2025 CVE Vulnerabilities

45,145 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-46422HIGH7.8Dell Unity, version(s) 5.5 and prior, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('...
CVE-2025-43942HIGH7.8Dell Unity, version(s) 5.5 and prior, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('...
CVE-2025-43941HIGH7.8Dell Unity, version(s) 5.5 and Prior, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('...
CVE-2025-43940HIGH7.8Dell Unity, version(s) 5.5 and Prior, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('...
CVE-2025-43939HIGH7.8Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('...
CVE-2025-53880HIGH8.7A Path Traversal vulnerability in the tftpsync/add and tftpsync/delete scripts allows a remote attacker on an adjacent n...
CVE-2025-39663HIGH8.4Cross-Site Scripting (XSS) vulnerability in Checkmk's distributed monitoring allows a compromised remote site to inject ...
CVE-2025-54470HIGH8.6This vulnerability affects NeuVector deployments only when the Report anonymous cluster data option is enabled. When thi...
CVE-2025-40105HIGH7.8In the Linux kernel, the following vulnerability has been resolved: vfs: Don't leak disconnected dentries on umount Wh...
CVE-2025-40104HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ixgbevf: fix mailbox API compatibility by negotiati...
CVE-2025-40096HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/sched: Fix potential double free in drm_sched_j...
CVE-2025-40095HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_rndis: Refactor bind path to use __f...
CVE-2025-40094HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_acm: Refactor bind path to use __fre...
CVE-2025-40093HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_ecm: Refactor bind path to use __fre...
CVE-2025-40092HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_ncm: Refactor bind path to use __fre...
CVE-2025-40088HIGH7.1In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix slab-out-of-bounds read in hfsplus_str...
CVE-2025-40087HIGH7.5In the Linux kernel, the following vulnerability has been resolved: NFSD: Define a proc_layoutcommit for the FlexFiles ...
CVE-2025-62230HIGH7.3A flaw was discovered in the X.Org X server’s X Keyboard (Xkb) extension when handling client resource cleanup. The soft...
CVE-2025-62229HIGH7.3A flaw was found in the X.Org X server and Xwayland when processing X11 Present extension notifications. Improper error ...
CVE-2025-62231HIGH7.3A flaw was identified in the X.Org X server’s X Keyboard (Xkb) extension where improper bounds checking in the XkbSetCom...
CVE-2025-9954HIGH7.5Missing Authorization vulnerability in Drupal Acquia DAM allows Forceful Browsing.This issue affects Acquia DAM: from 0....
CVE-2025-12466HIGH7.5Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Simple OAuth (OAuth2) & OpenID Connect ...
CVE-2025-12082HIGH7.5Incorrect Authorization vulnerability in Drupal CivicTheme Design System allows Forceful Browsing.This issue affects Civ...
CVE-2025-61725HIGH7.5The ParseAddress function constructs domain-literal address components through repeated string concatenation. When parsi...
CVE-2025-61723HIGH7.5The processing time for parsing some invalid inputs scales non-linearly with respect to the size of the input. This affe...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now