2025 CVE Vulnerabilities

45,153 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-22441HIGH7.3In getContextForResourcesEnsuringCorrectCachedApkPaths of RemoteViews.java, there is a possible way to load arbitrary ja...
CVE-2025-0089HIGH7.8In multiple locations, there is a possible way to hijack the Launcher app due to a logic error in the code. This could l...
CVE-2025-32312HIGH7.8In createIntentsList of PackageParser.java , there is a possible way to bypass lazy bundle hardening, allowing modified ...
CVE-2025-26462HIGH7.8In AccessibilityServiceConnection.java, there is a possible background activity launch due to a logic error in the code....
CVE-2025-26458HIGH7.8In multiple functions of LocationProviderManager.java, there is a possible background activity launch due to a logic err...
CVE-2025-26455HIGH7.8In multiple functions of NdkMediaCodec.cpp, there is a possible out of bounds write due to a heap buffer overflow. This ...
CVE-2025-26452HIGH7.8In loadDrawableForCookie of ResourcesImpl.java, there is a possible way to access task snapshots of other apps due to a ...
CVE-2025-26450HIGH7.8In onInputEvent of IInputMethodSessionWrapper.java, there is a possible way for an untrusted app to inject key and motio...
CVE-2025-26444HIGH7.8In onHandleForceStop of VoiceInteractionManagerService.java, there is a bug that could cause the system to incorrectly r...
CVE-2025-26443HIGH7.3In parseHtml of HtmlToSpannedParser.java, there is a possible way to install apps without allowing installation from unk...
CVE-2025-26440HIGH7.8In multiple functions of CameraService.cpp, there is a possible way to use the camera from the background due to a permi...
CVE-2025-26438HIGH8.8In smp_process_secure_connection_oob_data of smp_act.cc, there is a possible way to bypass SMP authentication due to Inc...
CVE-2025-26436HIGH7.8In clearAllowBgActivityStarts of PendingIntentRecord.java, there is a possible way for an application to launch an activ...
CVE-2025-26435HIGH7.8In updateState of ContentProtectionTogglePreferenceController.java, there is a possible way for a secondary user to disa...
CVE-2025-26430HIGH7.8In getDestinationForApp of SpaAppBridgeActivity, there is a possible cross-user file reveal due to a logic error in the ...
CVE-2025-9636HIGH7.9pgAdmin <= 9.7 is affected by a Cross-Origin Opener Policy (COOP) vulnerability. This vulnerability allows an attacker ...
CVE-2025-38730HIGH7.8In the Linux kernel, the following vulnerability has been resolved: io_uring/net: commit partial buffers on retry Ring...
CVE-2025-38729HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Validate UAC3 power domain descrip...
CVE-2025-38728HIGH7.1In the Linux kernel, the following vulnerability has been resolved: smb3: fix for slab out of bounds on mount to ksmbd ...
CVE-2025-38724HIGH7.8In the Linux kernel, the following vulnerability has been resolved: nfsd: handle get_client_locked() failure in nfsd4_s...
CVE-2025-38722HIGH7.8In the Linux kernel, the following vulnerability has been resolved: habanalabs: fix UAF in export_dmabuf() As soon as ...
CVE-2025-38718HIGH7.8In the Linux kernel, the following vulnerability has been resolved: sctp: linearize cloned gso packets in sctp_rcv A c...
CVE-2025-38715HIGH7.1In the Linux kernel, the following vulnerability has been resolved: hfs: fix slab-out-of-bounds in hfs_bnode_read() Th...
CVE-2025-38714HIGH7.1In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix slab-out-of-bounds in hfsplus_bnode_re...
CVE-2025-38713HIGH7.1In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix slab-out-of-bounds read in hfsplus_uni...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now