling Solutions ProGauge MagLink LX4 Devices have default root credentials that cannot be changed through standa...
CVE-2025-10689CRITICAL9.8A vulnerability was identified in D-Link DIR-645 105B01. This issue affects the function soapcgi_main of the file /soap....
CVE-2025-10688CRITICAL9.8A vulnerability was determined in SourceCodester Pet Grooming Management Software 1.0. This vulnerability affects unknow...
CVE-2025-10687CRITICAL9.8A vulnerability was found in SourceCodester Responsive E-Learning System 1.0. This affects an unknown part of the file /...
CVE-2025-10673CRITICAL9.8A vulnerability was determined in itsourcecode Student Information Management System 1.0. The impacted element is an unk...
CVE-2025-10670CRITICAL9.8A flaw has been found in itsourcecode E-Logbook with Health Monitoring System for COVID-19 1.0. This issue affects some ...
CVE-2025-10668CRITICAL9.8A security vulnerability has been detected in itsourcecode Online Discussion Forum 1.0. This affects an unknown part of ...
CVE-2025-10667CRITICAL9.8A weakness has been identified in itsourcecode Online Discussion Forum 1.0. Affected by this issue is some unknown funct...
CVE-2025-10666CRITICAL9.8A security flaw has been discovered in D-Link DIR-825 up to 2.10. Affected by this vulnerability is the function sub_410...
CVE-2025-10665CRITICAL9.8A vulnerability was identified in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464. Affected ...
CVE-2025-10664CRITICAL9.8A vulnerability was determined in PHPGurukul Small CRM 4.0. This impacts an unknown function of the file /create-ticket....
CVE-2025-10663CRITICAL9.8A vulnerability was found in PHPGurukul Online Course Registration 3.1. This affects an unknown function of the file /my...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now