2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-8961 | LOW | 3.3 | 0.2% | Aug 14, 2025 | A weakness has been identified in LibTIFF 4.7.0. This affects the function main of the file tiffcrop.c of the component ... |
| CVE-2025-8713 | LOW | 3.1 | 0.2% | Aug 14, 2025 | PostgreSQL optimizer statistics allow a user to read sampled data within a view that the user cannot access. Separately... |
| CVE-2025-5941 | LOW | 2 | 0.1% | Aug 14, 2025 | Netskope is notified about a potential gap in its agent (NS Client) in which a malicious actor could trigger a memory le... |
| CVE-2025-55193 | LOW | 2.7 | 0.5% | Aug 13, 2025 | Active Record connects classes to relational database tables. Prior to versions 7.1.5.2, 7.2.2.2, and 8.0.2.1, the ID pa... |
| CVE-2025-8927 | LOW | 3.7 | 0.6% | Aug 13, 2025 | A vulnerability was determined in mtons mblog up to 3.5.0. Affected by this issue is some unknown functionality of the f... |
| CVE-2025-32004 | LOW | 3.9 | 0.1% | Aug 12, 2025 | Improper input validation in the Intel Edger8r Tool for some Intel(R) SGX SDK may allow an authenticated user to potenti... |
| CVE-2025-27707 | LOW | 2.6 | 0.2% | Aug 12, 2025 | Exposure of sensitive information to an unauthorized actor for some Edge Orchestrator software before version 24.11.1 fo... |
| CVE-2025-27576 | LOW | 2.9 | 0.1% | Aug 12, 2025 | Uncontrolled resource consumption for some Edge Orchestrator software before version 24.11.1 for Intel(R) Tiber(TM) Edge... |
| CVE-2025-24511 | LOW | 3.3 | 0.1% | Aug 12, 2025 | Improper initialization in the Linux kernel-mode driver for some Intel(R) I350 Series Ethernet before version 5.19.2 may... |
| CVE-2025-24324 | LOW | 2.8 | 0.1% | Aug 12, 2025 | Integer overflow or wraparound in the Linux kernel-mode driver for some Intel(R) 800 Series Ethernet before version 1.17... |
| CVE-2025-22853 | LOW | 2.3 | 0.1% | Aug 12, 2025 | Improper synchronization in the firmware for some Intel(R) TDX may allow a privileged user to potentially enable escalat... |
| CVE-2025-21096 | LOW | 1.9 | 0.1% | Aug 12, 2025 | Improper buffer restrictions in the firmware for some Intel(R) TDX may allow a privileged user to potentially enable esc... |
| CVE-2025-20613 | LOW | 3.3 | 0.1% | Aug 12, 2025 | Predictable Seed in Pseudo-Random Number Generator (PRNG) in the firmware for some Intel(R) TDX may allow an authenticat... |
| CVE-2025-40570 | LOW | 2.4 | 0.2% | Aug 12, 2025 | A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V10.0), SIPROTEC 5 6MD85 (CP300) (All ve... |
| CVE-2025-42955 | LOW | 3.5 | 0.4% | Aug 12, 2025 | Due to a missing authorization check in SAP Cloud Connector, an attacker on an adjacent network with low privileges coul... |
| CVE-2025-42941 | LOW | 3.5 | 0.2% | Aug 12, 2025 | SAP Fiori (Launchpad) is vulnerable to Reverse Tabnabbing vulnerability due to inadequate external navigation protection... |
| CVE-2025-53857 | LOW | 3.7 | 0.2% | Aug 11, 2025 | Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the channel which allows attackers ... |
| CVE-2025-49221 | LOW | 3.7 | 0.2% | Aug 11, 2025 | Mattermost Confluence Plugin version <1.5.0 fails to enforce authentication of the user to the Mattermost instance which... |
| CVE-2025-8836 | LOW | 3.3 | 0.2% | Aug 11, 2025 | A vulnerability was determined in JasPer up to 4.2.5. Affected by this issue is the function jpc_floorlog2 of the file s... |
| CVE-2025-8834 | LOW | 2.4 | 0.3% | Aug 11, 2025 | A vulnerability has been found in JCG Link-net LW-N915R 17s.20.001.908. Affected is an unknown function of the file /wir... |
| CVE-2025-52136 | LOW | 3 | 0.3% | Aug 10, 2025 | In EMQX before 5.8.6, administrators can install arbitrary novel plugins via the Dashboard web interface. NOTE: the Supp... |
| CVE-2025-8765 | LOW | 3.5 | 0.2% | Aug 9, 2025 | A vulnerability classified as problematic was found in Datacom DM955 5GT 1200 825.8010.00. Affected by this vulnerabilit... |
| CVE-2025-54999 | LOW | 3.7 | 0.2% | Aug 9, 2025 | OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certifi... |
| CVE-2025-55188 | LOW | 3.6 | 0.7% | Aug 8, 2025 | 7-Zip before 25.01 does not always properly handle symbolic links during extraction. |
| CVE-2025-8737 | LOW | 3.5 | 0.2% | Aug 8, 2025 | A vulnerability, which was classified as problematic, was found in zlt2000 microservices-platform up to 6.0.0. This affe... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now