2025 CVE Vulnerabilities

45,320 CVEs published in 2025.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2025-32004LOW3.9Improper input validation in the Intel Edger8r Tool for some Intel(R) SGX SDK may allow an authenticated user to potenti...
CVE-2025-27707LOW2.6Exposure of sensitive information to an unauthorized actor for some Edge Orchestrator software before version 24.11.1 fo...
CVE-2025-27576LOW2.9Uncontrolled resource consumption for some Edge Orchestrator software before version 24.11.1 for Intel(R) Tiber(TM) Edge...
CVE-2025-24511LOW3.3Improper initialization in the Linux kernel-mode driver for some Intel(R) I350 Series Ethernet before version 5.19.2 may...
CVE-2025-24324LOW2.8Integer overflow or wraparound in the Linux kernel-mode driver for some Intel(R) 800 Series Ethernet before version 1.17...
CVE-2025-22853LOW2.3Improper synchronization in the firmware for some Intel(R) TDX may allow a privileged user to potentially enable escalat...
CVE-2025-21096LOW1.9Improper buffer restrictions in the firmware for some Intel(R) TDX may allow a privileged user to potentially enable esc...
CVE-2025-20613LOW3.3Predictable Seed in Pseudo-Random Number Generator (PRNG) in the firmware for some Intel(R) TDX may allow an authenticat...
CVE-2025-40570LOW2.4A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V10.0), SIPROTEC 5 6MD85 (CP300) (All ve...
CVE-2025-42955LOW3.5Due to a missing authorization check in SAP Cloud Connector, an attacker on an adjacent network with low privileges coul...
CVE-2025-42941LOW3.5SAP Fiori (Launchpad) is vulnerable to Reverse Tabnabbing vulnerability due to inadequate external navigation protection...
CVE-2025-53857LOW3.7Mattermost Confluence Plugin version <1.5.0 fails to check the access of the user to the channel which allows attackers ...
CVE-2025-49221LOW3.7Mattermost Confluence Plugin version <1.5.0 fails to enforce authentication of the user to the Mattermost instance which...
CVE-2025-8836LOW3.3A vulnerability was determined in JasPer up to 4.2.5. Affected by this issue is the function jpc_floorlog2 of the file s...
CVE-2025-8834LOW2.4A vulnerability has been found in JCG Link-net LW-N915R 17s.20.001.908. Affected is an unknown function of the file /wir...
CVE-2025-52136LOW3In EMQX before 5.8.6, administrators can install arbitrary novel plugins via the Dashboard web interface. NOTE: the Supp...
CVE-2025-8765LOW3.5A vulnerability classified as problematic was found in Datacom DM955 5GT 1200 825.8010.00. Affected by this vulnerabilit...
CVE-2025-54999LOW3.7OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certifi...
CVE-2025-55188LOW3.67-Zip before 25.01 does not always properly handle symbolic links during extraction.
CVE-2025-8737LOW3.5A vulnerability, which was classified as problematic, was found in zlt2000 microservices-platform up to 6.0.0. This affe...
CVE-2025-8735LOW3.3A vulnerability classified as problematic was found in GNU cflow up to 1.8. Affected by this vulnerability is the functi...
CVE-2025-8732LOW3.3A vulnerability was found in libxml2 up to 2.14.5. It has been declared as problematic. This vulnerability affects the f...
CVE-2025-54787LOW3.7SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. There is a vul...
CVE-2025-8698LOW3.3A vulnerability was found in Open5GS up to 2.7.5. It has been classified as problematic. Affected is the function amf_ns...
CVE-2025-54799LOW2.3Let's Encrypt client and ACME library written in Go (Lego). In versions 4.25.1 and below, the github.com/go-acme/lego/v4...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now