2025 CVE Vulnerabilities
45,152 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-39835 | HIGH | 7.8 | 0.2% | Sep 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: xfs: do not propagate ENODATA disk errors into xatt... |
| CVE-2025-55118 | HIGH | 8.9 | 0.3% | Sep 16, 2025 | Memory corruptions can be remotely triggered in the Control-M/Agent when SSL/TLS communication is configured. The issu... |
| CVE-2025-55112 | HIGH | 7.6 | 0.2% | Sep 16, 2025 | Out-of-support Control-M/Agent versions 9.0.18 to 9.0.20 (and potentially earlier unsupported versions) that are configu... |
| CVE-2025-39828 | HIGH | 7.8 | 0.2% | Sep 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: atm: atmtcp: Prevent arbitrary write in atmtcp_recv... |
| CVE-2025-39826 | HIGH | 7 | 0.1% | Sep 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: rose: convert 'use' field to refcount_t The '... |
| CVE-2025-39824 | HIGH | 7.8 | 0.2% | Sep 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: HID: asus: fix UAF via HID_CLAIMED_INPUT validation... |
| CVE-2025-39823 | HIGH | 7.8 | 0.2% | Sep 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: KVM: x86: use array_index_nospec with indices that ... |
| CVE-2025-39821 | HIGH | 7.8 | 0.1% | Sep 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: perf: Avoid undefined behavior from stopping/starti... |
| CVE-2025-39818 | HIGH | 7.8 | 0.1% | Sep 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: HID: intel-thc-hid: intel-thc: Fix incorrect pointe... |
| CVE-2025-39817 | HIGH | 7.1 | 0.2% | Sep 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: efivarfs: Fix slab-out-of-bounds in efivarfs_d_comp... |
| CVE-2025-39810 | HIGH | 7.8 | 0.2% | Sep 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix memory corruption when FW resources ch... |
| CVE-2025-39809 | HIGH | 7.8 | 0.1% | Sep 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: HID: intel-thc-hid: intel-quicki2c: Fix ACPI dsd IC... |
| CVE-2025-39806 | HIGH | 7.1 | 0.1% | Sep 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: HID: multitouch: fix slab out-of-bounds access in m... |
| CVE-2025-10537 | HIGH | 8.8 | 0.3% | Sep 16, 2025 | Memory safety bugs present in Firefox ESR 140.2, Thunderbird ESR 140.2, Firefox 142 and Thunderbird 142. Some of these b... |
| CVE-2025-10535 | HIGH | 7.5 | 0.3% | Sep 16, 2025 | Information disclosure, mitigation bypass in the Privacy component in Firefox for Android. This vulnerability was fixed ... |
| CVE-2025-10534 | HIGH | 8.1 | 0.3% | Sep 16, 2025 | Spoofing issue in the Site Permissions component. This vulnerability was fixed in Firefox 143 and Thunderbird 143. |
| CVE-2025-10533 | HIGH | 8.8 | 0.7% | Sep 16, 2025 | Integer overflow in the SVG component. This vulnerability was fixed in Firefox 143, Firefox ESR 115.28, Firefox ESR 140.... |
| CVE-2025-10528 | HIGH | 7.3 | 0.3% | Sep 16, 2025 | Sandbox escape due to undefined behavior, invalid pointer in the Graphics: Canvas2D component. This vulnerability was fi... |
| CVE-2025-10527 | HIGH | 7.1 | 0.3% | Sep 16, 2025 | Sandbox escape due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 143, F... |
| CVE-2025-56706 | HIGH | 8 | 1.8% | Sep 16, 2025 | Edimax BR-6473AX v1.0.28 was discovered to contain a remote code execution (RCE) vulnerability via the Object parameter ... |
| CVE-2025-41249 | HIGH | 7.5 | 0.5% | Sep 16, 2025 | The Spring Framework annotation detection mechanism may not correctly resolve annotations on methods within type hierarc... |
| CVE-2025-41248 | HIGH | 7.5 | 0.4% | Sep 16, 2025 | The Spring Security annotation detection mechanism may not correctly resolve annotations on methods within type hierarch... |
| CVE-2025-10016 | HIGH | 8.8 | 0.2% | Sep 16, 2025 | The Sparkle framework includes a helper tool Autoupdate. Due to lack of authentication of connecting clients a local unp... |
| CVE-2025-43372 | HIGH | 7.8 | 0.5% | Sep 15, 2025 | The issue was addressed with improved input validation. This issue is fixed in iOS 26 and iPadOS 26, macOS Sonoma 14.8.2... |
| CVE-2025-43371 | HIGH | 8.2 | 0.2% | Sep 15, 2025 | This issue was addressed with improved checks. This issue is fixed in Xcode 26. An app may be able to break out of its s... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now