2025 CVE Vulnerabilities
45,142 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-65798 | MEDIUM | 5.4 | 0.2% | Dec 8, 2025 | Incorrect access control in usememos memos v0.25.2 allows attackers with low-level privileges to arbitrarily modify or d... |
| CVE-2025-65796 | MEDIUM | 4.3 | 0.2% | Dec 8, 2025 | Incorrect access control in usememos memos v0.25.2 allows attackers with low-level privileges to arbitrarily delete reac... |
| CVE-2025-14244 | MEDIUM | 4.8 | 0.2% | Dec 8, 2025 | A flaw has been found in GreenCMS 2.3.0603. Affected by this issue is some unknown functionality of the file /Admin/Cont... |
| CVE-2025-14262 | MEDIUM | 4.3 | 0.2% | Dec 8, 2025 | A wrong permission check in KNIME Business Hub before version 1.17.0 allowed an authenticated user to save jobs of other... |
| CVE-2025-66334 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may a... |
| CVE-2025-66333 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may a... |
| CVE-2025-66332 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may a... |
| CVE-2025-66331 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may a... |
| CVE-2025-66330 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | App lock verification bypass vulnerability in the file management app. Impact: Successful exploitation of this vulnerabi... |
| CVE-2025-66329 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Permission control vulnerability in the window management module. Impact: Successful exploitation of this vulnerability ... |
| CVE-2025-66328 | MEDIUM | 4.7 | 0.1% | Dec 8, 2025 | Multi-thread race condition vulnerability in the network management module. Impact: Successful exploitation of this vuln... |
| CVE-2025-66327 | MEDIUM | 4.7 | 0.1% | Dec 8, 2025 | Race condition vulnerability in the network module. Impact: Successful exploitation of this vulnerability may affect ser... |
| CVE-2025-66325 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Permission control vulnerability in the package management module. Impact: Successful exploitation of this vulnerability... |
| CVE-2025-58279 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Permission control vulnerability in the media library module. Impact: Successful exploitation of this vulnerability may ... |
| CVE-2025-26489 | MEDIUM | 6.5 | 0.3% | Dec 8, 2025 | Improper input validation in the Netconf service in Infinera MTC-9 allows remote authenticated users to crash the servic... |
| CVE-2025-12956 | MEDIUM | 5.4 | 0.2% | Dec 8, 2025 | A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEX... |
| CVE-2025-66326 | MEDIUM | 4.7 | 0.1% | Dec 8, 2025 | Race condition vulnerability in the audio module. Impact: Successful exploitation of this vulnerability may affect avail... |
| CVE-2025-66324 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Input verification vulnerability in the compression and decompression module. Impact: Successful exploitation of this vu... |
| CVE-2025-66323 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Vulnerability of improper criterion security check in the card module. Impact: Successful exploitation of this vulnerabi... |
| CVE-2025-66322 | MEDIUM | 4.7 | 0.1% | Dec 8, 2025 | Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulner... |
| CVE-2025-66321 | MEDIUM | 4.7 | 0.1% | Dec 8, 2025 | Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulner... |
| CVE-2025-66320 | MEDIUM | 4.7 | 0.1% | Dec 8, 2025 | Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulner... |
| CVE-2025-14253 | MEDIUM | 6.9 | 0.4% | Dec 8, 2025 | Vitals ESP developed by Galaxy Software Services has an Arbitrary File Read vulnerability, allowing privileged remote at... |
| CVE-2025-14221 | MEDIUM | 5.4 | 0.2% | Dec 8, 2025 | A vulnerability was detected in SourceCodester Online Banking System 1.0. This impacts an unknown function of the file /... |
| CVE-2025-14220 | MEDIUM | 4.3 | 0.3% | Dec 8, 2025 | A security vulnerability has been detected in ORICO CD3510 1.9.12. This affects an unknown function of the component Fil... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now