2025 CVE Vulnerabilities

45,152 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-39835HIGH7.8In the Linux kernel, the following vulnerability has been resolved: xfs: do not propagate ENODATA disk errors into xatt...
CVE-2025-55118HIGH8.9Memory corruptions can be remotely triggered in the Control-M/Agent when SSL/TLS communication is configured. The issu...
CVE-2025-55112HIGH7.6Out-of-support Control-M/Agent versions 9.0.18 to 9.0.20 (and potentially earlier unsupported versions) that are configu...
CVE-2025-39828HIGH7.8In the Linux kernel, the following vulnerability has been resolved: atm: atmtcp: Prevent arbitrary write in atmtcp_recv...
CVE-2025-39826HIGH7In the Linux kernel, the following vulnerability has been resolved: net: rose: convert 'use' field to refcount_t The '...
CVE-2025-39824HIGH7.8In the Linux kernel, the following vulnerability has been resolved: HID: asus: fix UAF via HID_CLAIMED_INPUT validation...
CVE-2025-39823HIGH7.8In the Linux kernel, the following vulnerability has been resolved: KVM: x86: use array_index_nospec with indices that ...
CVE-2025-39821HIGH7.8In the Linux kernel, the following vulnerability has been resolved: perf: Avoid undefined behavior from stopping/starti...
CVE-2025-39818HIGH7.8In the Linux kernel, the following vulnerability has been resolved: HID: intel-thc-hid: intel-thc: Fix incorrect pointe...
CVE-2025-39817HIGH7.1In the Linux kernel, the following vulnerability has been resolved: efivarfs: Fix slab-out-of-bounds in efivarfs_d_comp...
CVE-2025-39810HIGH7.8In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix memory corruption when FW resources ch...
CVE-2025-39809HIGH7.8In the Linux kernel, the following vulnerability has been resolved: HID: intel-thc-hid: intel-quicki2c: Fix ACPI dsd IC...
CVE-2025-39806HIGH7.1In the Linux kernel, the following vulnerability has been resolved: HID: multitouch: fix slab out-of-bounds access in m...
CVE-2025-10537HIGH8.8Memory safety bugs present in Firefox ESR 140.2, Thunderbird ESR 140.2, Firefox 142 and Thunderbird 142. Some of these b...
CVE-2025-10535HIGH7.5Information disclosure, mitigation bypass in the Privacy component in Firefox for Android. This vulnerability was fixed ...
CVE-2025-10534HIGH8.1Spoofing issue in the Site Permissions component. This vulnerability was fixed in Firefox 143 and Thunderbird 143.
CVE-2025-10533HIGH8.8Integer overflow in the SVG component. This vulnerability was fixed in Firefox 143, Firefox ESR 115.28, Firefox ESR 140....
CVE-2025-10528HIGH7.3Sandbox escape due to undefined behavior, invalid pointer in the Graphics: Canvas2D component. This vulnerability was fi...
CVE-2025-10527HIGH7.1Sandbox escape due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 143, F...
CVE-2025-56706HIGH8Edimax BR-6473AX v1.0.28 was discovered to contain a remote code execution (RCE) vulnerability via the Object parameter ...
CVE-2025-41249HIGH7.5The Spring Framework annotation detection mechanism may not correctly resolve annotations on methods within type hierarc...
CVE-2025-41248HIGH7.5The Spring Security annotation detection mechanism may not correctly resolve annotations on methods within type hierarch...
CVE-2025-10016HIGH8.8The Sparkle framework includes a helper tool Autoupdate. Due to lack of authentication of connecting clients a local unp...
CVE-2025-43372HIGH7.8The issue was addressed with improved input validation. This issue is fixed in iOS 26 and iPadOS 26, macOS Sonoma 14.8.2...
CVE-2025-43371HIGH8.2This issue was addressed with improved checks. This issue is fixed in Xcode 26. An app may be able to break out of its s...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now