2025 CVE Vulnerabilities

45,320 CVEs published in 2025.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2025-4617LOW1.1An insufficient policy enforcement vulnerability in Palo Alto Networks Prisma® Browser on Windows allows a locally authe...
CVE-2025-4616LOW1.1An insufficient validation of an untrusted input vulnerability in Palo Alto Networks Prisma® Browser allows a locally au...
CVE-2025-64754LOW2.7Jitsi Meet is an open source video conferencing application. A vulnerability present in versions prior to 2.0.10532 allo...
CVE-2025-64744LOW3.5OpenObserve is a cloud-native observability platform. In versions up to and including 0.16.1, when creating or renaming ...
CVE-2025-12817LOW3.1Missing authorization in PostgreSQL CREATE STATISTICS command allows a table owner to achieve denial of service against ...
CVE-2025-64503LOW3.3cups-filters contains backends, filters, and other software required to get the cups printing service working on operati...
CVE-2025-64345LOW1.8Wasmtime is a runtime for WebAssembly. Prior to version 38.0.4, 37.0.3, 36.0.3, and 24.0.5, Wasmtime's Rust embedder API...
CVE-2025-64170LOW3.8sudo-rs is a memory safe implementation of sudo and su written in Rust. Starting in version 0.2.7 and prior to version 0...
CVE-2025-63396LOW3.3An issue was discovered in PyTorch v2.5 and v2.7.1. Omission of profiler.stop() can cause torch.profiler.profile (Python...
CVE-2025-57812LOW3.7CUPS is a standards-based, open-source printing system, and `libcupsfilters` contains the code of the filters of the for...
CVE-2025-20379LOW3.5In Splunk Enterprise versions below 10.0.1, 9.4.5, 9.3.7, and 9.2.9 and Splunk Cloud Platform versions below 9.3.2411.11...
CVE-2025-41116LOW2.1When using the Grafana Databricks Datasource Plugin, if Oauth passthrough is enabled on the datasource, and multiple use...
CVE-2025-3717LOW2.1When using the Grafana Snowflake Datasource Plugin, if Oauth passthrough is enabled on the datasource, and multiple user...
CVE-2025-32088LOW3.3Improper conditions check for some Intel(R) QAT Windows software before version 2.6.0. within Ring 3: User Applications ...
CVE-2025-32037LOW2Improper access control for some Intel(R) PresentMon before version 2.3.1 within Ring 3: User Applications may allow a d...
CVE-2025-30509LOW3.3Improper input validation for some Intel QuickAssist Technology software before version 2.6.0 within Ring 3: User Applic...
CVE-2025-25216LOW3.3Improper input validation in some firmware for some Intel(R) Graphics Drivers and Intel LTS kernels within Ring 1: Devic...
CVE-2025-24862LOW2Unrestricted upload of file with dangerous type for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within...
CVE-2025-24307LOW2.3Improper privilege management for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within Ring 3: User Appl...
CVE-2025-20622LOW3.8Sensitive information uncleared in resource before release for reuse for some Intel(R) NPU Drivers for Windows before ve...
CVE-2025-64773LOW3.7In JetBrains YouTrack before 2025.3.104432 a race condition allowed bypass of helpdesk Agent limit
CVE-2025-13015LOW3.4Spoofing issue in Firefox. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, and Firefox ESR 115.30.
CVE-2025-8998LOW3.1It was possible to upload files with a specific name to a temporary directory, which may result in process crashes and i...
CVE-2025-42883LOW2.7Migration Workbench (DX Workbench) in SAP NetWeaver Application Server for ABAP fails to trigger a malware scan when an ...
CVE-2025-64682LOW3.7In JetBrains Hub before 2025.3.104432 a race condition allowed bypass of the Agent-user limit

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now