2025 CVE Vulnerabilities
45,268 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-30327 | HIGH | 7.8 | 0.2% | Jun 10, 2025 | InCopy versions 20.2, 19.5.3 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could resu... |
| CVE-2025-5971 | HIGH | 8.8 | 0.5% | Jun 10, 2025 | A vulnerability was found in code-projects School Fees Payment System 1.0. It has been classified as critical. This affe... |
| CVE-2025-5943 | HIGH | 8.8 | 0.6% | Jun 10, 2025 | MicroDicom DICOM Viewer suffers from an out-of-bounds write vulnerability. Remote attackers are able to exploit this i... |
| CVE-2025-43588 | HIGH | 7.8 | 0.2% | Jun 10, 2025 | Substance3D - Sampler versions 5.0 and earlier are affected by an out-of-bounds write vulnerability that could result in... |
| CVE-2025-43581 | HIGH | 7.8 | 0.2% | Jun 10, 2025 | Substance3D - Sampler versions 5.0 and earlier are affected by an out-of-bounds write vulnerability that could result in... |
| CVE-2025-36580 | MEDIUM | 4.8 | 0.2% | Jun 10, 2025 | Dell Wyse Management Suite, versions prior to WMS 5.2, contain an Improper Neutralization of Input During Web Page Gener... |
| CVE-2025-36578 | MEDIUM | 6.8 | 0.3% | Jun 10, 2025 | Dell Wyse Management Suite, versions prior to WMS 5.2, contain an Incorrect Authorization vulnerability. A low privilege... |
| CVE-2025-36577 | MEDIUM | 6.1 | 0.3% | Jun 10, 2025 | Dell Wyse Management Suite, versions prior to WMS 5.2, contain an Improper Neutralization of Input During Web Page Gener... |
| CVE-2025-36576 | LOW | 2.7 | 0.2% | Jun 10, 2025 | Dell Wyse Management Suite, versions prior to WMS 5.2, contain a Cross-Site Request Forgery (CSRF) vulnerability. A high... |
| CVE-2025-36575 | HIGH | 7.5 | 0.3% | Jun 10, 2025 | Dell Wyse Management Suite, versions prior to WMS 5.2, contain an Exposure of Sensitive Information Through Data Queries... |
| CVE-2025-36574 | HIGH | 8.2 | 0.4% | Jun 10, 2025 | Dell Wyse Management Suite, versions prior to WMS 5.2, contain an Absolute Path Traversal vulnerability. An unauthentica... |
| CVE-2025-2884 | MEDIUM | 6.6 | 0.2% | Jun 10, 2025 | TCG TPM2.0 Reference implementation's CryptHmacSign helper function is vulnerable to Out-of-Bounds read due to the lack ... |
| CVE-2025-2474 | CRITICAL | 9.8 | 0.6% | Jun 10, 2025 | Out-of-bounds write in the PCX image codec in QNX SDP versions 8.0, 7.1 and 7.0 could allow an unauthenticated attacker ... |
| CVE-2025-0052 | HIGH | 8.3 | 0.3% | Jun 10, 2025 | Improper input validation performed during the authentication process of FlashBlade could lead to a system Denial of Ser... |
| CVE-2025-0051 | HIGH | 8.7 | 0.3% | Jun 10, 2025 | Improper input validation performed during the authentication process of FlashArray could lead to a system Denial of Ser... |
| CVE-2025-5970 | MEDIUM | 5.4 | 0.3% | Jun 10, 2025 | A vulnerability was found in PHPGurukul Restaurant Table Booking System 1.0 and classified as problematic. Affected by t... |
| CVE-2025-5969 | HIGH | 8.8 | 0.9% | Jun 10, 2025 | A vulnerability has been found in D-Link DIR-632 FW103B08 and classified as critical. Affected by this vulnerability is ... |
| CVE-2025-47977 | HIGH | 8.2 | 0.5% | Jun 10, 2025 | Improper neutralization of input during web page generation ('cross-site scripting') in Nuance Digital Engagement Platfo... |
| CVE-2025-47969 | MEDIUM | 4.4 | 0.6% | Jun 10, 2025 | Exposure of sensitive information to an unauthorized actor in Windows Hello allows an authorized attacker to disclose in... |
| CVE-2025-47968 | HIGH | 7.8 | 0.4% | Jun 10, 2025 | Improper input validation in Microsoft AutoUpdate (MAU) allows an authorized attacker to elevate privileges locally. |
| CVE-2025-47962 | HIGH | 7.8 | 1.4% | Jun 10, 2025 | Improper access control in Windows SDK allows an authorized attacker to elevate privileges locally. |
| CVE-2025-47957 | HIGH | 8.4 | 1.2% | Jun 10, 2025 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. |
| CVE-2025-47956 | MEDIUM | 5.5 | 0.4% | Jun 10, 2025 | External control of file name or path in Windows Security App allows an authorized attacker to perform spoofing locally. |
| CVE-2025-47955 | HIGH | 7.8 | 0.8% | Jun 10, 2025 | Improper privilege management in Windows Remote Access Connection Manager allows an authorized attacker to elevate privi... |
| CVE-2025-47953 | HIGH | 8.4 | 0.5% | Jun 10, 2025 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now