2025 CVE Vulnerabilities
45,142 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-9459 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted SLDPRT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulner... |
| CVE-2025-9457 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted PRT file, when parsed through certain Autodesk products, can force a Memory corruption vulnerabili... |
| CVE-2025-9456 | HIGH | 7.8 | 0.3% | Dec 16, 2025 | A maliciously crafted SLDPRT file, when parsed through certain Autodesk products, can force a Memory corruption vulnerab... |
| CVE-2025-9455 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted CATPRODUCT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vu... |
| CVE-2025-9454 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted PRT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulnerabi... |
| CVE-2025-9453 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted PRT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulnerabi... |
| CVE-2025-9452 | HIGH | 7.8 | 0.3% | Dec 16, 2025 | A maliciously crafted SLDPRT file, when parsed through certain Autodesk products, can force a Memory corruption vulnerab... |
| CVE-2025-58173 | HIGH | 8.8 | 0.6% | Dec 16, 2025 | FreshRSS is a self-hosted RSS feed aggregator. In versions 1.23.0 through 1.27.0, using a path traversal inside the `lan... |
| CVE-2025-14731 | HIGH | 7.2 | 0.4% | Dec 16, 2025 | A weakness has been identified in CTCMS Content Management System up to 2.1.2. This affects an unknown function in the l... |
| CVE-2025-14593 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted CATPART file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulne... |
| CVE-2025-10900 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulne... |
| CVE-2025-10899 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulne... |
| CVE-2025-10898 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulne... |
| CVE-2025-10889 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted CATPART file, when parsed through certain Autodesk products, can force a Memory corruption vulnera... |
| CVE-2025-10888 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulne... |
| CVE-2025-10887 | HIGH | 7.8 | 0.1% | Dec 16, 2025 | A maliciously crafted MODEL file, when parsed through certain Autodesk products, can force a Memory corruption vulnerabi... |
| CVE-2025-10886 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted MODEL file, when parsed through certain Autodesk products, can force a Memory corruption vulnerabi... |
| CVE-2025-10884 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | AA maliciously crafted CATPART file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vul... |
| CVE-2025-10883 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted CATPRODUCT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read v... |
| CVE-2025-10882 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | AA maliciously crafted X_T file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnera... |
| CVE-2025-10881 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | A maliciously crafted CATPRODUCT file, when parsed through certain Autodesk products, can force a Heap-Based Overflow vu... |
| CVE-2025-9121 | HIGH | 8.8 | 0.4% | Dec 15, 2025 | Pentaho Data Integration and Analytics Community Dashboard Editor plugin versions before 10.2.0.4, including 9.3.0.x and... |
| CVE-2025-14730 | HIGH | 7.2 | 0.4% | Dec 15, 2025 | A security flaw has been discovered in CTCMS Content Management System up to 2.1.2. The impacted element is an unknown f... |
| CVE-2025-14729 | HIGH | 7.2 | 0.4% | Dec 15, 2025 | A vulnerability was identified in CTCMS Content Management System up to 2.1.2. The affected element is the function Save... |
| CVE-2025-14503 | HIGH | 8.6 | 0.4% | Dec 15, 2025 | An overly-permissive IAM trust policy in the Harmonix on AWS framework may allow IAM principals in the same AWS account ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now