2025 CVE Vulnerabilities

45,255 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-8375CRITICAL9.8A vulnerability was found in code-projects Vehicle Management 1.0. It has been rated as critical. This issue affects som...
CVE-2025-8374CRITICAL9.8A vulnerability was found in code-projects Vehicle Management 1.0. It has been declared as critical. This vulnerability ...
CVE-2025-8192MEDIUM6.9There exists a TOCTOU race condition in TvSettings AppRestrictionsFragment.java that lead to start of attacker supplied ...
CVE-2025-24854MEDIUM6.1A carefully crafted request using the Image plugin could trigger an XSS vulnerability on Apache JSPWiki, which could al...
CVE-2025-24853HIGH7.5A carefully crafted request when creating a header link using the wiki markup syntax, which could allow the attacker to...
CVE-2025-8373CRITICAL9.8A vulnerability was found in code-projects Vehicle Management 1.0. It has been classified as critical. This affects an u...
CVE-2025-8372CRITICAL9.8A vulnerability was found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this issue i...
CVE-2025-7205MEDIUM5.4The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting ...
CVE-2025-54757HIGH8Multiple versions of PowerCMS allow unrestricted upload of dangerous files. If a product administrator accesses a malici...
CVE-2025-54752HIGH8Multiple versions of PowerCMS improperly neutralize formula elements in a CSV file. If a product user creates a malform...
CVE-2025-46359HIGH8.6A path traversal issue exists in backup and restore feature of multiple versions of PowerCMS. A product administrator ma...
CVE-2025-41396MEDIUM6.5A path traversal issue exists in file uploading feature of multiple versions of PowerCMS. Arbitrary files may be overwri...
CVE-2025-41391MEDIUM5.4Stored cross-site scripting vulnerability exists in multiple versions of PowerCMS. If a product user accesses a maliciou...
CVE-2025-36563MEDIUM6.1Reflected cross-site scripting vulnerability exists in multiple versions of PowerCMS. If a product administrator accesse...
CVE-2025-8371CRITICAL9.8A vulnerability has been found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this vu...
CVE-2025-8370MEDIUM6.1A vulnerability, which was classified as problematic, was found in Portabilis i-Educar 2.9. Affected is an unknown funct...
CVE-2025-8369MEDIUM6.1A vulnerability, which was classified as problematic, has been found in Portabilis i-Educar 2.9. This issue affects some...
CVE-2025-8368MEDIUM6.1A vulnerability classified as problematic was found in Portabilis i-Educar 2.9. This vulnerability affects unknown code ...
CVE-2025-53558HIGH8.8ZXHN-F660T and ZXHN-F660A provided by ZTE Japan K.K. use a common credential for all installations. With the knowledge o...
CVE-2025-8367MEDIUM6.1A vulnerability classified as problematic has been found in Portabilis i-Educar 2.9. This affects an unknown part of the...
CVE-2025-8366MEDIUM6.1A vulnerability was found in Portabilis i-Educar 2.9. It has been rated as problematic. Affected by this issue is some u...
CVE-2025-7847HIGH8.8The AI Engine plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the re...
CVE-2025-5720MEDIUM6.4The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘author’ ...
CVE-2025-8365MEDIUM6.1A vulnerability was found in Portabilis i-Educar 2.10. It has been declared as problematic. Affected by this vulnerabili...
CVE-2025-8348HIGH7.5A vulnerability has been found in Kehua Charging Pile Cloud Platform 1.0 and classified as critical. This vulnerability ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now