2025 CVE Vulnerabilities

45,146 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-9611HIGH7.2Microsoft Playwright MCP Server versions prior to 0.0.40 fails to validate the Origin header on incoming connections. Th...
CVE-2025-69344MEDIUM4.3Missing Authorization vulnerability in themehunk Oneline Lite oneline-lite allows Exploiting Incorrectly Configured Acce...
CVE-2025-69333MEDIUM4.3Missing Authorization vulnerability in Crocoblock JetEngine jet-engine allows Exploiting Incorrectly Configured Access C...
CVE-2025-69082HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Frenify Arlo arlo ...
CVE-2025-69081HIGH8.1Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2025-69080HIGH8.1Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in...
CVE-2025-68637CRITICAL9.1The Uniffle HTTP client is configured to trust all SSL certificates and disables hostname verification by default. This...
CVE-2025-47396HIGH7.8Memory corruption occurs when a secure application is launched on a device with insufficient memory.
CVE-2025-47395MEDIUM6.5Transient DOS while parsing a WLAN management frame with a Vendor Specific Information Element.
CVE-2025-47394HIGH7.8Memory corruption when copying overlapping buffers during memory operations due to incorrect offset calculations.
CVE-2025-47393HIGH7.8Memory corruption when accessing resources in kernel driver.
CVE-2025-47388HIGH7.8Memory corruption while passing pages to DSP with an unaligned starting address.
CVE-2025-47380HIGH7.8Memory corruption while preprocessing IOCTLs in sensors.
CVE-2025-47369MEDIUM5.5Information disclosure when a weak hashed value is returned to userland code in response to a IOCTL call to obtain a ses...
CVE-2025-47356HIGH7.8Memory Corruption when multiple threads concurrently access and modify shared resources.
CVE-2025-47348HIGH7.8Memory corruption while processing identity credential operations in the trusted application.
CVE-2025-47346HIGH7.8Memory corruption while processing a secure logging command in the trusted application.
CVE-2025-47345HIGH8.4Cryptographic issue may occur while encrypting license data.
CVE-2025-47344MEDIUM6.4Memory corruption while handling sensor utility operations.
CVE-2025-47343HIGH7.8Memory corruption while processing a video session to set video parameters.
CVE-2025-47339HIGH7.8Memory corruption while deinitializing a HDCP session.
CVE-2025-47337MEDIUM6.7Memory corruption while accessing a synchronization object during concurrent operations.
CVE-2025-47336MEDIUM6.7Memory corruption while performing sensor register read operations.
CVE-2025-47335MEDIUM6.7Memory corruption while parsing clock configuration data for a specific hardware type.
CVE-2025-47334MEDIUM6.7Memory corruption while processing shared command buffer packet between camera userspace and kernel.

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now