2025 CVE Vulnerabilities

45,328 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-9807HIGH7.5The The Events Calendar plugin for WordPress is vulnerable to time-based SQL Injection via the ‘s’ parameter in all vers...
CVE-2025-58754HIGH7.5Axios is a promise based HTTP client for the browser and Node.js. When Axios starting in version 0.28.0 and prior to ver...
CVE-2025-10275HIGH8.8A weakness has been identified in YunaiV yudao-cloud up to 2025.09. This affects an unknown part of the file /crm/busine...
CVE-2025-9319HIGH7.5A potential vulnerability was reported in the Lenovo Wallpaper Client that could allow arbitrary code execution under ce...
CVE-2025-9201HIGH8.5A potential DLL hijacking vulnerability was discovered in Lenovo Browser during an internal security assessment that cou...
CVE-2025-8557HIGH8.8An internal product security audit of Lenovo XClarity Orchestrator (LXCO) discovered the below vulnerability: An attack...
CVE-2025-8061HIGH7.3A potential insufficient access control vulnerability was reported in the Lenovo Dispatcher 3.0 and Dispatcher 3.1 drive...
CVE-2025-59055HIGH7.2InstantCMS is a free and open source content management system. A blind Server-Side Request Forgery (SSRF) vulnerability...
CVE-2025-58060HIGH8OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.12 ...
CVE-2025-43790HIGH8.1Insecure Direct Object Reference (IDOR) vulnerability in Liferay Portal 7.4.0 through 7.4.3.124, and Liferay DXP 2024.Q2...
CVE-2025-39790HIGH7.8In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: Detect events pointing to unexpecte...
CVE-2025-39788HIGH7.8In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: exynos: Fix programming of HCI_UTRL_NEXU...
CVE-2025-39786HIGH7.1In the Linux kernel, the following vulnerability has been resolved: iio: adc: ad7173: fix channels index for syscalib_m...
CVE-2025-39783HIGH7.8In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Fix configfs group list head handlin...
CVE-2025-39776HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm/debug_vm_pgtable: clear page table entries at de...
CVE-2025-39766HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net/sched: Make cake_enqueue return NET_XMIT_CN whe...
CVE-2025-39761HIGH7.1In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Decrement TID on RX peer frag setup e...
CVE-2025-39760HIGH7.1In the Linux kernel, the following vulnerability has been resolved: usb: core: config: Prevent OOB read in SS endpoint ...
CVE-2025-39759HIGH7In the Linux kernel, the following vulnerability has been resolved: btrfs: qgroup: fix race between quota disable and q...
CVE-2025-39757HIGH7.1In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Validate UAC3 cluster segment desc...
CVE-2025-39750HIGH7.1In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Correct tid cleanup when tid setup fa...
CVE-2025-39749HIGH7In the Linux kernel, the following vulnerability has been resolved: rcu: Protect ->defer_qs_iw_pending from data race ...
CVE-2025-39744HIGH7.1In the Linux kernel, the following vulnerability has been resolved: rcu: Fix rcu_read_unlock() deadloop due to IRQ work...
CVE-2025-39743HIGH7.8In the Linux kernel, the following vulnerability has been resolved: jfs: truncate good inode pages when hard link is 0 ...
CVE-2025-39740HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/xe/migrate: prevent potential UAF If we hit th...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now