2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-52613 | HIGH | 8.8 | 0.2% | May 6, 2026 | HCL BigFix Service Management (SM) is affected by use of a vulnerable WSGI Server was identified. Deploying an outdated ... |
| CVE-2025-31976 | HIGH | 7.5 | 0.2% | May 6, 2026 | HCL BigFix Service Management (SM) is vulnerable to insufficiently protected credentials for a short duration while comm... |
| CVE-2025-31951 | HIGH | 8.8 | 0.2% | May 6, 2026 | HCL BigFix RunBookAI is affected by a Unvalidated Command Input / Potential Command Smuggling vulnerability. A flaw in a... |
| CVE-2025-71256 | HIGH | 7.5 | 0.3% | May 6, 2026 | In nr modem, there is a possible improper input validation. This could lead to remote denial of service with no addition... |
| CVE-2025-71255 | HIGH | 7.5 | 0.3% | May 6, 2026 | In Modem IMS, there is a possible improper input validation. This could lead to remote denial of service with no additio... |
| CVE-2025-71254 | HIGH | 7.5 | 0.3% | May 6, 2026 | In Modem IMS, there is a possible improper input validation. This could lead to remote denial of service with no additio... |
| CVE-2025-71253 | HIGH | 7.5 | 0.3% | May 6, 2026 | In Modem IMS, there is a possible improper input validation. This could lead to remote denial of service with no additio... |
| CVE-2025-71252 | HIGH | 7.5 | 0.3% | May 6, 2026 | In Modem IMS, there is a possible improper input validation. This could lead to remote denial of service with no additio... |
| CVE-2025-71251 | HIGH | 7.5 | 0.3% | May 6, 2026 | In IMS, there is a possible system crash due to improper input validation. This could lead to remote denial of service w... |
| CVE-2025-66369 | HIGH | 7.5 | 0.3% | May 5, 2026 | An issue was discovered in MM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 2100, 128... |
| CVE-2025-67796 | HIGH | 8.1 | 0.2% | May 4, 2026 | IKUS Rdiffweb before 2.10.5 has an improper authorization flaw that allows an attacker with any valid or stolen access t... |
| CVE-2025-47408 | HIGH | 7.8 | 0.1% | May 4, 2026 | Memory corruption when another driver calls an IOCTL with invalid input/output buffer. |
| CVE-2025-47407 | HIGH | 7 | 0.1% | May 4, 2026 | Memory corruption while creating a process on the digital signal processor due to allocation failure at the kernel level... |
| CVE-2025-47405 | HIGH | 7.8 | 0.1% | May 4, 2026 | Memory corruption when processing camera sensor input/output control codes with invalid output buffers. |
| CVE-2025-47404 | HIGH | 7.8 | 0.1% | May 4, 2026 | Memory corruption when dynamically changing the size of a previously allocated buffer while its contents are being modif... |
| CVE-2025-47403 | HIGH | 7.5 | 0.2% | May 4, 2026 | Transient DOS when processing a malformed Fast Transition response frame with an invalid header structure during wireles... |
| CVE-2025-47401 | HIGH | 7.5 | 0.2% | May 4, 2026 | Transient DOS when processing target power rate tables during channel configuration. |
| CVE-2025-70069 | HIGH | 7.5 | 0.4% | May 4, 2026 | An issue in Assimp v.6.0.2 allows a remote attacker to cause a denial of service via the FBXConverter.cpp and ConvertMes... |
| CVE-2025-58074 | HIGH | 8.8 | 0.1% | May 4, 2026 | A privilege escalation vulnerability exists during the installation of Norton Secure VPN via the Microsoft Store. A low-... |
| CVE-2025-52347 | HIGH | 7.8 | 0.1% | May 1, 2026 | An issue in the component DirectIo64.sys of PassMark BurnInTest v11.0 Build 1011, OSForensics v11.1 Build 1007, and Perf... |
| CVE-2025-63548 | HIGH | 7.5 | 0.3% | May 1, 2026 | An issue in Eprosima Micro-XREC-DDS Agent v.3.0.1 allows a remote attacker to cause a denial of service via a packet spe... |
| CVE-2025-63547 | HIGH | 7.5 | 0.4% | May 1, 2026 | An issue in Eprosima Micro-XREC-DDS Agent v.3.0.1 allows a remote attacker to cause a denial of service via a crafted pa... |
| CVE-2025-36180 | HIGH | 7.5 | 0.2% | Apr 30, 2026 | IBM watsonx.data 2.2 through 2.3 IBM Lakehouse does not properly restrict communication between pods which could allow a... |
| CVE-2025-56568 | HIGH | 7.5 | 0.3% | Apr 30, 2026 | Assertion failure vulnerability in the PCO (Protocol Configuration Options) parser in the SMF (Session Management Functi... |
| CVE-2025-46115 | HIGH | 7.5 | 0.3% | Apr 30, 2026 | An issue in open5gs v.2.7.3 allows a remote attacker to cause a denial of service via a crafted PDU Session Modification... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now