2025 CVE Vulnerabilities

45,258 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-7424HIGH7.5A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which ...
CVE-2025-7407HIGH8.8A vulnerability, which was classified as critical, was found in Netgear D6400 1.0.0.114. This affects an unknown part of...
CVE-2025-6211MEDIUM6.5A vulnerability in the DocugamiReader class of the run-llama/llama_index repository, up to version 0.12.28, involves the...
CVE-2025-5040HIGH7.8A maliciously crafted RTE file, when parsed through Autodesk Revit, can force a Heap-Based Overflow vulnerability. A mal...
CVE-2025-5037HIGH7.8A maliciously crafted RFA, RTE, or RVT file, when parsed through Autodesk Revit, can force a Memory Corruption vulnerabi...
CVE-2025-32990HIGH8.2A heap-buffer-overflow (off-by-one) flaw was found in the GnuTLS software in the template parsing logic within the certt...
CVE-2025-6948HIGH8An issue has been discovered in GitLab CE/EE affecting all versions from 17.11 before 17.11.6, 18.0 before 18.0.4, and 1...
CVE-2025-6168LOW2.7An issue has been discovered in GitLab EE affecting all versions from 18.0 before 18.0.4 and 18.1 before 18.1.2 that cou...
CVE-2025-5023HIGH7.1Use of Hard-coded Credentials vulnerability in Mitsubishi Electric Corporation photovoltaic system monitor “EcoGuideTAB”...
CVE-2025-5022MEDIUM6.5Weak Password Requirements vulnerability in Mitsubishi Electric Corporation photovoltaic system monitor “EcoGuideTAB” PV...
CVE-2025-4972LOW2.7An issue has been discovered in GitLab EE affecting all versions from 18.0 before 18.0.4 and 18.1 before 18.1.2 that cou...
CVE-2025-3396MEDIUM4.3An issue has been discovered in GitLab EE affecting all versions from 13.3 before 17.11.6, 18.0 before 18.0.4, and 18.1 ...
CVE-2025-38348HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: p54: prevent buffer-overflow in p54_rx_eeprom...
CVE-2025-38347MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check on ino and xnid syzbo...
CVE-2025-38346HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ftrace: Fix UAF when lookup kallsym after ftrace di...
CVE-2025-38345MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ACPICA: fix acpi operand cache leak in dswstate.c ...
CVE-2025-38344MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ACPICA: fix acpi parse and parseext cache leaks AC...
CVE-2025-38343MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: drop fragments with multicast o...
CVE-2025-38342HIGH7.1In the Linux kernel, the following vulnerability has been resolved: software node: Correct a OOB check in software_node...
CVE-2025-38341HIGH7.8In the Linux kernel, the following vulnerability has been resolved: eth: fbnic: avoid double free when failing to DMA-m...
CVE-2025-38340HIGH7.1In the Linux kernel, the following vulnerability has been resolved: firmware: cs_dsp: Fix OOB memory read access in KUn...
CVE-2025-38339MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: powerpc/bpf: fix JIT code size calculation of bpf t...
CVE-2025-38338HIGH7.8In the Linux kernel, the following vulnerability has been resolved: fs/nfs/read: fix double-unlock bug in nfs_return_em...
CVE-2025-38337MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: jbd2: fix data-race and null-ptr-deref in jbd2_jour...
CVE-2025-38336MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ata: pata_via: Force PIO for ATAPI devices on VT641...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now