2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-10492CRITICAL9.8A Java deserialisation vulnerability has been discovered in Jaspersoft Library. Improper handling of externally supplied...
CVE-2025-41243CRITICAL10Spring Cloud Gateway Server Webflux may be vulnerable to Spring Environment property modification. An application shoul...
CVE-2025-57119CRITICAL9.8An issue in Online Library Management System v.3.0 allows an attacker to escalate privileges via the adminlogin.php comp...
CVE-2025-55116CRITICAL9.3A buffer overflow in the Control-M/Agent can lead to a local privilege escalation when an attacker has access to the sys...
CVE-2025-55115CRITICAL9.3A path traversal in the Control-M/Agent can lead to a local privilege escalation when an attacker has access to the syst...
CVE-2025-55113CRITICAL10If the Access Control List is enforced by the Control-M/Agent and the C router is in use (default in Out-of-support Cont...
CVE-2025-55109CRITICAL9.5An authentication bypass vulnerability exists in the out-of-support Control-M/Agent versions 9.0.18 to 9.0.20 and potent...
CVE-2025-7744CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Dolusoft Omaspot a...
CVE-2025-7743CRITICAL9.6Cleartext Transmission of Sensitive Information vulnerability in Dolusoft Omaspot allows Interception, Privilege Escalat...
CVE-2025-4688CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in BGS Interactive SI...
CVE-2025-43362CRITICAL9.8The issue was addressed with improved checks. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26. An ...
CVE-2025-43359CRITICAL9.8A logic issue was addressed with improved state management. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS 26 and ...
CVE-2025-43347CRITICAL9.8This issue was addressed by removing the vulnerable code. This issue is fixed in iOS 26 and iPadOS 26, macOS Tahoe 26, t...
CVE-2025-43343CRITICAL9.8The issue was addressed with improved memory handling. This issue is fixed in Safari 26, iOS 26 and iPadOS 26, macOS Tah...
CVE-2025-43342CRITICAL9.8A correctness issue was addressed with improved checks. This issue is fixed in Safari 26, iOS 18.7 and iPadOS 18.7, iOS ...
CVE-2025-31255CRITICAL9.8An authorization issue was addressed with improved state management. This issue is fixed in iOS 26 and iPadOS 26, macOS ...
CVE-2025-57118CRITICAL9.8An issue in PHPGurukul Online-Library-Management-System v3.0 allows an attacker to escalate privileges via the index.php
CVE-2025-10482CRITICAL9.8A vulnerability was detected in SourceCodester Online Student File Management System 1.0. Affected is an unknown functio...
CVE-2025-10480CRITICAL9.8A weakness has been identified in SourceCodester Online Student File Management System 1.0. This affects an unknown func...
CVE-2025-10479CRITICAL9.8A security flaw has been discovered in SourceCodester Online Student File Management System 1.0. The impacted element is...
CVE-2025-10477CRITICAL9.8A vulnerability was identified in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464. The affec...
CVE-2025-10473CRITICAL9.8A security flaw has been discovered in yangzongzhuan RuoYi up to 4.8.1. This impacts the function filterKeyword of the f...
CVE-2025-58748CRITICAL9.8Dataease is an open source data analytics and visualization platform. In Dataease versions up to 2.10.12 the H2 data sou...
CVE-2025-57174CRITICAL9.8An issue was discovered in Siklu Communications Etherhaul 8010TX and 1200FX devices, Firmware 7.4.0 through 10.7.3 and p...
CVE-2025-58046CRITICAL9.8Dataease is an open-source data visualization and analysis platform. In versions up to and including 2.10.12, the Impala...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now