2025 CVE Vulnerabilities

45,255 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-30745MEDIUM6.1Vulnerability in the Oracle MES for Process Manufacturing product of Oracle E-Business Suite (component: Device Integrat...
CVE-2025-30744HIGH8.1Vulnerability in the Oracle Mobile Field Service product of Oracle E-Business Suite (component: Multiplatform Sync Error...
CVE-2025-30743HIGH8.1Vulnerability in the Oracle Lease and Finance Management product of Oracle E-Business Suite (component: Internal Operati...
CVE-2025-30739MEDIUM5.5Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Suppo...
CVE-2025-53903LOW1.3The Scratch Channel is a news website that is under development as of time of this writing. The file `/api/users.js` doe...
CVE-2025-41239HIGH7.1VMware ESXi, Workstation, Fusion, and VMware Tools contains an information disclosure vulnerability due to the usage of ...
CVE-2025-41238CRITICAL9.3VMware ESXi, Workstation, and Fusion contain a heap-overflow vulnerability in the PVSCSI (Paravirtualized SCSI) controll...
CVE-2025-41237CRITICAL9.3VMware ESXi, Workstation, and Fusion contain an integer-underflow in VMCI (Virtual Machine Communication Interface) that...
CVE-2025-41236CRITICAL9.3VMware ESXi, Workstation, and Fusion contain an integer-overflow vulnerability in the VMXNET3 virtual network adapter. A...
CVE-2025-7657HIGH8.8Use after free in WebRTC in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially exploit heap ...
CVE-2025-7656HIGH8.8Integer overflow in V8 in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially exploit heap co...
CVE-2025-6558HIGH8.8Insufficient validation of untrusted input in ANGLE and GPU in Google Chrome prior to 138.0.7204.157 allowed a remote at...
CVE-2025-53893MEDIUM6.5File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, previ...
CVE-2025-53826CRITICAL9.8File Browser provides a file managing interface within a specified directory and it can be used to upload, delete, previ...
CVE-2025-53959HIGH7.6In JetBrains YouTrack before 2025.2.86069, 2024.3.85077, 2025.1.86199 email spoofing via an administrative API was pos...
CVE-2025-53895HIGH8.8ZITADEL is an open source identity management system. Starting in version 2.53.0 and prior to versions 4.0.0-rc.2, 3.3.2...
CVE-2025-26186HIGH8.1SQL Injection vulnerability in openSIS v.9.1 allows a remote attacker to execute arbitrary code via the id parameter in ...
CVE-2025-52082MEDIUM6.5In Netgear XR300 V1.0.3.38_10.3.30, a stack-based buffer overflow exists in the HTTPD service through the usb_device.cgi...
CVE-2025-52081MEDIUM6.5In Netgear XR300 V1.0.3.38_10.3.30, a stack-based buffer overflow vulnerability exists in the HTTPD service through the ...
CVE-2025-52080MEDIUM6.5In Netgear XR300 V1.0.3.38_10.3.30, a stack-based buffer overflow vulnerability exists in the HTTPD service through the ...
CVE-2025-50819HIGH7.1Directory traversal vulnerability in beiyuouo arxiv-daily thru 2025-05-06 (commit fad168770b0e68aef3e5acfa16bb2e7a7765d6...
CVE-2025-7042HIGH7.8Use After Free vulnerability exists in the IPT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desk...
CVE-2025-6974HIGH7.8Use of Uninitialized Variable vulnerability exists in the JT file reading procedure in SOLIDWORKS eDrawings on Release S...
CVE-2025-6973HIGH7.8Use After Free vulnerability exists in the JT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Deskt...
CVE-2025-6972HIGH7.8Use After Free vulnerability exists in the CATPRODUCT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWOR...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now