2025 CVE Vulnerabilities

45,255 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-41375CRITICAL9.8SQL Injection vulnerability in Limesurvey v2.65.1+170522. This vulnerability allows an attacker to retrieve, create, upd...
CVE-2025-41374HIGH8.8A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The...
CVE-2025-41373HIGH8.8A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The...
CVE-2025-41372HIGH8.8A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The...
CVE-2025-41371HIGH8.8A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The...
CVE-2025-41370HIGH8.8A SQL injection vulnerability has been found in Gandia Integra Total of TESI from version 2.1.2217.3 to v4.4.2236.1. The...
CVE-2025-6228MEDIUM6.4The Sina Extension for Elementor (Header Builder, Footer Builter, Theme Builder, Slider, Gallery, Form, Modal, Data Tabl...
CVE-2025-4684MEDIUM6.4The BlockSpare: Gutenberg Blocks & Patterns for Blogs, Magazines, Business Sites – Post Grids, Sliders, Carousels, Count...
CVE-2025-8443CRITICAL9.8A vulnerability was found in code-projects Online Medicine Guide 1.0 and classified as critical. Affected by this issue ...
CVE-2025-6398MEDIUM6.7A null pointer dereference vulnerability exists in the IOMap64.sys driver of ASUS AI Suite 3. The vulnerability can be t...
CVE-2025-8442CRITICAL9.8A vulnerability has been found in code-projects Online Medicine Guide 1.0 and classified as critical. Affected by this v...
CVE-2025-8441CRITICAL9.8A vulnerability, which was classified as critical, was found in code-projects Online Medicine Guide 1.0. Affected is an ...
CVE-2025-8439CRITICAL9.8A vulnerability, which was classified as critical, has been found in code-projects Wazifa System 1.0. This issue affects...
CVE-2025-8438CRITICAL9.8A vulnerability classified as critical was found in code-projects Wazifa System 1.0. This vulnerability affects unknown ...
CVE-2025-8437CRITICAL9.8A vulnerability classified as critical has been found in code-projects Kitchen Treasure 1.0. This affects an unknown par...
CVE-2025-7646MEDIUM6.4The The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce plugin for WordPre...
CVE-2025-8454CRITICAL9.8It was discovered that uscan, a tool to scan/watch upstream sources for new releases of software, included in devscripts...
CVE-2025-8436CRITICAL9.8A vulnerability was found in projectworlds Online Admission System 1.0. It has been rated as critical. Affected by this ...
CVE-2025-5921MEDIUM5.8The SureForms WordPress plugin before 1.7.2 does not sanitise and escape a parameter before outputting it back in the p...
CVE-2025-54939HIGH7.5LiteSpeed QUIC (LSQUIC) Library before 4.3.1 has an lsquic_engine_packet_in memory leak.
CVE-2025-31716MEDIUM5.1In bootloader, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of...
CVE-2025-8435HIGH7.3A vulnerability was found in code-projects Online Movie Streaming 1.0. It has been declared as critical. Affected by thi...
CVE-2025-7845MEDIUM6.4The Stratum – Elementor Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Advan...
CVE-2025-7725HIGH7.2The Photos, Files, YouTube, Twitter, Instagram, TikTok, Ecommerce Contest Gallery – Upload, Vote, Sell via PayPal or Str...
CVE-2025-7443HIGH8.1The BerqWP – Automated All-In-One Page Speed Optimization for Core Web Vitals, Cache, CDN, Images, CSS, and JavaScript p...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now