2025 CVE Vulnerabilities

45,145 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-32091HIGH8.4Incorrect default permissions in some firmware for the Intel(R) Arc(TM) B-series GPUs within Ring 1: Device Drivers may ...
CVE-2025-30255HIGH8.3Out-of-bounds write for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.160 within Ring 2: Dev...
CVE-2025-30185HIGH8.3Active debug code for some Intel UEFI reference platforms within Ring 0: Kernel may allow a denial of service and escala...
CVE-2025-27713HIGH7.8Out-of-bounds write for some Intel(R) QAT Windows software before version 2.6.0. within Ring 3: User Applications may al...
CVE-2025-24838HIGH8.8Improper privilege management for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within Ring 3: User Appl...
CVE-2025-24299HIGH8.8Improper input validation for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within Ring 3: User Applicat...
CVE-2025-23361HIGH7.8NVIDIA NeMo Framework for all platforms contains a vulnerability in a script, where malicious input created by an attack...
CVE-2025-23357HIGH7.8NVIDIA Megatron-LM for all platforms contains a vulnerability in a script, where malicious data created by an attacker m...
CVE-2025-20010HIGH8.5Use of unmaintained third party components for some Intel(R) Processor Identification Utility before version 8.0.43 with...
CVE-2025-13032HIGH7.8Double fetch in sandbox kernel driver in Avast/AVG Antivirus <25.3  on windows allows local attacker to escalate privela...
CVE-2025-12944HIGH8.8Improper input validation in NETGEAR DGN2200v4 (N300 Wireless ADSL2+ Modem Router) allows attackers with direct network ...
CVE-2025-12943HIGH7.5Improper certificate validation in firmware update logic in NETGEAR RAX30 (Nighthawk AX5 5-Stream AX2400 WiFi 6 Router) ...
CVE-2025-12942HIGH7.5Improper Input Validation vulnerability in NETGEAR R6260 and NETGEAR R6850 allows unauthenticated attackers connected to...
CVE-2025-9408HIGH8.1System call entry on Cortex M (and possibly R and A, but I think not) has a race which allows very practical privilege e...
CVE-2025-13027HIGH8.1Memory safety bugs present in Firefox 144 and Thunderbird 144. Some of these bugs showed evidence of memory corruption a...
CVE-2025-13025HIGH7.5Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 145 and Thunder...
CVE-2025-13020HIGH8.8Use-after-free in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Thu...
CVE-2025-13019HIGH8.1Same-origin policy bypass in the DOM: Workers component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5,...
CVE-2025-13018HIGH8.1Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Thunde...
CVE-2025-13017HIGH8.1Same-origin policy bypass in the DOM: Notifications component. This vulnerability was fixed in Firefox 145, Firefox ESR ...
CVE-2025-13016HIGH7.5Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 145, Fir...
CVE-2025-13014HIGH8.8Use-after-free in the Audio/Video component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Firefox ESR...
CVE-2025-13012HIGH7.5Race condition in the Graphics component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Firefox ESR 11...
CVE-2025-10918HIGH7.1Insecure default permissions in the agent of Ivanti Endpoint Manager before version 2024 SU4 allows a local authenticate...
CVE-2025-11959HIGH8.1Files or Directories Accessible to External Parties, Exposure of Private Personal Information to an Unauthorized Actor v...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now