2025 CVE Vulnerabilities
45,153 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-10083 | HIGH | 8.8 | 0.4% | Sep 8, 2025 | A vulnerability was determined in SourceCodester Pet Grooming Management Software 1.0. Affected by this issue is some un... |
| CVE-2025-10081 | HIGH | 7.2 | 0.4% | Sep 8, 2025 | A flaw has been found in SourceCodester Pet Management System 1.0. This impacts an unknown function of the file /admin/p... |
| CVE-2025-48042 | HIGH | 7.1 | 0.3% | Sep 7, 2025 | Incorrect Authorization vulnerability in ash-project ash allows Exploiting Incorrectly Configured Access Control Securit... |
| CVE-2025-39730 | HIGH | 7.8 | 0.2% | Sep 7, 2025 | In the Linux kernel, the following vulnerability has been resolved: NFS: Fix filehandle bounds checking in nfs_fh_to_de... |
| CVE-2025-39727 | HIGH | 7.8 | 0.2% | Sep 7, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm: swap: fix potential buffer overflow in setup_cl... |
| CVE-2025-58445 | HIGH | 7.5 | 0.4% | Sep 6, 2025 | Atlantis is a self-hosted golang application that listens for Terraform pull request events via webhooks. All versions o... |
| CVE-2025-58446 | HIGH | 7.5 | 0.5% | Sep 6, 2025 | xgrammar is an open-source library for efficient, flexible, and portable structured generation. A grammar optimizer intr... |
| CVE-2025-0032 | HIGH | 7.2 | 0.1% | Sep 6, 2025 | Improper cleanup in AMD CPU microcode patch loading could allow an attacker with local administrator privilege to load m... |
| CVE-2025-9961 | HIGH | 8.6 | 9.8% | Sep 6, 2025 | An authenticated attacker may remotely execute arbitrary code via the CWMP binary on the devices AX10 and AX1500. The ... |
| CVE-2025-7040 | HIGH | 8.2 | 0.3% | Sep 6, 2025 | The Cloud SAML SSO plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability c... |
| CVE-2025-9515 | HIGH | 7.2 | 0.6% | Sep 6, 2025 | The Multi Step Form plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation via... |
| CVE-2025-58437 | HIGH | 8.1 | 0.3% | Sep 6, 2025 | Coder allows organizations to provision remote development environments via Terraform. In versions 2.22.0 through 2.24.3... |
| CVE-2025-58374 | HIGH | 7.8 | 0.2% | Sep 6, 2025 | Roo Code is an AI-powered autonomous coding agent that lives in users' editors. Versions 3.25.23 and below contain a def... |
| CVE-2025-7366 | HIGH | 7.3 | 0.3% | Sep 6, 2025 | The The REHub - Price Comparison, Multi Vendor Marketplace Wordpress Theme theme for WordPress is vulnerable to arbitrar... |
| CVE-2025-58375 | HIGH | 8.1 | 0.3% | Sep 6, 2025 | Frappe is a full-stack web application framework. Versions 14.96.9 and below, and 15.0.0 through 15.71.0 have an insecur... |
| CVE-2025-58370 | HIGH | 8.1 | 0.4% | Sep 5, 2025 | Roo Code is an AI-powered autonomous coding agent that lives in users' editors. Versions below 3.26.0 contain a vulnerab... |
| CVE-2025-10060 | HIGH | 7.5 | 0.3% | Sep 5, 2025 | MongoDB Server may allow upsert operations retried within a transaction to violate unique index constraints, potentially... |
| CVE-2025-9566 | HIGH | 8.1 | 1.0% | Sep 5, 2025 | There's a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube ... |
| CVE-2025-9709 | HIGH | 8.6 | 0.2% | Sep 5, 2025 | On-Chip Debug and Test Interface With Improper Access Control and Improper Protection against Electromagnetic Fault Inje... |
| CVE-2025-39723 | HIGH | 7.8 | 0.1% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: netfs: Fix unbuffered write error handling If all ... |
| CVE-2025-39719 | HIGH | 7.1 | 0.1% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: iio: imu: bno055: fix OOB access of hw_xlate array ... |
| CVE-2025-39717 | HIGH | 7.8 | 0.1% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: open_tree_attr: do not allow id-mapping changes wit... |
| CVE-2025-39711 | HIGH | 7.8 | 0.1% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: media: ivsc: Fix crash at shutdown due to missing m... |
| CVE-2025-39710 | HIGH | 7.1 | 0.2% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: media: venus: Add a check for packet size after rea... |
| CVE-2025-39702 | HIGH | 7 | 0.1% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: ipv6: sr: Fix MAC comparison to be constant-time T... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now