2025 CVE Vulnerabilities

45,142 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-24857HIGH7.6Improper access control for volatile memory containing boot code in Universal Boot Loader (U-Boot) before 2017.11 and Qu...
CVE-2025-63895HIGH7.5An issue in the Bluetooth firmware of JXL 9 Inch Car Android Double Din Player Android v12.0 allows attackers to cause a...
CVE-2025-65199HIGH7.8A command injection vulnerability exists in Windscribe for Linux Desktop App that allows a local user who is a member of...
CVE-2025-56431HIGH7.5Directory Traversal vulnerability in Fearless Geek Media FearlessCMS v.0.0.2-15 allows a remote attacker to cause a deni...
CVE-2025-56430HIGH7.5Directory Traversal vulnerability in Fearless Geek Media FearlessCMS v.0.0.2-15 allows a remote attacker to cause a deni...
CVE-2025-34429HIGH7.11Panel versions 1.10.33 - 2.0.15 contain a cross-site request forgery (CSRF) vulnerability in the web port configuration...
CVE-2025-34428HIGH7.8MailEnable versions prior to 10.54 contain a cleartext storage of credentials vulnerability that can lead to local crede...
CVE-2025-34427HIGH7.8MailEnable versions prior to 10.54 contain a cleartext storage of credentials vulnerability that can lead to local crede...
CVE-2025-63094HIGH7.5XiangShan Nanhu V2 and XiangShan Kunmighu V3 were discovered to use speculative execution and indirect branch prediction...
CVE-2025-67635HIGH7.5Jenkins 2.540 and earlier, LTS 2.528.2 and earlier does not properly close HTTP-based CLI connections when the connectio...
CVE-2025-65807HIGH8.4An issue in sd command v1.0.0 and before allows attackers to escalate privileges to root via a crafted command.
CVE-2025-34424HIGH7.8MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code exe...
CVE-2025-34423HIGH7.8MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code exe...
CVE-2025-34422HIGH7.8MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code exe...
CVE-2025-34421HIGH7.8MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code exe...
CVE-2025-34420HIGH7.8MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code exe...
CVE-2025-34419HIGH7.8MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code exe...
CVE-2025-34418HIGH7.8MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code exe...
CVE-2025-34417HIGH7.8MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code exe...
CVE-2025-34416HIGH7.8MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code exe...
CVE-2025-34410HIGH7.11Panel versions 1.10.33 - 2.0.15 contain a cross-site request forgery (CSRF) vulnerability in the Change Username functi...
CVE-2025-34395HIGH7.5Barracuda Service Center, as implemented in the RMM solution, in versions prior to 2025.1.1, exposes a .NET Remoting ser...
CVE-2025-13155HIGH8.5An improper permissions vulnerability was reported in Lenovo Baiying Client that could allow a local authenticated user ...
CVE-2025-13152HIGH8.5A potential DLL hijacking vulnerability was reported in Lenovo One Client during an internal security assessment that co...
CVE-2025-12046HIGH8.5A DLL hijacking vulnerability was reported in the Lenovo App Store and Lenovo Browser applications that could allow a lo...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now