2025 CVE Vulnerabilities
45,324 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-48591 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | In multiple locations, there is a possible way to read files from another user due to a missing permission check. This c... |
| CVE-2025-48590 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | In verifyAndGetBypass of AppOpsService.java, there is a possible method for a malicious app to prevent dialing emergency... |
| CVE-2025-48584 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | In multiple functions of NotificationManagerService.java, there is a possible way to bypass the per-package channel limi... |
| CVE-2025-48576 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | In updateNotificationChannelGroupFromPrivilegedListener of NotificationManagerService.java, there is a possible permanen... |
| CVE-2025-32319 | MEDIUM | 6.7 | 0.1% | Dec 8, 2025 | In ensureBound of RemotePrintService.java, there is a possible way for a background app to keep foreground permissions d... |
| CVE-2025-22432 | MEDIUM | 6.7 | 0.1% | Dec 8, 2025 | In notifyTimeout of CallRedirectionProcessor.java, there is a possible persistent connection due to improper input valid... |
| CVE-2025-65798 | MEDIUM | 5.4 | 0.2% | Dec 8, 2025 | Incorrect access control in usememos memos v0.25.2 allows attackers with low-level privileges to arbitrarily modify or d... |
| CVE-2025-65796 | MEDIUM | 4.3 | 0.2% | Dec 8, 2025 | Incorrect access control in usememos memos v0.25.2 allows attackers with low-level privileges to arbitrarily delete reac... |
| CVE-2025-14244 | MEDIUM | 4.8 | 0.2% | Dec 8, 2025 | A flaw has been found in GreenCMS 2.3.0603. Affected by this issue is some unknown functionality of the file /Admin/Cont... |
| CVE-2025-14262 | MEDIUM | 4.3 | 0.2% | Dec 8, 2025 | A wrong permission check in KNIME Business Hub before version 1.17.0 allowed an authenticated user to save jobs of other... |
| CVE-2025-66334 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may a... |
| CVE-2025-66333 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may a... |
| CVE-2025-66332 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may a... |
| CVE-2025-66331 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Denial of service (DoS) vulnerability in the office service. Impact: Successful exploitation of this vulnerability may a... |
| CVE-2025-66330 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | App lock verification bypass vulnerability in the file management app. Impact: Successful exploitation of this vulnerabi... |
| CVE-2025-66329 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Permission control vulnerability in the window management module. Impact: Successful exploitation of this vulnerability ... |
| CVE-2025-66328 | MEDIUM | 4.7 | 0.1% | Dec 8, 2025 | Multi-thread race condition vulnerability in the network management module. Impact: Successful exploitation of this vuln... |
| CVE-2025-66327 | MEDIUM | 4.7 | 0.1% | Dec 8, 2025 | Race condition vulnerability in the network module. Impact: Successful exploitation of this vulnerability may affect ser... |
| CVE-2025-66325 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Permission control vulnerability in the package management module. Impact: Successful exploitation of this vulnerability... |
| CVE-2025-58279 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Permission control vulnerability in the media library module. Impact: Successful exploitation of this vulnerability may ... |
| CVE-2025-26489 | MEDIUM | 6.5 | 0.3% | Dec 8, 2025 | Improper input validation in the Netconf service in Infinera MTC-9 allows remote authenticated users to crash the servic... |
| CVE-2025-12956 | MEDIUM | 5.4 | 0.2% | Dec 8, 2025 | A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEX... |
| CVE-2025-66326 | MEDIUM | 4.7 | 0.1% | Dec 8, 2025 | Race condition vulnerability in the audio module. Impact: Successful exploitation of this vulnerability may affect avail... |
| CVE-2025-66324 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Input verification vulnerability in the compression and decompression module. Impact: Successful exploitation of this vu... |
| CVE-2025-66323 | MEDIUM | 5.5 | 0.1% | Dec 8, 2025 | Vulnerability of improper criterion security check in the card module. Impact: Successful exploitation of this vulnerabi... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now