2025 CVE Vulnerabilities
45,279 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-37901 | MEDIUM | 5.5 | 0.2% | May 20, 2025 | In the Linux kernel, the following vulnerability has been resolved: irqchip/qcom-mpm: Prevent crash when trying to hand... |
| CVE-2025-37900 | MEDIUM | 5.5 | 0.2% | May 20, 2025 | In the Linux kernel, the following vulnerability has been resolved: iommu: Fix two issues in iommu_copy_struct_from_use... |
| CVE-2025-37899 | HIGH | 7.8 | 0.5% | May 20, 2025 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in session logoff The se... |
| CVE-2025-37898 | MEDIUM | 5.5 | 0.1% | May 20, 2025 | In the Linux kernel, the following vulnerability has been resolved: powerpc64/ftrace: fix module loading without patcha... |
| CVE-2025-37897 | MEDIUM | 5.5 | 0.2% | May 20, 2025 | In the Linux kernel, the following vulnerability has been resolved: wifi: plfxlc: Remove erroneous assert in plfxlc_mac... |
| CVE-2025-37896 | MEDIUM | 5.5 | 0.1% | May 20, 2025 | In the Linux kernel, the following vulnerability has been resolved: spi: spi-mem: Add fix to avoid divide error For so... |
| CVE-2025-37895 | MEDIUM | 5.5 | 0.2% | May 20, 2025 | In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix error handling path in bnxt_init_chip(... |
| CVE-2025-37894 | MEDIUM | 5.5 | 0.2% | May 20, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: use sock_gen_put() when sk_state is TCP_TIME_W... |
| CVE-2025-41228 | MEDIUM | 4.3 | 0.7% | May 20, 2025 | VMware ESXi and vCenter Server contain a reflected cross-site scripting vulnerability due to improper input validation. ... |
| CVE-2025-41227 | MEDIUM | 5.5 | 0.1% | May 20, 2025 | VMware ESXi, Workstation, and Fusion contain a denial-of-service vulnerability due to certain guest options. A malicious... |
| CVE-2025-41226 | MEDIUM | 6.8 | 0.2% | May 20, 2025 | VMware ESXi contains a denial-of-service vulnerability that occurs when performing a guest operation. A malicious actor ... |
| CVE-2025-41225 | HIGH | 8.8 | 0.2% | May 20, 2025 | The vCenter Server contains an authenticated command-execution vulnerability. A malicious actor with privileges to creat... |
| CVE-2025-26086 | HIGH | 7.5 | 11.3% | May 20, 2025 | An unauthenticated blind SQL injection vulnerability exists in RSI Queue Management System v3.0 within the TaskID parame... |
| CVE-2025-4980 | MEDIUM | 6.9 | 0.5% | May 20, 2025 | A vulnerability has been found in Netgear DGND3700 1.1.00.15_1.00.15NA and classified as problematic. This vulnerability... |
| CVE-2025-47941 | HIGH | 7.2 | 0.4% | May 20, 2025 | TYPO3 is an open source, PHP based web content management system. In versions on the 12.x branch prior to 12.4.31 LTS an... |
| CVE-2025-47940 | HIGH | 7.2 | 0.4% | May 20, 2025 | TYPO3 is an open source, PHP based web content management system. Starting in version 10.0.0 and prior to versions 10.4.... |
| CVE-2025-47939 | MEDIUM | 5.4 | 0.2% | May 20, 2025 | TYPO3 is an open source, PHP based web content management system. By design, the file management module in TYPO3’s backe... |
| CVE-2025-47938 | LOW | 3.8 | 0.2% | May 20, 2025 | TYPO3 is an open source, PHP based web content management system. Starting in version 9.0.0 and prior to versions 9.5.51... |
| CVE-2025-47937 | MEDIUM | 5.3 | 0.3% | May 20, 2025 | TYPO3 is an open source, PHP based web content management system. Starting in version 9.0.0 and prior to versions 9.5.51... |
| CVE-2025-47936 | MEDIUM | 4.4 | 0.2% | May 20, 2025 | TYPO3 is an open source, PHP based web content management system. In versions on the 12.x branch prior to 12.4.31 LTS an... |
| CVE-2025-45862 | MEDIUM | 6.5 | 0.3% | May 20, 2025 | TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to contain a buffer overflow via the interfacenameds parameter in t... |
| CVE-2025-4978 | CRITICAL | 9.8 | 17.0% | May 20, 2025 | A vulnerability, which was classified as very critical, was found in Netgear DGND3700 1.1.00.15_1.00.15NA. This affects ... |
| CVE-2025-4977 | MEDIUM | 6.9 | 0.5% | May 20, 2025 | A vulnerability, which was classified as problematic, has been found in Netgear DGND3700 1.1.00.15_1.00.15NA. Affected b... |
| CVE-2025-41231 | HIGH | 7.3 | 0.2% | May 20, 2025 | VMware Cloud Foundation contains a missing authorisation vulnerability. A malicious actor with access to VMware Cloud Fo... |
| CVE-2025-41230 | HIGH | 7.5 | 0.4% | May 20, 2025 | VMware Cloud Foundation contains an information disclosure vulnerability. A malicious actor with network access to port ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now