2025 CVE Vulnerabilities

45,260 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-40735HIGH8.8A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected devices are vulnerable to SQL injec...
CVE-2025-40593HIGH7.1A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0). The affected application allows to control...
CVE-2025-27127MEDIUM5.3A vulnerability has been identified in TIA Project-Server (All versions < V2.1.1), TIA Project-Server V17 (All versions)...
CVE-2025-23365HIGH8.5A vulnerability has been identified in TIA Administrator (All versions < V3.0.6). The affected application allows low-pr...
CVE-2025-23364HIGH8.4A vulnerability has been identified in TIA Administrator (All versions < V3.0.6). The affected application improperly va...
CVE-2025-21009MEDIUM5.5Out-of-bounds read in decoding malformed frame header in libsavsvc.so prior to Android 15 allows local attackers to caus...
CVE-2025-21008MEDIUM5.5Out-of-bounds read in decoding frame header in libsavsvc.so prior to Android 15 allows local attackers to cause memory c...
CVE-2025-21007MEDIUM5.5Out-of-bounds write in accessing uninitialized memory in libsavsvc.so prior to Android 15 allows local attackers to caus...
CVE-2025-21006HIGH7.8Out-of-bounds write in handling of macro blocks for MPEG4 codec in libsavsvc.so prior to Android 15 allows local attacke...
CVE-2025-21005MEDIUM5.5Improper access control in isemtelephony prior to Android 15 allows local attackers to access sensitive information.
CVE-2025-21004MEDIUM5.5Improper verification of intent by broadcast receiver in System UI for Galaxy Watch prior to SMR Jul-2025 Release 1 allo...
CVE-2025-21003MEDIUM5.5Insecure storage of sensitive information in Emergency SOS prior to SMR Jul-2025 Release 1 allows local attackers to acc...
CVE-2025-21002MEDIUM5.5Improper access control in LeAudioService prior to SMR Jul-2025 Release 1 allows local attackers to manipulate broadcast...
CVE-2025-21001MEDIUM5.5Improper access control in LeAudioService prior to SMR Jul-2025 Release 1 allows local attackers to stop broadcasting Au...
CVE-2025-21000LOW3.3Improper privilege management in Bluetooth prior to SMR Jul-2025 Release 1 allows local attackers to enable Bluetooth.
CVE-2025-20999LOW2.1Improper authorization in accessing saved Wi-Fi password for Galaxy Tablet prior to SMR Jul-2025 Release 1 allows second...
CVE-2025-20998LOW3.3Improper access control in SamsungAccount for Galaxy Watch prior to SMR Jul-2025 Release 1 allows local attackers to acc...
CVE-2025-20997MEDIUM5.5Incorrect default permission in Framework for Galaxy Watch prior to SMR Jul-2025 Release 1 allows local attackers to res...
CVE-2025-20983MEDIUM6.7Out-of-bounds write in checking auth secret in KnoxVault trustlet prior to SMR Jul-2025 Release 1 allows local privilege...
CVE-2025-20982MEDIUM6.7Out-of-bounds write in setting auth secret in KnoxVault trustlet prior to SMR Jul-2025 Release 1 allows local privileged...
CVE-2025-7173CRITICAL9.8A vulnerability has been found in code-projects Library System 1.0 and classified as critical. This vulnerability affect...
CVE-2025-7172CRITICAL9.8A vulnerability, which was classified as critical, was found in code-projects Crime Reporting System 1.0. This affects a...
CVE-2025-6744HIGH7.3The The Woodmart theme for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including...
CVE-2025-7171CRITICAL9.8A vulnerability, which was classified as critical, has been found in code-projects Crime Reporting System 1.0. Affected ...
CVE-2025-7170CRITICAL9.8A vulnerability classified as critical was found in code-projects Crime Reporting System 1.0. Affected by this vulnerabi...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now