2025 CVE Vulnerabilities

45,145 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-59514HIGH7.8Improper privilege management in Microsoft Streaming Service allows an authorized attacker to elevate privileges locally...
CVE-2025-59512HIGH7.8Improper access control in Customer Experience Improvement Program (CEIP) allows an authorized attacker to elevate privi...
CVE-2025-59511HIGH7.8External control of file name or path in Windows WLAN Service allows an authorized attacker to elevate privileges locall...
CVE-2025-59508HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Speech allows an ...
CVE-2025-59507HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Speech allows an ...
CVE-2025-59506HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DirectX allows an...
CVE-2025-59505HIGH7.8Double free in Windows Smart Card allows an authorized attacker to elevate privileges locally.
CVE-2025-59504HIGH7.3Heap-based buffer overflow in Azure Monitor Agent allows an unauthorized attacker to execute code locally.
CVE-2025-59499HIGH8.8Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized ...
CVE-2025-30398HIGH8.1Missing authorization in Nuance PowerScribe allows an unauthorized attacker to disclose information over a network.
CVE-2025-61832HIGH7.8InDesign Desktop versions 20.5, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could...
CVE-2025-61824HIGH7.8InDesign Desktop versions 20.5, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could...
CVE-2025-61818HIGH7.8InCopy versions 20.5, 19.5.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary c...
CVE-2025-61817HIGH7.8InCopy versions 20.5, 19.5.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary c...
CVE-2025-61816HIGH7.8InCopy versions 20.5, 19.5.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in...
CVE-2025-61815HIGH7.8InDesign Desktop versions 20.5, 19.5.5 and earlier are affected by a Use After Free vulnerability that could result in a...
CVE-2025-61814HIGH7.8InDesign Desktop versions 20.5, 19.5.5 and earlier are affected by a Use After Free vulnerability that could result in a...
CVE-2025-35971HIGH8.3Out-of-bounds write for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.160 within Ring 2: Dev...
CVE-2025-35968HIGH7.1Protection mechanism failure in the UEFI firmware for the Slim Bootloader within firmware may allow an escalation of pri...
CVE-2025-35967HIGH7.4Out-of-bounds read for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.160 within Ring 2: Devi...
CVE-2025-35963HIGH8.3Insufficient control flow management for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.160 w...
CVE-2025-33186HIGH8.8NVIDIA AIStore contains a vulnerability in AuthN. A successful exploit of this vulnerability might lead to escalation of...
CVE-2025-33178HIGH7.8NVIDIA NeMo Framework for all platforms contains a vulnerability in the bert services component where malicious data cre...
CVE-2025-33029HIGH8.3Out-of-bounds write for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.160 within Ring 2: Dev...
CVE-2025-33000HIGH8.8Improper input validation for some Intel QuickAssist Technology before version 2.6.0 within Ring 3: User Applications ma...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now