2025 CVE Vulnerabilities

45,282 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-4341CRITICAL9.8A vulnerability classified as critical was found in D-Link DIR-880L up to 104WWb01. Affected by this vulnerability is th...
CVE-2025-27248MEDIUM5.5in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference.
CVE-2025-27241MEDIUM5.5in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference.
CVE-2025-27132HIGH7.8in OpenHarmony v5.0.3 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through o...
CVE-2025-25218MEDIUM5.5in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference.
CVE-2025-25052MEDIUM5.5in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through buffer overflow.
CVE-2025-22886MEDIUM5.5in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release of memory.
CVE-2025-21475HIGH7.8Memory corruption while processing escape code, when DisplayId is passed with large unsigned value.
CVE-2025-21470HIGH7.8Memory corruption while processing image encoding, when configuration is NULL in IOCTL parameter.
CVE-2025-21469HIGH7.8Memory corruption while processing image encoding, when input buffer length is 0 in IOCTL call.
CVE-2025-21468HIGH7.8Memory corruption while reading response from FW, when buffer size is changed by FW while driver is using this size to w...
CVE-2025-21467HIGH7.8Memory corruption while reading the FW response from the shared queue.
CVE-2025-21462HIGH7.8Memory corruption while processing an IOCTL request, when buffer significantly exceeds the command argument limit.
CVE-2025-21460HIGH7.8Memory corruption while processing a message, when the buffer is controlled by a Guest VM, the value can be changed cont...
CVE-2025-21459HIGH7.5Transient DOS while parsing per STA profile in ML IE.
CVE-2025-21453HIGH7.8Memory corruption while processing a data structure, when an iterator is accessed after it has been removed, potential f...
CVE-2025-4340CRITICAL9.8A vulnerability classified as critical has been found in D-Link DIR-890L and DIR-806A1 up to 100CNb11/108B03. Affected i...
CVE-2025-4333MEDIUM6.3A vulnerability was found in feng_ha_ha/megagao ssm-erp and production_ssm up to 0.0.1. It has been classified as critic...
CVE-2025-4332CRITICAL9.8A vulnerability was found in PHPGurukul Company Visitor Management System 2.0 and classified as critical. Affected by th...
CVE-2025-4331CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Online Student Clearance System 1.0. This vulnerabili...
CVE-2025-46593MEDIUM5.5Process residence vulnerability in abnormal scenarios in the print module Impact: Successful exploitation of this vulner...
CVE-2025-46592MEDIUM5.5Null pointer dereference vulnerability in the USB HDI driver module Impact: Successful exploitation of this vulnerabilit...
CVE-2025-46591MEDIUM5.5Out-of-bounds data read vulnerability in the authorization module Impact: Successful exploitation of this vulnerability ...
CVE-2025-46590MEDIUM6.5Bypass vulnerability in the network search instruction authentication module Impact: Successful exploitation of this vul...
CVE-2025-46589HIGH7.1Vulnerability of unauthorized access in the app lock module Impact: Successful exploitation of this vulnerability will a...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now