2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-10673CRITICAL9.8A vulnerability was determined in itsourcecode Student Information Management System 1.0. The impacted element is an unk...
CVE-2025-10670CRITICAL9.8A flaw has been found in itsourcecode E-Logbook with Health Monitoring System for COVID-19 1.0. This issue affects some ...
CVE-2025-10668CRITICAL9.8A security vulnerability has been detected in itsourcecode Online Discussion Forum 1.0. This affects an unknown part of ...
CVE-2025-10667CRITICAL9.8A weakness has been identified in itsourcecode Online Discussion Forum 1.0. Affected by this issue is some unknown funct...
CVE-2025-10666CRITICAL9.8A security flaw has been discovered in D-Link DIR-825 up to 2.10. Affected by this vulnerability is the function sub_410...
CVE-2025-10665CRITICAL9.8A vulnerability was identified in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464. Affected ...
CVE-2025-10664CRITICAL9.8A vulnerability was determined in PHPGurukul Small CRM 4.0. This impacts an unknown function of the file /create-ticket....
CVE-2025-10663CRITICAL9.8A vulnerability was found in PHPGurukul Online Course Registration 3.1. This affects an unknown function of the file /my...
CVE-2025-10662CRITICAL9.8A vulnerability has been found in SeaCMS up to 13.3. The impacted element is an unknown function of the file /admin_memb...
CVE-2025-6237CRITICAL9.8A vulnerability in invokeai version v6.0.0a1 and below allows attackers to perform path traversal and arbitrary file del...
CVE-2025-9083CRITICAL9.8The Ninja Forms WordPress plugin before 3.11.1 unserializes user input via form field, which could allow Unauthenticate...
CVE-2025-8942CRITICAL9.1The WP Hotel Booking WordPress plugin before 2.2.3 lacks proper server-side validation for review ratings, allowing an a...
CVE-2025-5305CRITICAL9.8The Password Reset with Code for WordPress REST API WordPress plugin before 0.0.17 does not use cryptographically sound ...
CVE-2025-10624CRITICAL9.8A security flaw has been discovered in PHPGurukul User Management System 1.0. This affects an unknown function of the fi...
CVE-2025-10623CRITICAL9.8A vulnerability was identified in SourceCodester Hotel Reservation System 1.0. The impacted element is an unknown functi...
CVE-2025-23316CRITICAL9.8NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker c...
CVE-2025-23268CRITICAL9.8NVIDIA Triton Inference Server contains a vulnerability in the DALI backend where an attacker may cause an improper inpu...
CVE-2025-10621CRITICAL9.8A vulnerability was determined in SourceCodester Hotel Reservation System 1.0. The affected element is an unknown functi...
CVE-2025-10644CRITICAL9.4Wondershare Repairit SAS Token Incorrect Permission Assignment Authentication Bypass Vulnerability. This vulnerability a...
CVE-2025-10643CRITICAL9.1Wondershare Repairit Incorrect Permission Assignment Authentication Bypass Vulnerability. This vulnerability allows remo...
CVE-2025-59352CRITICAL9.8Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, the gRPC API and ...
CVE-2025-59340CRITICAL10jinjava is a Java-based template engine based on django template syntax, adapted to render jinja templates. Priori to 2....
CVE-2025-59345CRITICAL9.1Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, The /api/v1/jobs ...
CVE-2025-58766CRITICAL9Dyad is a local AI app builder. A critical security vulnerability has been discovered that affected Dyad v0.19.0 and ear...
CVE-2025-10604CRITICAL9.8A vulnerability was identified in PHPGurukul Online Discussion Forum 1.0. This affects an unknown part of the file /admi...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now