2025 CVE Vulnerabilities
45,143 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-20753 | MEDIUM | 5.3 | 0.4% | Dec 2, 2025 | In Modem, there is a possible system crash due to an uncaught exception. This could lead to remote denial of service, if... |
| CVE-2025-20752 | MEDIUM | 6.5 | 0.2% | Dec 2, 2025 | In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, i... |
| CVE-2025-20751 | MEDIUM | 6.5 | 0.2% | Dec 2, 2025 | In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, i... |
| CVE-2025-20750 | MEDIUM | 6.5 | 0.2% | Dec 2, 2025 | In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service... |
| CVE-2025-13697 | MEDIUM | 6.4 | 0.2% | Dec 2, 2025 | The BlockArt Blocks – Gutenberg Blocks, Page Builder Blocks ,WordPress Block Plugin, Sections & Template Library plugin ... |
| CVE-2025-58488 | MEDIUM | 6.5 | 0.4% | Dec 2, 2025 | Improper verification of source of a communication channel in SmartTouchCall prior to version 1.0.1.1 allows remote atta... |
| CVE-2025-58486 | MEDIUM | 5.5 | 0.1% | Dec 2, 2025 | Improper input validation in Samsung Account prior to version 15.5.01.1 allows local attacker to execute arbitrary scrip... |
| CVE-2025-58485 | MEDIUM | 5.5 | 0.1% | Dec 2, 2025 | Improper input validation in Samsung Internet prior to version 29.0.0.48 allows local attackers to inject arbitrary scri... |
| CVE-2025-58484 | MEDIUM | 4 | 0.1% | Dec 2, 2025 | Incorrect default permissions in Samsung Cloud Assistant prior to version 8.0.03.8 allows local attacker to access parti... |
| CVE-2025-58477 | MEDIUM | 6.5 | 0.2% | Dec 2, 2025 | Out-of-bounds write in parsing IFD tag in libimagecodec.quram.so prior to SMR Dec-2025 Release 1 allows remote attackers... |
| CVE-2025-58476 | MEDIUM | 4.6 | 0.1% | Dec 2, 2025 | Out-of-bounds read vulnerability in bootloader prior to SMR Dec-2025 Release 1 allows physical attackers to access out-o... |
| CVE-2025-58475 | MEDIUM | 4.4 | 0.1% | Dec 2, 2025 | Improper input validation in libsec-ril.so prior to SMR Dec-2025 Release 1 allows local privileged attackers to write ou... |
| CVE-2025-55129 | MEDIUM | 5.4 | 0.2% | Dec 2, 2025 | HackerOne community member Kassem S.(kassem_s94) has reported that username handling in Revive Adserver was still vulner... |
| CVE-2025-21072 | MEDIUM | 4.4 | 0.1% | Dec 2, 2025 | Out-of-bounds write in decoding metadata in fingerprint trustlet prior to SMR Dec-2025 Release 1 allows local privileged... |
| CVE-2025-66415 | MEDIUM | 5.4 | 0.1% | Dec 1, 2025 | fastify-reply-from is a Fastify plugin to forward the current HTTP request to another server. Prior to 12.5.0, by crafti... |
| CVE-2025-66412 | MEDIUM | 5.4 | 0.4% | Dec 1, 2025 | Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other... |
| CVE-2025-66403 | MEDIUM | 5.4 | 0.2% | Dec 1, 2025 | FileRise is a self-hosted web-based file manager with multi-file upload, editing, and batch operations. Prior to 2.2.3, ... |
| CVE-2025-66400 | MEDIUM | 5.3 | 0.3% | Dec 1, 2025 | mdast-util-to-hast is an mdast utility to transform to hast. From 13.0.0 to before 13.2.1, multiple (unprefixed) classna... |
| CVE-2025-66312 | MEDIUM | 5.4 | 0.2% | Dec 1, 2025 | This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create ... |
| CVE-2025-66311 | MEDIUM | 5.4 | 0.2% | Dec 1, 2025 | This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create ... |
| CVE-2025-66310 | MEDIUM | 5.4 | 0.2% | Dec 1, 2025 | This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create ... |
| CVE-2025-66309 | MEDIUM | 6.1 | 0.2% | Dec 1, 2025 | This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create ... |
| CVE-2025-66308 | MEDIUM | 5.4 | 0.2% | Dec 1, 2025 | This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create ... |
| CVE-2025-66307 | MEDIUM | 5.3 | 0.3% | Dec 1, 2025 | This admin plugin for Grav is an HTML user interface that provides a convenient way to configure Grav and easily create ... |
| CVE-2025-66306 | MEDIUM | 6.5 | 0.3% | Dec 1, 2025 | Grav is a file-based Web platform. Prior to 1.8.0-beta.27, there is an IDOR (Insecure Direct Object Reference) vulnerabi... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now