2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-30745 | MEDIUM | 6.1 | 0.2% | Jul 15, 2025 | Vulnerability in the Oracle MES for Process Manufacturing product of Oracle E-Business Suite (component: Device Integrat... |
| CVE-2025-30744 | HIGH | 8.1 | 0.3% | Jul 15, 2025 | Vulnerability in the Oracle Mobile Field Service product of Oracle E-Business Suite (component: Multiplatform Sync Error... |
| CVE-2025-30743 | HIGH | 8.1 | 0.3% | Jul 15, 2025 | Vulnerability in the Oracle Lease and Finance Management product of Oracle E-Business Suite (component: Internal Operati... |
| CVE-2025-30739 | MEDIUM | 5.5 | 0.3% | Jul 15, 2025 | Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Suppo... |
| CVE-2025-53903 | LOW | 1.3 | 0.3% | Jul 15, 2025 | The Scratch Channel is a news website that is under development as of time of this writing. The file `/api/users.js` doe... |
| CVE-2025-41239 | HIGH | 7.1 | 2.2% | Jul 15, 2025 | VMware ESXi, Workstation, Fusion, and VMware Tools contains an information disclosure vulnerability due to the usage of ... |
| CVE-2025-41238 | CRITICAL | 9.3 | 0.4% | Jul 15, 2025 | VMware ESXi, Workstation, and Fusion contain a heap-overflow vulnerability in the PVSCSI (Paravirtualized SCSI) controll... |
| CVE-2025-41237 | CRITICAL | 9.3 | 0.4% | Jul 15, 2025 | VMware ESXi, Workstation, and Fusion contain an integer-underflow in VMCI (Virtual Machine Communication Interface) that... |
| CVE-2025-41236 | CRITICAL | 9.3 | 2.2% | Jul 15, 2025 | VMware ESXi, Workstation, and Fusion contain an integer-overflow vulnerability in the VMXNET3 virtual network adapter. A... |
| CVE-2025-7657 | HIGH | 8.8 | 0.5% | Jul 15, 2025 | Use after free in WebRTC in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially exploit heap ... |
| CVE-2025-7656 | HIGH | 8.8 | 8.6% | Jul 15, 2025 | Integer overflow in V8 in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially exploit heap co... |
| CVE-2025-6558 | HIGH | 8.8 | 9.2% | Jul 15, 2025 | Insufficient validation of untrusted input in ANGLE and GPU in Google Chrome prior to 138.0.7204.157 allowed a remote at... |
| CVE-2025-53893 | MEDIUM | 6.5 | 0.3% | Jul 15, 2025 | File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, previ... |
| CVE-2025-53826 | CRITICAL | 9.8 | 0.5% | Jul 15, 2025 | File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, previ... |
| CVE-2025-53959 | HIGH | 7.6 | 0.3% | Jul 15, 2025 | In JetBrains YouTrack before 2025.2.86069, 2024.3.85077, 2025.1.86199 email spoofing via an administrative API was pos... |
| CVE-2025-53895 | HIGH | 8.8 | 0.3% | Jul 15, 2025 | ZITADEL is an open source identity management system. Starting in version 2.53.0 and prior to versions 4.0.0-rc.2, 3.3.2... |
| CVE-2025-26186 | HIGH | 8.1 | 0.5% | Jul 15, 2025 | SQL Injection vulnerability in openSIS v.9.1 allows a remote attacker to execute arbitrary code via the id parameter in ... |
| CVE-2025-52082 | MEDIUM | 6.5 | 0.3% | Jul 15, 2025 | In Netgear XR300 V1.0.3.38_10.3.30, a stack-based buffer overflow exists in the HTTPD service through the usb_device.cgi... |
| CVE-2025-52081 | MEDIUM | 6.5 | 0.3% | Jul 15, 2025 | In Netgear XR300 V1.0.3.38_10.3.30, a stack-based buffer overflow vulnerability exists in the HTTPD service through the ... |
| CVE-2025-52080 | MEDIUM | 6.5 | 0.3% | Jul 15, 2025 | In Netgear XR300 V1.0.3.38_10.3.30, a stack-based buffer overflow vulnerability exists in the HTTPD service through the ... |
| CVE-2025-50819 | HIGH | 7.1 | 0.3% | Jul 15, 2025 | Directory traversal vulnerability in beiyuouo arxiv-daily thru 2025-05-06 (commit fad168770b0e68aef3e5acfa16bb2e7a7765d6... |
| CVE-2025-7042 | HIGH | 7.8 | 0.2% | Jul 15, 2025 | Use After Free vulnerability exists in the IPT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desk... |
| CVE-2025-6974 | HIGH | 7.8 | 0.2% | Jul 15, 2025 | Use of Uninitialized Variable vulnerability exists in the JT file reading procedure in SOLIDWORKS eDrawings on Release S... |
| CVE-2025-6973 | HIGH | 7.8 | 0.2% | Jul 15, 2025 | Use After Free vulnerability exists in the JT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Deskt... |
| CVE-2025-6972 | HIGH | 7.8 | 0.2% | Jul 15, 2025 | Use After Free vulnerability exists in the CATPRODUCT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWOR... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now