2025 CVE Vulnerabilities

45,280 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-42999CRITICAL9.1SAP NetWeaver Visual Composer Metadata Uploader is vulnerable when a privileged user can upload untrusted or malicious c...
CVE-2025-42997MEDIUM6.6Under certain conditions, SAP Gateway Client allows a high-privileged user to access restricted information beyond the s...
CVE-2025-31329MEDIUM6.2SAP NetWeaver is vulnerable to an Information Disclosure vulnerability caused by the injection of malicious instructions...
CVE-2025-30018HIGH7.5The Live Auction Cockpit in SAP Supplier Relationship Management (SRM) allows an unauthenticated attacker to submit an a...
CVE-2025-30012CRITICAL9.8The Live Auction Cockpit in SAP Supplier Relationship Management (SRM) uses a deprecated java applet component, which al...
CVE-2025-30011MEDIUM5.3The Live Auction Cockpit in SAP Supplier Relationship Management (SRM) uses a deprecated java applet component within th...
CVE-2025-30010MEDIUM6.1The Live Auction Cockpit in SAP Supplier Relationship Management (SRM) uses a deprecated java applet component within th...
CVE-2025-30009MEDIUM6.1he Live Auction Cockpit in SAP Supplier Relationship Management (SRM) uses a deprecated java applet component within the...
CVE-2025-26662MEDIUM4.4The Data Services Management Console does not sufficiently encode user-controlled inputs, allowing an attacker to inject...
CVE-2025-46825MEDIUM5.4Kanboard is project management software that focuses on the Kanban methodology. Versions 1.2.26 through 1.2.44 have a St...
CVE-2025-31260MEDIUM5.5A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.5. An app may be...
CVE-2025-31259HIGH7.8A privacy issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.5, macOS Sequoia 15.7, macOS...
CVE-2025-31258MEDIUM6.5This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.5. An app may be able ...
CVE-2025-31257MEDIUM4.7This issue was addressed with improved memory handling. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, ma...
CVE-2025-31256MEDIUM5.5The issue was addressed with improved handling of caches. This issue is fixed in macOS Sequoia 15.5. Hot corner may unex...
CVE-2025-31253HIGH7.1This issue was addressed through improved state management. This issue is fixed in iOS 18.5 and iPadOS 18.5. Muting the ...
CVE-2025-31251MEDIUM5.5The issue was addressed with improved input sanitization. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7...
CVE-2025-31250MEDIUM5.5An information disclosure issue was addressed with improved privacy controls. This issue is fixed in macOS Sequoia 15.5....
CVE-2025-31249HIGH7.1A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.5. An app may be able to acces...
CVE-2025-31247HIGH7.5A logic issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.5, macOS Sonoma 14.7...
CVE-2025-31246HIGH8.8The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.5, macOS Sonoma 14.7.6. C...
CVE-2025-31245MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequ...
CVE-2025-31244HIGH8.8A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS Sequoia 15.5. An app may be ...
CVE-2025-31242MEDIUM5.5A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 18.5 and ...
CVE-2025-31241MEDIUM5.3A double free issue was addressed with improved memory management. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPad...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now