2025 CVE Vulnerabilities

45,259 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-47136HIGH7.8InDesign Desktop versions 19.5.3 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability tha...
CVE-2025-47134HIGH7.8InDesign Desktop versions 19.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could resul...
CVE-2025-47103HIGH7.8InDesign Desktop versions 19.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could resul...
CVE-2025-43594HIGH7.8InDesign Desktop versions 19.5.3 and earlier are affected by an out-of-bounds write vulnerability that could result in a...
CVE-2025-43592HIGH7.8InDesign Desktop versions 19.5.3 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could...
CVE-2025-43591HIGH7.8InDesign Desktop versions 19.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could resul...
CVE-2025-30313MEDIUM5.5Illustrator versions 28.7.6, 29.5.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to d...
CVE-2025-27203CRITICAL9.6Adobe Connect versions 24.0 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could lea...
CVE-2025-27165MEDIUM5.5Substance3D - Stager versions 3.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to d...
CVE-2025-7196CRITICAL9.8A vulnerability was found in code-projects Jonnys Liquor 1.0. It has been rated as critical. Affected by this issue is s...
CVE-2025-7194HIGH8.8A vulnerability was found in D-Link DI-500WF 17.04.10A1T. It has been declared as critical. Affected by this vulnerabili...
CVE-2025-7031MEDIUM5.3Missing Authentication for Critical Function vulnerability in Drupal Config Pages Viewer allows Exploiting Incorrectly C...
CVE-2025-7030MEDIUM6.5Privilege Defined With Unsafe Actions vulnerability in Drupal Two-factor Authentication (TFA) allows Exploiting Incorrec...
CVE-2025-49551HIGH8.8ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by a Use of Hard-coded Credentials vulnerability t...
CVE-2025-49546LOW2.4ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by an Improper Access Control vulnerability that c...
CVE-2025-49545MEDIUM6.2ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerabil...
CVE-2025-49544MEDIUM6.8ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by an Improper Restriction of XML External Entity ...
CVE-2025-49543MEDIUM4.3ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerabili...
CVE-2025-49542MEDIUM5.2ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerab...
CVE-2025-49541MEDIUM4.3ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerabili...
CVE-2025-49540MEDIUM4.3ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerabili...
CVE-2025-49539MEDIUM4.5ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by an Improper Restriction of XML External Entity ...
CVE-2025-49538HIGH7.4ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by an XML Injection vulnerability that could lead ...
CVE-2025-49537HIGH7.9ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by an Improper Neutralization of Special Elements ...
CVE-2025-49536HIGH7.3ColdFusion versions 2025.2, 2023.14, 2021.20 and earlier are affected by an Incorrect Authorization vulnerability that c...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now