2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-71000 | HIGH | 7.5 | 0.4% | Jan 28, 2026 | An issue in the flow.cuda.BoolTensor component of OneFlow v0.9.0 allows attackers to cause a Denial of Service (DoS) via... |
| CVE-2025-70999 | HIGH | 7.5 | 0.5% | Jan 28, 2026 | A GPU device-ID validation flaw in the flow.cuda.get_device_capability() component of OneFlow v0.9.0 allows attackers to... |
| CVE-2025-65891 | HIGH | 7.5 | 0.6% | Jan 28, 2026 | A GPU device-ID validation flaw in OneFlow v0.9.0 allows attackers to trigger a Denial of Dervice (DoS) by invoking flow... |
| CVE-2025-57796 | MEDIUM | 6.8 | 0.2% | Jan 28, 2026 | Explorance Blue versions prior to 8.14.12 use reversible symmetric encryption with a hardcoded static key to protect sen... |
| CVE-2025-57795 | CRITICAL | 9.9 | 0.5% | Jan 28, 2026 | Explorance Blue versions prior to 8.14.13 contain an authenticated remote file download vulnerability in a web service c... |
| CVE-2025-57794 | CRITICAL | 9.1 | 0.5% | Jan 28, 2026 | Explorance Blue versions prior to 8.14.9 contain an authenticated unrestricted file upload vulnerability in the administ... |
| CVE-2025-57793 | HIGH | 8.6 | 0.3% | Jan 28, 2026 | Explorance Blue versions prior to 8.14.9 contain a SQL injection vulnerability caused by insufficient validation of user... |
| CVE-2025-57792 | CRITICAL | 10 | 0.4% | Jan 28, 2026 | Explorance Blue versions prior to 8.14.9 contain a SQL injection vulnerability caused by insufficient validation of user... |
| CVE-2025-46316 | MEDIUM | 4.3 | 0.3% | Jan 28, 2026 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in Pages 15.1, iOS 26.1 and iPad... |
| CVE-2025-46306 | MEDIUM | 5.5 | 0.1% | Jan 28, 2026 | The issue was addressed with improved bounds checks. This issue is fixed in Keynote 15.1, iOS 26 and iPadOS 26, macOS Ta... |
| CVE-2025-33237 | MEDIUM | 5.5 | 0.1% | Jan 28, 2026 | NVIDIA HD Audio Driver for Windows contains a vulnerability where an attacker could exploit a NULL pointer dereference i... |
| CVE-2025-33220 | HIGH | 7.8 | 0.2% | Jan 28, 2026 | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where a malicious guest could cause heap memor... |
| CVE-2025-33219 | HIGH | 7.8 | 0.2% | Jan 28, 2026 | NVIDIA Display Driver for Linux contains a vulnerability in the NVIDIA kernel module where an attacker could cause an in... |
| CVE-2025-33218 | HIGH | 7.8 | 0.2% | Jan 28, 2026 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where an attacke... |
| CVE-2025-33217 | HIGH | 7.8 | 0.2% | Jan 28, 2026 | NVIDIA Display Driver for Windows contains a vulnerability where an attacker could trigger a use after free. A successfu... |
| CVE-2025-65890 | HIGH | 7.5 | 0.5% | Jan 28, 2026 | A device-ID validation flaw in OneFlow v0.9.0 allows attackers to cause a Denial of Service (DoS) by calling flow.cuda.s... |
| CVE-2025-65889 | HIGH | 7.5 | 0.4% | Jan 28, 2026 | A type validation flaw in the flow.dstack() component of OneFlow v0.9.0 allows attackers to cause a Denial of Service (D... |
| CVE-2025-65888 | HIGH | 7.5 | 0.4% | Jan 28, 2026 | A dimension validation flaw in the flow.empty() component of OneFlow 0.9.0 allows attackers to cause a Denial of Service... |
| CVE-2025-65887 | MEDIUM | 6.5 | 0.3% | Jan 28, 2026 | A division-by-zero vulnerability in the flow.floor_divide() component of OneFlow v0.9.0 allows attackers to cause a Deni... |
| CVE-2025-65886 | HIGH | 7.5 | 0.4% | Jan 28, 2026 | A shape mismatch vulnerability in OneFlow v0.9.0 allows attackers to cause a Denial of Service (DoS) via supplying craft... |
| CVE-2025-13919 | MEDIUM | 4.4 | 0.1% | Jan 28, 2026 | Symantec Endpoint Protection, prior to 14.3 RU10 Patch 1, RU9 Patch 2, and RU8 Patch 3, may be susceptible to a COM Hija... |
| CVE-2025-13918 | MEDIUM | 6.7 | 0.1% | Jan 28, 2026 | Symantec Endpoint Protection, prior to 14.3 RU10 Patch 1, RU9 Patch 2, and RU8 Patch 3, may be susceptible to a Elevatio... |
| CVE-2025-13917 | HIGH | 7 | 0.1% | Jan 28, 2026 | WSS Agent, prior to 9.8.5, may be susceptible to a Elevation of Privilege vulnerability, which is a type of issue whereb... |
| CVE-2025-70336 | MEDIUM | 4.8 | 0.2% | Jan 28, 2026 | A Stored cross-site scripting (XSS) vulnerability in 'Create New Live Item' in PodcastGenerator 3.2.9 allows remote atta... |
| CVE-2025-69517 | HIGH | 8.8 | 0.5% | Jan 28, 2026 | An HTML injection vulnerability in Amidaware Inc Tactical RMM v1.3.1 and earlier allows authenticated users to inject ar... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now