2025 CVE Vulnerabilities

45,142 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-41749HIGH7.1An XSS vulnerability in port_util.php can be used by an unauthenticated remote attacker to trick an authenticated user t...
CVE-2025-41748HIGH7.1An XSS vulnerability in pxc_Dot1xCfg.php can be used by an unauthenticated remote attacker to trick an authenticated use...
CVE-2025-41747HIGH7.1An XSS vulnerability in pxc_vlanIntfCfg.php can be used by an unauthenticated remote attacker to trick an authenticated ...
CVE-2025-41746HIGH7.1An XSS vulnerability in pxc_portSecCfg.php can be used by an unauthenticated remote attacker to trick an authenticated u...
CVE-2025-41745HIGH7.1An XSS vulnerability in pxc_portCntr2.php can be used by an unauthenticated remote attacker to trick an authenticated us...
CVE-2025-41695HIGH7.1An XSS vulnerability in dyn_conn.php can be used by an unauthenticated remote attacker to trick an authenticated user to...
CVE-2025-40937HIGH8.8A vulnerability has been identified in SIMATIC CN 4100 (All versions < V4.0.1). The affected application do not properly...
CVE-2025-40831HIGH7.1A vulnerability has been identified in SINEC Security Monitor (All versions < V4.10.0). The affected application lacks i...
CVE-2025-40830HIGH8.4A vulnerability has been identified in SINEC Security Monitor (All versions < V4.10.0). The affected application does no...
CVE-2025-40820HIGH8.7Affected products do not properly enforce TCP sequence number validation in specific scenarios but accept values within ...
CVE-2025-40344HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ASoC: Intel: avs: Disable periods-elapsed work when...
CVE-2025-40342HIGH8.8In the Linux kernel, the following vulnerability has been resolved: nvme-fc: use lock accessing port_state and rport st...
CVE-2025-40337HIGH8.2In the Linux kernel, the following vulnerability has been resolved: net: stmmac: Correctly handle Rx checksum offload e...
CVE-2025-40336HIGH8.8In the Linux kernel, the following vulnerability has been resolved: drm/gpusvm: fix hmm_pfn_to_map_order() usage Handl...
CVE-2025-40334HIGH7.3In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: validate userq buffer virtual address a...
CVE-2025-40331HIGH7.8In the Linux kernel, the following vulnerability has been resolved: sctp: Prevent TOCTOU out-of-bounds write For the f...
CVE-2025-40328HIGH8.8In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in smb2_close_cached...
CVE-2025-2296HIGH8.4EDK2 contains a vulnerability in BIOS where an attacker may cause “ Improper Input Validation” by local access. Successf...
CVE-2025-14333HIGH8.1Memory safety bugs present in Firefox ESR 140.5, Thunderbird ESR 140.5, Firefox 145 and Thunderbird 145. Some of these b...
CVE-2025-14332HIGH7.3Memory safety bugs present in Firefox 145 and Thunderbird 145. Some of these bugs showed evidence of memory corruption a...
CVE-2025-14329HIGH8.8Privilege escalation in the Netmonitor component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunde...
CVE-2025-14328HIGH8.8Privilege escalation in the Netmonitor component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunde...
CVE-2025-14327HIGH7.5Spoofing issue in the Downloads Panel component. This vulnerability was fixed in Firefox 146, Thunderbird 146, Firefox E...
CVE-2025-14325HIGH7.3JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 140...
CVE-2025-14323HIGH8.8Privilege escalation in the DOM: Notifications component. This vulnerability was fixed in Firefox 146, Firefox ESR 115.3...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now