2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-32091 | HIGH | 8.4 | 0.1% | Nov 11, 2025 | Incorrect default permissions in some firmware for the Intel(R) Arc(TM) B-series GPUs within Ring 1: Device Drivers may ... |
| CVE-2025-30255 | HIGH | 8.3 | 0.2% | Nov 11, 2025 | Out-of-bounds write for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.160 within Ring 2: Dev... |
| CVE-2025-30185 | HIGH | 8.3 | 0.1% | Nov 11, 2025 | Active debug code for some Intel UEFI reference platforms within Ring 0: Kernel may allow a denial of service and escala... |
| CVE-2025-27713 | HIGH | 7.8 | 0.1% | Nov 11, 2025 | Out-of-bounds write for some Intel(R) QAT Windows software before version 2.6.0. within Ring 3: User Applications may al... |
| CVE-2025-24838 | HIGH | 8.8 | 0.2% | Nov 11, 2025 | Improper privilege management for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within Ring 3: User Appl... |
| CVE-2025-24299 | HIGH | 8.8 | 0.3% | Nov 11, 2025 | Improper input validation for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within Ring 3: User Applicat... |
| CVE-2025-23361 | HIGH | 7.8 | 0.2% | Nov 11, 2025 | NVIDIA NeMo Framework for all platforms contains a vulnerability in a script, where malicious input created by an attack... |
| CVE-2025-23357 | HIGH | 7.8 | 0.4% | Nov 11, 2025 | NVIDIA Megatron-LM for all platforms contains a vulnerability in a script, where malicious data created by an attacker m... |
| CVE-2025-20010 | HIGH | 8.5 | 0.2% | Nov 11, 2025 | Use of unmaintained third party components for some Intel(R) Processor Identification Utility before version 8.0.43 with... |
| CVE-2025-13032 | HIGH | 7.8 | 0.2% | Nov 11, 2025 | Double fetch in sandbox kernel driver in Avast/AVG Antivirus <25.3 on windows allows local attacker to escalate privela... |
| CVE-2025-12944 | HIGH | 8.8 | 0.2% | Nov 11, 2025 | Improper input validation in NETGEAR DGN2200v4 (N300 Wireless ADSL2+ Modem Router) allows attackers with direct network ... |
| CVE-2025-12943 | HIGH | 7.5 | 0.1% | Nov 11, 2025 | Improper certificate validation in firmware update logic in NETGEAR RAX30 (Nighthawk AX5 5-Stream AX2400 WiFi 6 Router) ... |
| CVE-2025-12942 | HIGH | 7.5 | 0.3% | Nov 11, 2025 | Improper Input Validation vulnerability in NETGEAR R6260 and NETGEAR R6850 allows unauthenticated attackers connected to... |
| CVE-2025-9408 | HIGH | 8.1 | 0.1% | Nov 11, 2025 | System call entry on Cortex M (and possibly R and A, but I think not) has a race which allows very practical privilege e... |
| CVE-2025-13027 | HIGH | 8.1 | 0.3% | Nov 11, 2025 | Memory safety bugs present in Firefox 144 and Thunderbird 144. Some of these bugs showed evidence of memory corruption a... |
| CVE-2025-13025 | HIGH | 7.5 | 0.2% | Nov 11, 2025 | Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 145 and Thunder... |
| CVE-2025-13020 | HIGH | 8.8 | 0.2% | Nov 11, 2025 | Use-after-free in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Thu... |
| CVE-2025-13019 | HIGH | 8.1 | 0.2% | Nov 11, 2025 | Same-origin policy bypass in the DOM: Workers component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5,... |
| CVE-2025-13018 | HIGH | 8.1 | 0.2% | Nov 11, 2025 | Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Thunde... |
| CVE-2025-13017 | HIGH | 8.1 | 0.2% | Nov 11, 2025 | Same-origin policy bypass in the DOM: Notifications component. This vulnerability was fixed in Firefox 145, Firefox ESR ... |
| CVE-2025-13016 | HIGH | 7.5 | 0.4% | Nov 11, 2025 | Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 145, Fir... |
| CVE-2025-13014 | HIGH | 8.8 | 0.2% | Nov 11, 2025 | Use-after-free in the Audio/Video component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Firefox ESR... |
| CVE-2025-13012 | HIGH | 7.5 | 0.2% | Nov 11, 2025 | Race condition in the Graphics component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Firefox ESR 11... |
| CVE-2025-10918 | HIGH | 7.1 | 0.2% | Nov 11, 2025 | Insecure default permissions in the agent of Ivanti Endpoint Manager before version 2024 SU4 allows a local authenticate... |
| CVE-2025-11959 | HIGH | 8.1 | 0.2% | Nov 11, 2025 | Files or Directories Accessible to External Parties, Exposure of Private Personal Information to an Unauthorized Actor v... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now