2025 CVE Vulnerabilities
45,325 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-40087 | HIGH | 7.5 | 0.2% | Oct 30, 2025 | In the Linux kernel, the following vulnerability has been resolved: NFSD: Define a proc_layoutcommit for the FlexFiles ... |
| CVE-2025-62230 | HIGH | 7.3 | 0.3% | Oct 30, 2025 | A flaw was discovered in the X.Org X server’s X Keyboard (Xkb) extension when handling client resource cleanup. The soft... |
| CVE-2025-62229 | HIGH | 7.3 | 0.5% | Oct 30, 2025 | A flaw was found in the X.Org X server and Xwayland when processing X11 Present extension notifications. Improper error ... |
| CVE-2025-62231 | HIGH | 7.3 | 0.3% | Oct 30, 2025 | A flaw was identified in the X.Org X server’s X Keyboard (Xkb) extension where improper bounds checking in the XkbSetCom... |
| CVE-2025-9954 | HIGH | 7.5 | 0.3% | Oct 30, 2025 | Missing Authorization vulnerability in Drupal Acquia DAM allows Forceful Browsing.This issue affects Acquia DAM: from 0.... |
| CVE-2025-12466 | HIGH | 7.5 | 0.3% | Oct 30, 2025 | Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Simple OAuth (OAuth2) & OpenID Connect ... |
| CVE-2025-12082 | HIGH | 7.5 | 0.3% | Oct 30, 2025 | Incorrect Authorization vulnerability in Drupal CivicTheme Design System allows Forceful Browsing.This issue affects Civ... |
| CVE-2025-61725 | HIGH | 7.5 | 0.6% | Oct 29, 2025 | The ParseAddress function constructs domain-literal address components through repeated string concatenation. When parsi... |
| CVE-2025-61723 | HIGH | 7.5 | 0.6% | Oct 29, 2025 | The processing time for parsing some invalid inputs scales non-linearly with respect to the size of the input. This affe... |
| CVE-2025-58188 | HIGH | 7.5 | 0.4% | Oct 29, 2025 | Validating certificate chains which contain DSA public keys can cause programs to panic, due to a interface cast that as... |
| CVE-2025-58187 | HIGH | 7.5 | 0.4% | Oct 29, 2025 | Due to the design of the name constraint checking algorithm, the processing time of some inputs scale non-linearly with ... |
| CVE-2025-54546 | HIGH | 7.5 | 0.2% | Oct 29, 2025 | On affected platforms, restricted users could use SSH port forwarding to access host-internal services |
| CVE-2025-54545 | HIGH | 7.8 | 0.1% | Oct 29, 2025 | On affected platforms, a restricted user could break out of the CLI sandbox to the system shell and elevate their privil... |
| CVE-2025-54459 | HIGH | 8.7 | 0.4% | Oct 29, 2025 | Prior to September 19, 2025, the Hospital Manager Backend Services exposed the ASP.NET tracing endpoint /trace.axd witho... |
| CVE-2025-9871 | HIGH | 7.8 | 0.2% | Oct 29, 2025 | Razer Synapse 3 Chroma Connect Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local ... |
| CVE-2025-9870 | HIGH | 7.8 | 0.2% | Oct 29, 2025 | Razer Synapse 3 RazerPhilipsHueUninstall Link Following Local Privilege Escalation Vulnerability. This vulnerability all... |
| CVE-2025-9869 | HIGH | 7.8 | 0.2% | Oct 29, 2025 | Razer Synapse 3 Macro Module Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local at... |
| CVE-2025-11465 | HIGH | 7.8 | 0.2% | Oct 29, 2025 | Ashlar-Vellum Cobalt CO File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remot... |
| CVE-2025-11464 | HIGH | 7.8 | 0.2% | Oct 29, 2025 | Ashlar-Vellum Cobalt CO File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability ... |
| CVE-2025-11463 | HIGH | 7.8 | 0.2% | Oct 29, 2025 | Ashlar-Vellum Cobalt XE File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows rem... |
| CVE-2025-10934 | HIGH | 7.8 | 0.5% | Oct 29, 2025 | GIMP XWD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote a... |
| CVE-2025-10925 | HIGH | 7.8 | 2.8% | Oct 29, 2025 | GIMP ILBM File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote... |
| CVE-2025-10924 | HIGH | 7.8 | 0.4% | Oct 29, 2025 | GIMP FF File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to... |
| CVE-2025-10923 | HIGH | 7.8 | 0.4% | Oct 29, 2025 | GIMP WBMP File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers ... |
| CVE-2025-10922 | HIGH | 7.8 | 0.6% | Oct 29, 2025 | GIMP DCM File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote a... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now