2025 CVE Vulnerabilities

45,144 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-40763HIGH8.5A vulnerability has been identified in Altair Grid Engine (All versions < V2026.0.0). Affected products do not properly ...
CVE-2025-40744HIGH8.7A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 11). Affected applications do not...
CVE-2025-61839HIGH7.8Format Plugins versions 1.1.1 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted fil...
CVE-2025-61838HIGH7.8Format Plugins versions 1.1.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result i...
CVE-2025-61837HIGH7.8Format Plugins versions 1.1.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result i...
CVE-2025-61830HIGH7.1Adobe Pass versions 3.7.3 and earlier are affected by an Incorrect Authorization vulnerability. An attacker could levera...
CVE-2025-62452HIGH8Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute ...
CVE-2025-62222HIGH8.8Improper neutralization of special elements used in a command ('command injection') in Visual Studio Code CoPilot Chat E...
CVE-2025-62220HIGH8.8Heap-based buffer overflow in Windows Subsystem for Linux GUI allows an unauthorized attacker to execute code over a net...
CVE-2025-62219HIGH7Double free in Microsoft Wireless Provisioning System allows an authorized attacker to elevate privileges locally.
CVE-2025-62218HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Wireless Provis...
CVE-2025-62217HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Functio...
CVE-2025-62216HIGH7.8Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2025-62215HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Kernel allows an ...
CVE-2025-62213HIGH7Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loca...
CVE-2025-62211HIGH8.7Improper neutralization of input during web page generation ('cross-site scripting') in Dynamics 365 Field Service (onli...
CVE-2025-62210HIGH8.7Improper neutralization of input during web page generation ('cross-site scripting') in Dynamics 365 Field Service (onli...
CVE-2025-62205HIGH7.8Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2025-62204HIGH8Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a ne...
CVE-2025-62203HIGH7.8Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2025-62202HIGH7.1Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2025-62201HIGH7.8Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2025-62200HIGH7.8Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2025-62199HIGH7.8Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2025-61836HIGH7.8Illustrator on iPad versions 3.0.9 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability t...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now