2025 CVE Vulnerabilities

45,267 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-49015MEDIUM4.9The Couchbase .NET SDK (client library) before 3.7.1 does not properly enable hostname verification for TLS certificates...
CVE-2025-46157CRITICAL9.9An issue in EfroTech Time Trax v.1.0 allows a remote attacker to execute arbitrary code via the file attachment function...
CVE-2025-45784CRITICAL9.8D-Link DPH-400S/SE VoIP Phone v1.01 contains hardcoded provisioning variables, including PROVIS_USER_PASSWORD, which may...
CVE-2025-45661MEDIUM5.9A cross-site scripting (XSS) vulnerability in miniTCG v1.3.1 beta allows attackers to execute abritrary web scripts or H...
CVE-2025-6220HIGH7.2The Ultra Addons for Contact Form 7 plugin for WordPress is vulnerable to arbitrary file uploads due to missing file typ...
CVE-2025-6086HIGH7.2The CSV Me plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the ...
CVE-2025-5237MEDIUM6.4The Target Video Easy Publish plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘width’ paramete...
CVE-2025-38082HIGH7.8In the Linux kernel, the following vulnerability has been resolved: gpio: virtuser: fix potential out-of-bound write I...
CVE-2025-38081HIGH7.1In the Linux kernel, the following vulnerability has been resolved: spi-rockchip: Fix register out of bounds access Do...
CVE-2025-38080MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Increase block_sequence array size...
CVE-2025-38079HIGH7.8In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - fix double free in hash_accept...
CVE-2025-38078MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: Fix race of buffer access at PCM OSS lay...
CVE-2025-38077HIGH7.8In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-wmi-sysman: Avoid buffer overflo...
CVE-2025-38076HIGH7.8In the Linux kernel, the following vulnerability has been resolved: alloc_tag: allocate percpu counters for module tags...
CVE-2025-38075MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix timeout on deleted connect...
CVE-2025-38074MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: vhost-scsi: protect vq->log_used with vq->mutex Th...
CVE-2025-38073Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2025-38072MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: libnvdimm/labels: Fix divide error in nd_label_data...
CVE-2025-38071MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: x86/mm: Check return value from memblock_phys_alloc...
CVE-2025-38070MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ASoC: sma1307: Add NULL check in sma1307_setting_lo...
CVE-2025-38069HIGH7.8In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: pci-epf-test: Fix double free that c...
CVE-2025-38068HIGH7.8In the Linux kernel, the following vulnerability has been resolved: crypto: lzo - Fix compression buffer overrun Unlik...
CVE-2025-38067MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: rseq: Fix segfault on registration when rseq_cs is ...
CVE-2025-38066MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dm cache: prevent BUG_ON by blocking retries on fai...
CVE-2025-38065MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: orangefs: Do not truncate file size 'len' is used ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now