2025 CVE Vulnerabilities
45,268 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-47176 | HIGH | 7.8 | 0.6% | Jun 10, 2025 | '.../...//' in Microsoft Office Outlook allows an authorized attacker to execute code locally. |
| CVE-2025-47175 | HIGH | 7.8 | 2.1% | Jun 10, 2025 | Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. |
| CVE-2025-47174 | HIGH | 7.8 | 0.5% | Jun 10, 2025 | Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
| CVE-2025-47173 | HIGH | 7.8 | 0.5% | Jun 10, 2025 | Improper input validation in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2025-47172 | HIGH | 8.8 | 1.5% | Jun 10, 2025 | Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Office SharePoint allo... |
| CVE-2025-47171 | MEDIUM | 6.7 | 1.3% | Jun 10, 2025 | Improper input validation in Microsoft Office Outlook allows an authorized attacker to execute code locally. |
| CVE-2025-47170 | HIGH | 7.8 | 0.6% | Jun 10, 2025 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. |
| CVE-2025-47169 | HIGH | 7.8 | 0.6% | Jun 10, 2025 | Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally. |
| CVE-2025-47168 | HIGH | 7.8 | 0.5% | Jun 10, 2025 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. |
| CVE-2025-47167 | HIGH | 8.4 | 0.6% | Jun 10, 2025 | Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to exe... |
| CVE-2025-47166 | HIGH | 8.8 | 12.3% | Jun 10, 2025 | Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a ne... |
| CVE-2025-47165 | HIGH | 7.8 | 1.8% | Jun 10, 2025 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
| CVE-2025-47164 | HIGH | 8.4 | 0.6% | Jun 10, 2025 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2025-47163 | HIGH | 8.8 | 10.7% | Jun 10, 2025 | Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a ne... |
| CVE-2025-47162 | HIGH | 8.4 | 0.7% | Jun 10, 2025 | Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2025-47160 | MEDIUM | 5.4 | 0.7% | Jun 10, 2025 | Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a networ... |
| CVE-2025-47108 | HIGH | 7.8 | 0.2% | Jun 10, 2025 | Substance3D - Painter versions 11.0.1 and earlier are affected by an out-of-bounds write vulnerability that could result... |
| CVE-2025-47106 | MEDIUM | 5.5 | 0.3% | Jun 10, 2025 | InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by a Use After Free vulnerability that could lead to... |
| CVE-2025-47105 | MEDIUM | 5.5 | 0.2% | Jun 10, 2025 | InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by an out-of-bounds read vulnerability that could le... |
| CVE-2025-47104 | MEDIUM | 5.5 | 0.2% | Jun 10, 2025 | InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by an out-of-bounds read vulnerability that could le... |
| CVE-2025-43593 | HIGH | 7.8 | 0.2% | Jun 10, 2025 | InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by an out-of-bounds write vulnerability that could r... |
| CVE-2025-43590 | HIGH | 7.8 | 0.2% | Jun 10, 2025 | InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by an out-of-bounds write vulnerability that could r... |
| CVE-2025-43589 | HIGH | 7.8 | 0.3% | Jun 10, 2025 | InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by a Use After Free vulnerability that could result ... |
| CVE-2025-43558 | HIGH | 7.8 | 0.2% | Jun 10, 2025 | InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by an out-of-bounds write vulnerability that could r... |
| CVE-2025-33112 | HIGH | 8.4 | 0.2% | Jun 10, 2025 | IBM AIX 7.3 and IBM VIOS 4.1.1 Perl implementation could allow a non-privileged local user to exploit a vulnerability to... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now