2025 CVE Vulnerabilities

45,280 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-20966MEDIUM4.6Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 1...
CVE-2025-20965MEDIUM5.5Improper handling of insufficient permission in Bixby wakeup prior to version 2.3.74.8 allows local attackers to access ...
CVE-2025-20964HIGH7.8Out-of-bounds write in parsing media files in libsavsvc.so prior to SMR May-2025 Release 1 allows local attackers to wri...
CVE-2025-20963HIGH7.8Out-of-bounds write in memory initialization in libsavsvc.so prior to SMR May-2025 Release 1 allows local attackers to w...
CVE-2025-20962MEDIUM4Improper handling of insufficient permission in SpenGesture service prior to SMR May-2025 Release 1 allows local attacke...
CVE-2025-20961MEDIUM5.5Improper handling of insufficient permission or privileges in sepunion service prior to SMR May-2025 Release 1 allows lo...
CVE-2025-20960LOW3.3Improper handling of insufficient permission in CocktailBarService prior to SMR May-2025 Release 1 allows local attacker...
CVE-2025-20959MEDIUM5.5Use of implicit intent for sensitive communication in Wi-Fi P2P service prior to SMR May-2025 Release 1 allows local att...
CVE-2025-20958MEDIUM4.4Improper verification of intent by broadcast receiver in UnifiedWFC prior to SMR May-2025 Release 1 allows local attacke...
CVE-2025-20957HIGH7.8Improper access control in SmartManagerCN prior to SMR May-2025 Release 1 allows local attackers to launch arbitrary act...
CVE-2025-20956MEDIUM4.3Improper export of android application components in Settings in Galaxy Watch prior to SMR May-2025 Release 1 allows phy...
CVE-2025-20955MEDIUM5.5Improper Export of Android Application Components in NotificationHistoryImageProvider prior to SMR May-2025 Release 1 al...
CVE-2025-20954MEDIUM5.5Use of implicit intent for sensitive communication in EnrichedCall prior to SMR May-2025 Release 1 allows local attacker...
CVE-2025-20953MEDIUM4.4Improper access control in SmartManagerCN prior to SMR May-2025 Release 1 allows local attackers to launch activities wi...
CVE-2025-20949CRITICAL9.1Path traversal vulnerability in Samsung Members prior to version 5.0.00.11 allows attackers to read and write arbitrary ...
CVE-2025-20937MEDIUM6.7Out-of-bounds write in Keymaster trustlet prior to SMR May-2025 Release 1 allows local privileged attackers to write out...
CVE-2025-4171MEDIUM6.4The WZ Followed Posts – Display what visitors are reading plugin for WordPress is vulnerable to Stored Cross-Site Script...
CVE-2025-0669HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in BOINC Server allows Cross Site Request Forgery.This issue affects BOI...
CVE-2025-0668CRITICAL9.8Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BOINC Serve...
CVE-2025-0667MEDIUM5.4Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BOINC Serve...
CVE-2025-0666MEDIUM5.4Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BOINC Serve...
CVE-2025-32405HIGH7.5An Out-of-bounds Write in RT-Labs P-Net version 1.0.1 or earlier allows an attacker to induce a crash in IO devices that...
CVE-2025-32404CRITICAL9.8An Out-of-bounds Write in RT-Labs P-Net version 1.0.1 or earlier allows an attacker to corrupt the memory of IO devices ...
CVE-2025-32403CRITICAL9.8An Out-of-bounds Write in RT-Labs P-Net version 1.0.1 or earlier allows an attacker to corrupt the memory of IO devices ...
CVE-2025-32402HIGH7.5An Out-of-bounds Write in RT-Labs P-Net version 1.0.1 or earlier allows an attacker to induce a crash in IO devices that...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now