2025 CVE Vulnerabilities

45,323 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-68479MEDIUM5.3Discourse is an open source discussion platform. In versions prior to 3.5.4, 2025.11.2, 2025.12.1, and 2026.1.0, some su...
CVE-2025-67723MEDIUM5.4Discourse is an open source discussion platform. Versions prior to 3.5.4, 2025.11.2, 2025.12.1, and 2026.1.0 have a cont...
CVE-2025-66488MEDIUM6.1Discourse is an open source discussion platform. A vulnerability present in versions prior to 3.5.4, 2025.11.2, 2025.12....
CVE-2025-71000HIGH7.5An issue in the flow.cuda.BoolTensor component of OneFlow v0.9.0 allows attackers to cause a Denial of Service (DoS) via...
CVE-2025-70999HIGH7.5A GPU device-ID validation flaw in the flow.cuda.get_device_capability() component of OneFlow v0.9.0 allows attackers to...
CVE-2025-65891HIGH7.5A GPU device-ID validation flaw in OneFlow v0.9.0 allows attackers to trigger a Denial of Dervice (DoS) by invoking flow...
CVE-2025-57796MEDIUM6.8Explorance Blue versions prior to 8.14.12 use reversible symmetric encryption with a hardcoded static key to protect sen...
CVE-2025-57795CRITICAL9.9Explorance Blue versions prior to 8.14.13 contain an authenticated remote file download vulnerability in a web service c...
CVE-2025-57794CRITICAL9.1Explorance Blue versions prior to 8.14.9 contain an authenticated unrestricted file upload vulnerability in the administ...
CVE-2025-57793HIGH8.6Explorance Blue versions prior to 8.14.9 contain a SQL injection vulnerability caused by insufficient validation of user...
CVE-2025-57792CRITICAL10Explorance Blue versions prior to 8.14.9 contain a SQL injection vulnerability caused by insufficient validation of user...
CVE-2025-46316MEDIUM4.3An out-of-bounds read was addressed with improved input validation. This issue is fixed in Pages 15.1, iOS 26.1 and iPad...
CVE-2025-46306MEDIUM5.5The issue was addressed with improved bounds checks. This issue is fixed in Keynote 15.1, iOS 26 and iPadOS 26, macOS Ta...
CVE-2025-33237MEDIUM5.5NVIDIA HD Audio Driver for Windows contains a vulnerability where an attacker could exploit a NULL pointer dereference i...
CVE-2025-33220HIGH7.8NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where a malicious guest could cause heap memor...
CVE-2025-33219HIGH7.8NVIDIA Display Driver for Linux contains a vulnerability in the NVIDIA kernel module where an attacker could cause an in...
CVE-2025-33218HIGH7.8NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where an attacke...
CVE-2025-33217HIGH7.8NVIDIA Display Driver for Windows contains a vulnerability where an attacker could trigger a use after free. A successfu...
CVE-2025-65890HIGH7.5A device-ID validation flaw in OneFlow v0.9.0 allows attackers to cause a Denial of Service (DoS) by calling flow.cuda.s...
CVE-2025-65889HIGH7.5A type validation flaw in the flow.dstack() component of OneFlow v0.9.0 allows attackers to cause a Denial of Service (D...
CVE-2025-65888HIGH7.5A dimension validation flaw in the flow.empty() component of OneFlow 0.9.0 allows attackers to cause a Denial of Service...
CVE-2025-65887MEDIUM6.5A division-by-zero vulnerability in the flow.floor_divide() component of OneFlow v0.9.0 allows attackers to cause a Deni...
CVE-2025-65886HIGH7.5A shape mismatch vulnerability in OneFlow v0.9.0 allows attackers to cause a Denial of Service (DoS) via supplying craft...
CVE-2025-13919MEDIUM4.4Symantec Endpoint Protection, prior to 14.3 RU10 Patch 1, RU9 Patch 2, and RU8 Patch 3, may be susceptible to a COM Hija...
CVE-2025-13918MEDIUM6.7Symantec Endpoint Protection, prior to 14.3 RU10 Patch 1, RU9 Patch 2, and RU8 Patch 3, may be susceptible to a Elevatio...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now