2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2025-8961LOW3.3A weakness has been identified in LibTIFF 4.7.0. This affects the function main of the file tiffcrop.c of the component ...
CVE-2025-8713LOW3.1PostgreSQL optimizer statistics allow a user to read sampled data within a view that the user cannot access. Separately...
CVE-2025-5941LOW2Netskope is notified about a potential gap in its agent (NS Client) in which a malicious actor could trigger a memory le...
CVE-2025-55193LOW2.7Active Record connects classes to relational database tables. Prior to versions 7.1.5.2, 7.2.2.2, and 8.0.2.1, the ID pa...
CVE-2025-8927LOW3.7A vulnerability was determined in mtons mblog up to 3.5.0. Affected by this issue is some unknown functionality of the f...
CVE-2025-32004LOW3.9Improper input validation in the Intel Edger8r Tool for some Intel(R) SGX SDK may allow an authenticated user to potenti...
CVE-2025-27707LOW2.6Exposure of sensitive information to an unauthorized actor for some Edge Orchestrator software before version 24.11.1 fo...
CVE-2025-27576LOW2.9Uncontrolled resource consumption for some Edge Orchestrator software before version 24.11.1 for Intel(R) Tiber(TM) Edge...
CVE-2025-24511LOW3.3Improper initialization in the Linux kernel-mode driver for some Intel(R) I350 Series Ethernet before version 5.19.2 may...
CVE-2025-24324LOW2.8Integer overflow or wraparound in the Linux kernel-mode driver for some Intel(R) 800 Series Ethernet before version 1.17...
CVE-2025-22853LOW2.3Improper synchronization in the firmware for some Intel(R) TDX may allow a privileged user to potentially enable escalat...
CVE-2025-21096LOW1.9Improper buffer restrictions in the firmware for some Intel(R) TDX may allow a privileged user to potentially enable esc...
CVE-2025-20613LOW3.3Predictable Seed in Pseudo-Random Number Generator (PRNG) in the firmware for some Intel(R) TDX may allow an authenticat...
CVE-2025-40570LOW2.4A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V10.0), SIPROTEC 5 6MD85 (CP300) (All ve...
CVE-2025-42955LOW3.5Due to a missing authorization check in SAP Cloud Connector, an attacker on an adjacent network with low privileges coul...
CVE-2025-42941LOW3.5SAP Fiori (Launchpad) is vulnerable to Reverse Tabnabbing vulnerability due to inadequate external navigation protection...
CVE-2025-53857LOW3.7Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the channel which allows attackers ...
CVE-2025-49221LOW3.7Mattermost Confluence Plugin version <1.5.0 fails to enforce authentication of the user to the Mattermost instance which...
CVE-2025-8836LOW3.3A vulnerability was determined in JasPer up to 4.2.5. Affected by this issue is the function jpc_floorlog2 of the file s...
CVE-2025-8834LOW2.4A vulnerability has been found in JCG Link-net LW-N915R 17s.20.001.908. Affected is an unknown function of the file /wir...
CVE-2025-52136LOW3In EMQX before 5.8.6, administrators can install arbitrary novel plugins via the Dashboard web interface. NOTE: the Supp...
CVE-2025-8765LOW3.5A vulnerability classified as problematic was found in Datacom DM955 5GT 1200 825.8010.00. Affected by this vulnerabilit...
CVE-2025-54999LOW3.7OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certifi...
CVE-2025-55188LOW3.67-Zip before 25.01 does not always properly handle symbolic links during extraction.
CVE-2025-8737LOW3.5A vulnerability, which was classified as problematic, was found in zlt2000 microservices-platform up to 6.0.0. This affe...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now