2025 CVE Vulnerabilities
45,280 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-42999 | CRITICAL | 9.1 | 11.3% | May 13, 2025 | SAP NetWeaver Visual Composer Metadata Uploader is vulnerable when a privileged user can upload untrusted or malicious c... |
| CVE-2025-42997 | MEDIUM | 6.6 | 0.2% | May 13, 2025 | Under certain conditions, SAP Gateway Client allows a high-privileged user to access restricted information beyond the s... |
| CVE-2025-31329 | MEDIUM | 6.2 | 0.3% | May 13, 2025 | SAP NetWeaver is vulnerable to an Information Disclosure vulnerability caused by the injection of malicious instructions... |
| CVE-2025-30018 | HIGH | 7.5 | 0.4% | May 13, 2025 | The Live Auction Cockpit in SAP Supplier Relationship Management (SRM) allows an unauthenticated attacker to submit an a... |
| CVE-2025-30012 | CRITICAL | 9.8 | 0.7% | May 13, 2025 | The Live Auction Cockpit in SAP Supplier Relationship Management (SRM) uses a deprecated java applet component, which al... |
| CVE-2025-30011 | MEDIUM | 5.3 | 0.3% | May 13, 2025 | The Live Auction Cockpit in SAP Supplier Relationship Management (SRM) uses a deprecated java applet component within th... |
| CVE-2025-30010 | MEDIUM | 6.1 | 0.3% | May 13, 2025 | The Live Auction Cockpit in SAP Supplier Relationship Management (SRM) uses a deprecated java applet component within th... |
| CVE-2025-30009 | MEDIUM | 6.1 | 0.3% | May 13, 2025 | he Live Auction Cockpit in SAP Supplier Relationship Management (SRM) uses a deprecated java applet component within the... |
| CVE-2025-26662 | MEDIUM | 4.4 | 0.2% | May 13, 2025 | The Data Services Management Console does not sufficiently encode user-controlled inputs, allowing an attacker to inject... |
| CVE-2025-46825 | MEDIUM | 5.4 | 0.3% | May 12, 2025 | Kanboard is project management software that focuses on the Kanban methodology. Versions 1.2.26 through 1.2.44 have a St... |
| CVE-2025-31260 | MEDIUM | 5.5 | 0.1% | May 12, 2025 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.5. An app may be... |
| CVE-2025-31259 | HIGH | 7.8 | 0.2% | May 12, 2025 | A privacy issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.5, macOS Sequoia 15.7, macOS... |
| CVE-2025-31258 | MEDIUM | 6.5 | 0.4% | May 12, 2025 | This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.5. An app may be able ... |
| CVE-2025-31257 | MEDIUM | 4.7 | 1.0% | May 12, 2025 | This issue was addressed with improved memory handling. This issue is fixed in Safari 18.5, iOS 18.5 and iPadOS 18.5, ma... |
| CVE-2025-31256 | MEDIUM | 5.5 | 0.2% | May 12, 2025 | The issue was addressed with improved handling of caches. This issue is fixed in macOS Sequoia 15.5. Hot corner may unex... |
| CVE-2025-31253 | HIGH | 7.1 | 0.2% | May 12, 2025 | This issue was addressed through improved state management. This issue is fixed in iOS 18.5 and iPadOS 18.5. Muting the ... |
| CVE-2025-31251 | MEDIUM | 5.5 | 0.3% | May 12, 2025 | The issue was addressed with improved input sanitization. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7... |
| CVE-2025-31250 | MEDIUM | 5.5 | 0.2% | May 12, 2025 | An information disclosure issue was addressed with improved privacy controls. This issue is fixed in macOS Sequoia 15.5.... |
| CVE-2025-31249 | HIGH | 7.1 | 0.3% | May 12, 2025 | A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.5. An app may be able to acces... |
| CVE-2025-31247 | HIGH | 7.5 | 0.4% | May 12, 2025 | A logic issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.5, macOS Sonoma 14.7... |
| CVE-2025-31246 | HIGH | 8.8 | 0.5% | May 12, 2025 | The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.5, macOS Sonoma 14.7.6. C... |
| CVE-2025-31245 | MEDIUM | 5.5 | 0.2% | May 12, 2025 | The issue was addressed with improved checks. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPadOS 17.7.7, macOS Sequ... |
| CVE-2025-31244 | HIGH | 8.8 | 0.2% | May 12, 2025 | A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS Sequoia 15.5. An app may be ... |
| CVE-2025-31242 | MEDIUM | 5.5 | 0.2% | May 12, 2025 | A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 18.5 and ... |
| CVE-2025-31241 | MEDIUM | 5.3 | 0.7% | May 12, 2025 | A double free issue was addressed with improved memory management. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPad... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now