2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-10673 | CRITICAL | 9.8 | 0.5% | Sep 18, 2025 | A vulnerability was determined in itsourcecode Student Information Management System 1.0. The impacted element is an unk... |
| CVE-2025-10670 | CRITICAL | 9.8 | 0.4% | Sep 18, 2025 | A flaw has been found in itsourcecode E-Logbook with Health Monitoring System for COVID-19 1.0. This issue affects some ... |
| CVE-2025-10668 | CRITICAL | 9.8 | 0.4% | Sep 18, 2025 | A security vulnerability has been detected in itsourcecode Online Discussion Forum 1.0. This affects an unknown part of ... |
| CVE-2025-10667 | CRITICAL | 9.8 | 0.5% | Sep 18, 2025 | A weakness has been identified in itsourcecode Online Discussion Forum 1.0. Affected by this issue is some unknown funct... |
| CVE-2025-10666 | CRITICAL | 9.8 | 3.0% | Sep 18, 2025 | A security flaw has been discovered in D-Link DIR-825 up to 2.10. Affected by this vulnerability is the function sub_410... |
| CVE-2025-10665 | CRITICAL | 9.8 | 0.3% | Sep 18, 2025 | A vulnerability was identified in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464. Affected ... |
| CVE-2025-10664 | CRITICAL | 9.8 | 0.4% | Sep 18, 2025 | A vulnerability was determined in PHPGurukul Small CRM 4.0. This impacts an unknown function of the file /create-ticket.... |
| CVE-2025-10663 | CRITICAL | 9.8 | 0.4% | Sep 18, 2025 | A vulnerability was found in PHPGurukul Online Course Registration 3.1. This affects an unknown function of the file /my... |
| CVE-2025-10662 | CRITICAL | 9.8 | 0.4% | Sep 18, 2025 | A vulnerability has been found in SeaCMS up to 13.3. The impacted element is an unknown function of the file /admin_memb... |
| CVE-2025-6237 | CRITICAL | 9.8 | 0.4% | Sep 18, 2025 | A vulnerability in invokeai version v6.0.0a1 and below allows attackers to perform path traversal and arbitrary file del... |
| CVE-2025-9083 | CRITICAL | 9.8 | 0.5% | Sep 18, 2025 | The Ninja Forms WordPress plugin before 3.11.1 unserializes user input via form field, which could allow Unauthenticate... |
| CVE-2025-8942 | CRITICAL | 9.1 | 0.3% | Sep 18, 2025 | The WP Hotel Booking WordPress plugin before 2.2.3 lacks proper server-side validation for review ratings, allowing an a... |
| CVE-2025-5305 | CRITICAL | 9.8 | 0.2% | Sep 18, 2025 | The Password Reset with Code for WordPress REST API WordPress plugin before 0.0.17 does not use cryptographically sound ... |
| CVE-2025-10624 | CRITICAL | 9.8 | 0.4% | Sep 17, 2025 | A security flaw has been discovered in PHPGurukul User Management System 1.0. This affects an unknown function of the fi... |
| CVE-2025-10623 | CRITICAL | 9.8 | 0.4% | Sep 17, 2025 | A vulnerability was identified in SourceCodester Hotel Reservation System 1.0. The impacted element is an unknown functi... |
| CVE-2025-23316 | CRITICAL | 9.8 | 0.7% | Sep 17, 2025 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker c... |
| CVE-2025-23268 | CRITICAL | 9.8 | 0.4% | Sep 17, 2025 | NVIDIA Triton Inference Server contains a vulnerability in the DALI backend where an attacker may cause an improper inpu... |
| CVE-2025-10621 | CRITICAL | 9.8 | 0.4% | Sep 17, 2025 | A vulnerability was determined in SourceCodester Hotel Reservation System 1.0. The affected element is an unknown functi... |
| CVE-2025-10644 | CRITICAL | 9.4 | 3.7% | Sep 17, 2025 | Wondershare Repairit SAS Token Incorrect Permission Assignment Authentication Bypass Vulnerability. This vulnerability a... |
| CVE-2025-10643 | CRITICAL | 9.1 | 2.8% | Sep 17, 2025 | Wondershare Repairit Incorrect Permission Assignment Authentication Bypass Vulnerability. This vulnerability allows remo... |
| CVE-2025-59352 | CRITICAL | 9.8 | 0.7% | Sep 17, 2025 | Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, the gRPC API and ... |
| CVE-2025-59340 | CRITICAL | 10 | 2.3% | Sep 17, 2025 | jinjava is a Java-based template engine based on django template syntax, adapted to render jinja templates. Priori to 2.... |
| CVE-2025-59345 | CRITICAL | 9.1 | 0.4% | Sep 17, 2025 | Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, The /api/v1/jobs ... |
| CVE-2025-58766 | CRITICAL | 9 | 0.4% | Sep 17, 2025 | Dyad is a local AI app builder. A critical security vulnerability has been discovered that affected Dyad v0.19.0 and ear... |
| CVE-2025-10604 | CRITICAL | 9.8 | 0.4% | Sep 17, 2025 | A vulnerability was identified in PHPGurukul Online Discussion Forum 1.0. This affects an unknown part of the file /admi... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now