2025 CVE Vulnerabilities

45,325 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-20728HIGH7.8In wlan STA driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local e...
CVE-2025-20727HIGH8.1In Modem, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote escalation of...
CVE-2025-20726HIGH7.5In Modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation...
CVE-2025-20725HIGH7.5In ims service, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalat...
CVE-2025-11890HIGH7.5The Crypto Payment Gateway with Payeer for WooCommerce plugin for WordPress is vulnerable to payment bypass in all versi...
CVE-2025-11733HIGH7.2The Footnotes Made Easy plugin for WordPress is vulnerable to Stored Cross-Site Scripting via plugin settings in all ver...
CVE-2025-11724HIGH8.8The EM Beer Manager plugin for WordPress is vulnerable to arbitrary file upload leading to remote code execution in all ...
CVE-2025-11704HIGH7.5The Elegance Menu plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.9 v...
CVE-2025-10896HIGH8.8Multiple plugins for WordPress with the Jewel Theme Recommended Plugins Library are vulnerable to Unrestricted Upload of...
CVE-2025-47368HIGH7.8Memory corruption when dereferencing an invalid userspace address in a user buffer during MCDM IOCTL processing.
CVE-2025-47367HIGH7.8Memory corruption while accessing a buffer during IOCTL processing.
CVE-2025-47365HIGH7.8Memory corruption while processing large input data from a remote source via a communication interface.
CVE-2025-47361HIGH7.8Memory corruption when triggering a subsystem crash with an out-of-range identifier.
CVE-2025-47360HIGH7.8Memory corruption while processing client message during device management.
CVE-2025-47357HIGH7.8Information Disclosure when a user-level driver performs QFPROM read or write operations on Fuse regions.
CVE-2025-47353HIGH7.8Memory corruption while processing request sent from GVM.
CVE-2025-47352HIGH7.8Memory corruption while processing audio streaming operations.
CVE-2025-27074HIGH7.8Memory corruption while processing a GP command response.
CVE-2025-27070HIGH7.8Memory corruption while performing encryption and decryption commands.
CVE-2025-43505HIGH8.8An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in Xcode 26.1. Processing...
CVE-2025-43502HIGH7.5A privacy issue was addressed by removing sensitive data. This issue is fixed in Safari 26.1, iOS 26.1 and iPadOS 26.1, ...
CVE-2025-43500HIGH7.5A privacy issue was addressed with improved handling of user preferences. This issue is fixed in iOS 26.1 and iPadOS 26....
CVE-2025-43496HIGH7.5The issue was addressed by adding additional logic. This issue is fixed in iOS 18.7.2 and iPadOS 18.7.2, iOS 26.1 and iP...
CVE-2025-43480HIGH8.1The issue was addressed with improved checks. This issue is fixed in Safari 26.1, iOS 26.1 and iPadOS 26.1, macOS Tahoe ...
CVE-2025-43476HIGH7.8A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.2, macOS Sonom...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now