2025 CVE Vulnerabilities

45,325 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-24237CRITICAL9.8A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 1...
CVE-2025-24233CRITICAL9.8A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma ...
CVE-2025-24232CRITICAL9.8This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7...
CVE-2025-24231CRITICAL9.8The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Vent...
CVE-2025-24230CRITICAL9.8An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in iOS 18.4 and iPadOS 18....
CVE-2025-24211CRITICAL9.8This issue was addressed with improved memory handling. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, ...
CVE-2025-24207CRITICAL9.8A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma ...
CVE-2025-24204CRITICAL9.8The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4. An app may be able to access pr...
CVE-2025-24195CRITICAL9.8An integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.4, macOS Sonom...
CVE-2025-24190CRITICAL9.8The issue was addressed with improved memory handling. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.6, m...
CVE-2025-24181CRITICAL9.8A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma ...
CVE-2025-24178CRITICAL9.8This issue was addressed through improved state management. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7...
CVE-2025-24172CRITICAL9.8A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.4, macOS...
CVE-2025-24167CRITICAL9.8This issue was addressed through improved state management. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4...
CVE-2025-31691CRITICAL9.8Missing Authorization vulnerability in Drupal OAuth2 Server allows Forceful Browsing.This issue affects OAuth2 Server: f...
CVE-2025-31685CRITICAL9.1Missing Authorization vulnerability in Drupal Open Social allows Forceful Browsing.This issue affects Open Social: from ...
CVE-2025-31681CRITICAL9.8Missing Authorization vulnerability in Drupal Authenticator Login allows Forceful Browsing.This issue affects Authentica...
CVE-2025-26683CRITICAL9.8Improper authorization in Azure Playwright allows an unauthorized attacker to elevate privileges over a network.
CVE-2025-3006CRITICAL9.8A vulnerability was found in PHPGurukul e-Diary Management System 1.0. It has been declared as critical. This vulnerabil...
CVE-2025-31122CRITICAL9scratch-coding-hut.github.io is the website for Coding Hut. In 1.0-beta3 and earlier, the login link can be used to logi...
CVE-2025-31116CRITICAL9.8Mobile Security Framework (MobSF) is a pen-testing, malware analysis and security assessment framework capable of perfor...
CVE-2025-30223CRITICAL9.6Beego is an open-source web framework for the Go programming language. Prior to 2.3.6, a Cross-Site Scripting (XSS) vuln...
CVE-2025-30095CRITICAL9VyOS 1.3 through 1.5 (fixed in 1.4.2) or any Debian-based system using dropbear in combination with live-build has the s...
CVE-2025-22941CRITICAL9.8A command injection vulnerability in the web interface of Adtran 411 ONT L80.00.0011.M2 allows attackers to escalate pri...
CVE-2025-22940CRITICAL9.1Incorrect access control in Adtran 411 ONT L80.00.0011.M2 allows unauthorized attackers to arbitrarily set the admin pas...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now