2025 CVE Vulnerabilities

45,142 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-54160HIGH7.8Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in BeeDrive in Synology Bee...
CVE-2025-54159HIGH7.5Missing authorization vulnerability in BeeDrive in Synology BeeDrive for desktop before 1.4.2-13960 allows remote attack...
CVE-2025-54158HIGH7.8Missing authentication for critical function vulnerability in BeeDrive in Synology BeeDrive for desktop before 1.4.2-139...
CVE-2025-40266HIGH8.2In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Check the untrusted offset in FF-A memo...
CVE-2025-40262HIGH7.8In the Linux kernel, the following vulnerability has been resolved: Input: imx_sc_key - fix memory corruption on unload...
CVE-2025-40253HIGH8.8In the Linux kernel, the following vulnerability has been resolved: s390/ctcm: Fix double-kfree The function 'mpc_rcvd...
CVE-2025-40250HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Clean up only new IRQ glue on request_irq...
CVE-2025-40249HIGH7.8In the Linux kernel, the following vulnerability has been resolved: gpio: cdev: make sure the cdev fd is still active b...
CVE-2025-40248HIGH7.8In the Linux kernel, the following vulnerability has been resolved: vsock: Ignore signal/timeout on connect() if alread...
CVE-2025-40245HIGH7.8In the Linux kernel, the following vulnerability has been resolved: nios2: ensure that memblock.current_limit is set wh...
CVE-2025-40244HIGH7.8In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix KMSAN uninit-value issue in __hfsplus_...
CVE-2025-40243HIGH7.8In the Linux kernel, the following vulnerability has been resolved: hfs: fix KMSAN uninit-value issue in hfs_find_set_z...
CVE-2025-40242HIGH7In the Linux kernel, the following vulnerability has been resolved: gfs2: Fix unlikely race in gdlm_put_lock In gdlm_p...
CVE-2025-40241HIGH7.8In the Linux kernel, the following vulnerability has been resolved: erofs: fix crafted invalid cases for encoded extent...
CVE-2025-40240HIGH7.5In the Linux kernel, the following vulnerability has been resolved: sctp: avoid NULL dereference when chunk data buffer...
CVE-2025-40233HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ocfs2: clear extent cache after moving/defragmentin...
CVE-2025-54307HIGH8.8An issue was discovered in the Thermo Fisher Torrent Suite Django application 5.18.1. The /configure/plugins/plugin/uplo...
CVE-2025-54306HIGH7.2An issue was discovered in the Thermo Fisher Torrent Suite Django application 5.18.1. A remote code execution vulnerabil...
CVE-2025-54305HIGH7.8An issue was discovered in the Thermo Fisher Torrent Suite Django application 5.18.1. One of the middlewares included in...
CVE-2025-40216HIGH7.8In the Linux kernel, the following vulnerability has been resolved: io_uring/rsrc: don't rely on user vaddr alignment ...
CVE-2025-29846HIGH7.2A vulnerability in portenable cgi allows remote authenticated users to get the status of installed packages.
CVE-2025-14008HIGH7.2A flaw has been found in dayrui XunRuiCMS up to 4.7.1. This vulnerability affects unknown code of the file admin79f2ec22...
CVE-2025-40215HIGH7.8In the Linux kernel, the following vulnerability has been resolved: xfrm: delete x->tunnel as we delete x The ipcomp f...
CVE-2025-40214HIGH7.8In the Linux kernel, the following vulnerability has been resolved: af_unix: Initialise scc_index in unix_add_edge(). ...
CVE-2025-11727HIGH7.2The Omnichannel for WooCommerce: Google, Amazon, eBay & Walmart Integration – Powered by Codisto plugin for WordPress is...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now