2025 CVE Vulnerabilities

45,153 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-10083HIGH8.8A vulnerability was determined in SourceCodester Pet Grooming Management Software 1.0. Affected by this issue is some un...
CVE-2025-10081HIGH7.2A flaw has been found in SourceCodester Pet Management System 1.0. This impacts an unknown function of the file /admin/p...
CVE-2025-48042HIGH7.1Incorrect Authorization vulnerability in ash-project ash allows Exploiting Incorrectly Configured Access Control Securit...
CVE-2025-39730HIGH7.8In the Linux kernel, the following vulnerability has been resolved: NFS: Fix filehandle bounds checking in nfs_fh_to_de...
CVE-2025-39727HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm: swap: fix potential buffer overflow in setup_cl...
CVE-2025-58445HIGH7.5Atlantis is a self-hosted golang application that listens for Terraform pull request events via webhooks. All versions o...
CVE-2025-58446HIGH7.5xgrammar is an open-source library for efficient, flexible, and portable structured generation. A grammar optimizer intr...
CVE-2025-0032HIGH7.2Improper cleanup in AMD CPU microcode patch loading could allow an attacker with local administrator privilege to load m...
CVE-2025-9961HIGH8.6An authenticated attacker may remotely execute arbitrary code via the CWMP binary on the devices AX10 and AX1500.  The ...
CVE-2025-7040HIGH8.2The Cloud SAML SSO plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability c...
CVE-2025-9515HIGH7.2The Multi Step Form plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation via...
CVE-2025-58437HIGH8.1Coder allows organizations to provision remote development environments via Terraform. In versions 2.22.0 through 2.24.3...
CVE-2025-58374HIGH7.8Roo Code is an AI-powered autonomous coding agent that lives in users' editors. Versions 3.25.23 and below contain a def...
CVE-2025-7366HIGH7.3The The REHub - Price Comparison, Multi Vendor Marketplace Wordpress Theme theme for WordPress is vulnerable to arbitrar...
CVE-2025-58375HIGH8.1Frappe is a full-stack web application framework. Versions 14.96.9 and below, and 15.0.0 through 15.71.0 have an insecur...
CVE-2025-58370HIGH8.1Roo Code is an AI-powered autonomous coding agent that lives in users' editors. Versions below 3.26.0 contain a vulnerab...
CVE-2025-10060HIGH7.5MongoDB Server may allow upsert operations retried within a transaction to violate unique index constraints, potentially...
CVE-2025-9566HIGH8.1There's a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube ...
CVE-2025-9709HIGH8.6On-Chip Debug and Test Interface With Improper Access Control and Improper Protection against Electromagnetic Fault Inje...
CVE-2025-39723HIGH7.8In the Linux kernel, the following vulnerability has been resolved: netfs: Fix unbuffered write error handling If all ...
CVE-2025-39719HIGH7.1In the Linux kernel, the following vulnerability has been resolved: iio: imu: bno055: fix OOB access of hw_xlate array ...
CVE-2025-39717HIGH7.8In the Linux kernel, the following vulnerability has been resolved: open_tree_attr: do not allow id-mapping changes wit...
CVE-2025-39711HIGH7.8In the Linux kernel, the following vulnerability has been resolved: media: ivsc: Fix crash at shutdown due to missing m...
CVE-2025-39710HIGH7.1In the Linux kernel, the following vulnerability has been resolved: media: venus: Add a check for packet size after rea...
CVE-2025-39702HIGH7In the Linux kernel, the following vulnerability has been resolved: ipv6: sr: Fix MAC comparison to be constant-time T...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now