2025 CVE Vulnerabilities

45,142 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-50165CRITICAL9.8Untrusted pointer dereference in Microsoft Graphics Component allows an unauthorized attacker to execute code over a net...
CVE-2025-55167CRITICAL9.8WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. Prior to versio...
CVE-2025-24325CRITICAL9.3Improper input validation in the Linux kernel-mode driver for some Intel(R) 800 Series Ethernet before version 1.17.2 ma...
CVE-2025-3831CRITICAL9.8Log files uploaded during troubleshooting by the Harmony SASE agent may have been accessible to unauthorized parties.
CVE-2025-8059CRITICAL9.8The B Blocks plugin for WordPress is vulnerable to Privilege Escalation due to missing authorization and improper input ...
CVE-2025-42957CRITICAL9.9SAP S/4HANA allows an attacker with user privileges to exploit a vulnerability in the function module exposed via RFC. T...
CVE-2025-42950CRITICAL9.9SAP Landscape Transformation (SLT) allows an attacker with user privileges to exploit a vulnerability in the function mo...
CVE-2025-55161CRITICAL9.8Stirling-PDF is a locally hosted web application that performs various operations on PDF files. Prior to version 1.1.0, ...
CVE-2025-55151CRITICAL9.8Stirling-PDF is a locally hosted web application that performs various operations on PDF files. Prior to version 1.1.0, ...
CVE-2025-55150CRITICAL9.8Stirling-PDF is a locally hosted web application that performs various operations on PDF files. Prior to version 1.1.0, ...
CVE-2025-7679CRITICAL9.2The ASPECT system allows users to bypass authentication. This issue affects all versions of ASPECT
CVE-2025-54063CRITICAL9.6Cherry Studio is a desktop client that supports for multiple LLM providers. From versions 1.4.8 to 1.5.0, there is a one...
CVE-2025-53187CRITICAL9.8Due to an issue in configuration, code that was intended for debugging purposes was included in the market release of th...
CVE-2025-45146CRITICAL9.8ModelCache for LLM through v0.2.0 was discovered to contain an deserialization vulnerability via the component /manager/...
CVE-2025-8853CRITICAL9.8Official Document Management System developed by 2100 Technology has an Authentication Bypass vulnerability, allowing un...
CVE-2025-8838CRITICAL9.8A vulnerability has been found in WinterChenS my-site up to 1f7525f15934d9d6a278de967f6ec9f1757738d8. This vulnerability...
CVE-2025-8660CRITICAL9.8Privilege escalation occurs when a user gets access to more resources or functionality than they are normally allowed.
CVE-2025-8854CRITICAL9.8Stack-based buffer overflow in LoadOFF in bulletphysics bullet3 before 3.26 on all platforms allows remote attackers to ...
CVE-2025-8815CRITICAL9.8A vulnerability was found in 猫宁i Morning up to bc782730c74ff080494f145cc363a0b4f43f7d3e. It has been classified as criti...
CVE-2025-8811CRITICAL9.8A vulnerability, which was classified as critical, has been found in code-projects Simple Art Gallery 1.0. Affected by t...
CVE-2025-8809CRITICAL9.8A vulnerability classified as critical has been found in code-projects Online Medicine Guide 1.0. Affected is an unknown...
CVE-2025-8806CRITICAL9.8A vulnerability was found in zhilink 智互联(深圳)科技有限公司 ADP Application Developer Platform 应用开发者平台 1.0.0. It has been classif...
CVE-2025-8795CRITICAL9.9A vulnerability, which was classified as critical, was found in LitmusChaos Litmus up to 3.19.0. This affects an unknown...
CVE-2025-8775CRITICAL9.8A vulnerability was found in Qiyuesuo Eelectronic Signature Platform up to 4.34 and classified as critical. Affected by ...
CVE-2025-8773CRITICAL9.8A vulnerability, which was classified as critical, was found in Dinstar Monitoring Platform 甘肃省危险品库监控平台 1.0. Affected is...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now