2025 CVE Vulnerabilities
45,320 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-55652 | MEDIUM | 5.5 | 0.2% | Jun 15, 2026 | A heap buffer overflow in the gf_isom_vp_config_new function (isomedia/avc_ext.c) of GPAC MP4Box v2.4 allows attackers t... |
| CVE-2025-55650 | MEDIUM | 5.5 | 0.2% | Jun 15, 2026 | A heap use-after-free in the gf_node_get_tag function (scenegraph/base_scenegraph.c) of GPAC MP4Box v2.4 allows attacker... |
| CVE-2025-55649 | MEDIUM | 5.5 | 0.2% | Jun 15, 2026 | A NULL pointer dereference in the gf_media_map_esd function (media_tools/isom_tools.c) of GPAC MP4Box v2.4 allows attack... |
| CVE-2025-55648 | MEDIUM | 5.5 | 0.2% | Jun 15, 2026 | A heap buffer overflow in the gf_opus_parse_packet_header function (media_tools/av_parsers.c) of GPAC MP4Box v2.4 allows... |
| CVE-2025-55647 | MEDIUM | 5.5 | 0.2% | Jun 15, 2026 | An Out-of-Memory in the mp4_mux_cenc_insert_pssh function (filters/mux_isom.c) of GPAC MP4Box v2.4 allows attackers to c... |
| CVE-2025-55645 | MEDIUM | 5.5 | 0.2% | Jun 15, 2026 | A heap buffer overflow in the gf_cenc_set_pssh function (isomedia/drm_sample.c) of GPAC MP4Box v2.4 allows attackers to ... |
| CVE-2025-55644 | MEDIUM | 5.5 | 0.2% | Jun 15, 2026 | A heap use-after-free in the gf_node_get_tag function (scenegraph/base_scenegraph.c) of GPAC MP4Box v2.4 allows attacker... |
| CVE-2025-55643 | MEDIUM | 5.5 | 0.2% | Jun 15, 2026 | A NULL pointer dereference in the TrackWriter handling component (filters/mux_isom.c) of GPAC MP4Box v2.4 allows attacke... |
| CVE-2025-55642 | MEDIUM | 6.5 | 0.4% | Jun 15, 2026 | GPAC MP4Box v2.4 was discovered to contain a floating point exception in the avidmx_process function (isomedia/isom_writ... |
| CVE-2025-55641 | MEDIUM | 5.5 | 0.2% | Jun 15, 2026 | A NULL pointer dereference in the gf_isom_copy_sample_info function (isomedia/isom_write.c) of GPAC MP4Box v2.4 allows a... |
| CVE-2025-15659 | MEDIUM | 6.5 | 0.1% | Jun 15, 2026 | Contributor Cross Site Scripting (XSS) in Elizaibots <= 1.0.2 versions. |
| CVE-2025-15658 | MEDIUM | 5.9 | 0.1% | Jun 15, 2026 | Administrator Cross Site Scripting (XSS) in WP Emmet <= 0.3.4 versions. |
| CVE-2025-64215 | MEDIUM | 6.5 | 0.2% | Jun 15, 2026 | Missing Authorization vulnerability in StylemixThemes MasterStudy LMS Pro allows Accessing Functionality Not Properly Co... |
| CVE-2025-15546 | MEDIUM | 5.4 | 0.2% | Jun 14, 2026 | The Iptanus File Upload WordPress plugin before 5.1.7 does not implement proper file handling when the duplicatepolicy s... |
| CVE-2025-7019 | MEDIUM | 5.5 | 0.1% | Jun 12, 2026 | Stack overflow vulnerability in Avast Antivirus when scanning a malformed Office Open XML file may allow Denial-of-Servi... |
| CVE-2025-7018 | MEDIUM | 5.5 | 0.1% | Jun 12, 2026 | Null pointer dereference vulnerability in Avira Antivirus engine when scanning a malformed Windows PE file may allow Den... |
| CVE-2025-7010 | MEDIUM | 5.5 | 0.1% | Jun 12, 2026 | Stack overflow vulnerability due to uncontrolled recursion in Avast Antivirus when scanning a malformed PDF file may all... |
| CVE-2025-7006 | MEDIUM | 5.5 | 0.1% | Jun 12, 2026 | Use of stack memory after free vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Deni... |
| CVE-2025-7005 | MEDIUM | 5.5 | 0.1% | Jun 12, 2026 | Uncontrolled recursion vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Denial-of-Se... |
| CVE-2025-46313 | MEDIUM | 5.5 | 0.1% | Jun 11, 2026 | A logging issue was addressed with improved data redaction. This issue is fixed in macOS Tahoe 26.1. An app may be able ... |
| CVE-2025-46308 | MEDIUM | 5.3 | 0.2% | Jun 11, 2026 | An authorization issue was addressed with improved state management. This issue is fixed in iOS 18.4 and iPadOS 18.4, ma... |
| CVE-2025-46293 | MEDIUM | 5.5 | 0.1% | Jun 11, 2026 | This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.4. An app may be ab... |
| CVE-2025-43339 | MEDIUM | 5.5 | 0.1% | Jun 11, 2026 | An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Tahoe 26.1. A malicious... |
| CVE-2025-43278 | MEDIUM | 5.5 | 0.2% | Jun 11, 2026 | This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.4. An app may be ab... |
| CVE-2025-30459 | MEDIUM | 5.5 | 0.1% | Jun 11, 2026 | A privacy issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.4. An app may be ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now