2025 CVE Vulnerabilities

45,322 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-62550HIGH8.8Out-of-bounds write in Azure Monitor Agent allows an authorized attacker to execute code over a network.
CVE-2025-62549HIGH8.8Untrusted pointer dereference in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to exe...
CVE-2025-62474HIGH7.8Improper access control in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges ...
CVE-2025-62472HIGH7.8Use of uninitialized resource in Windows Remote Access Connection Manager allows an authorized attacker to elevate privi...
CVE-2025-62470HIGH7.8Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges ...
CVE-2025-62469HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Brokering File ...
CVE-2025-62467HIGH7.8Integer overflow or wraparound in Windows Projected File System allows an authorized attacker to elevate privileges loca...
CVE-2025-62466HIGH7.8Null pointer dereference in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privilege...
CVE-2025-62464HIGH7.8Buffer over-read in Windows Projected File System allows an authorized attacker to elevate privileges locally.
CVE-2025-62462HIGH7.8Buffer over-read in Windows Projected File System allows an authorized attacker to elevate privileges locally.
CVE-2025-62461HIGH7.8Buffer over-read in Windows Projected File System Filter Driver allows an authorized attacker to elevate privileges loca...
CVE-2025-62458HIGH7.8Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
CVE-2025-62457HIGH7.8Out-of-bounds read in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally...
CVE-2025-62456HIGH8.8Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to execute code over a ...
CVE-2025-62455HIGH7.8Improper input validation in Windows Message Queuing allows an authorized attacker to elevate privileges locally.
CVE-2025-62454HIGH7.8Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges...
CVE-2025-62221HIGH7.8Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
CVE-2025-61258HIGH7.5Outsystems Platform Server 11.18.1.37828 allows attackers to cause a denial of service via a crafted content-length valu...
CVE-2025-60024HIGH8.8Multiple Improper Limitations of a Pathname to a Restricted Directory ('Path Traversal') vulnerabilities [CWE-22] vulner...
CVE-2025-59517HIGH7.8Improper access control in Windows Storage VSP Driver allows an authorized attacker to elevate privileges locally.
CVE-2025-59516HIGH7.8Missing authentication for critical function in Windows Storage VSP Driver allows an authorized attacker to elevate priv...
CVE-2025-55233HIGH7.8Out-of-bounds read in Windows Projected File System allows an authorized attacker to elevate privileges locally.
CVE-2025-54100HIGH7.8Improper neutralization of special elements used in a command ('command injection') in Windows PowerShell allows an unau...
CVE-2025-53949HIGH8.8An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability [CWE-78] vul...
CVE-2025-53679HIGH7.2An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] vul...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now