2025 CVE Vulnerabilities

45,331 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-26455HIGH7.8In multiple functions of NdkMediaCodec.cpp, there is a possible out of bounds write due to a heap buffer overflow. This ...
CVE-2025-26452HIGH7.8In loadDrawableForCookie of ResourcesImpl.java, there is a possible way to access task snapshots of other apps due to a ...
CVE-2025-26450HIGH7.8In onInputEvent of IInputMethodSessionWrapper.java, there is a possible way for an untrusted app to inject key and motio...
CVE-2025-26444HIGH7.8In onHandleForceStop of VoiceInteractionManagerService.java, there is a bug that could cause the system to incorrectly r...
CVE-2025-26443HIGH7.3In parseHtml of HtmlToSpannedParser.java, there is a possible way to install apps without allowing installation from unk...
CVE-2025-26440HIGH7.8In multiple functions of CameraService.cpp, there is a possible way to use the camera from the background due to a permi...
CVE-2025-26438HIGH8.8In smp_process_secure_connection_oob_data of smp_act.cc, there is a possible way to bypass SMP authentication due to Inc...
CVE-2025-26436HIGH7.8In clearAllowBgActivityStarts of PendingIntentRecord.java, there is a possible way for an application to launch an activ...
CVE-2025-26435HIGH7.8In updateState of ContentProtectionTogglePreferenceController.java, there is a possible way for a secondary user to disa...
CVE-2025-26430HIGH7.8In getDestinationForApp of SpaAppBridgeActivity, there is a possible cross-user file reveal due to a logic error in the ...
CVE-2025-9636HIGH7.9pgAdmin <= 9.7 is affected by a Cross-Origin Opener Policy (COOP) vulnerability. This vulnerability allows an attacker ...
CVE-2025-38730HIGH7.8In the Linux kernel, the following vulnerability has been resolved: io_uring/net: commit partial buffers on retry Ring...
CVE-2025-38729HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Validate UAC3 power domain descrip...
CVE-2025-38728HIGH7.1In the Linux kernel, the following vulnerability has been resolved: smb3: fix for slab out of bounds on mount to ksmbd ...
CVE-2025-38724HIGH7.8In the Linux kernel, the following vulnerability has been resolved: nfsd: handle get_client_locked() failure in nfsd4_s...
CVE-2025-38722HIGH7.8In the Linux kernel, the following vulnerability has been resolved: habanalabs: fix UAF in export_dmabuf() As soon as ...
CVE-2025-38718HIGH7.8In the Linux kernel, the following vulnerability has been resolved: sctp: linearize cloned gso packets in sctp_rcv A c...
CVE-2025-38715HIGH7.1In the Linux kernel, the following vulnerability has been resolved: hfs: fix slab-out-of-bounds in hfs_bnode_read() Th...
CVE-2025-38714HIGH7.1In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix slab-out-of-bounds in hfsplus_bnode_re...
CVE-2025-38713HIGH7.1In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix slab-out-of-bounds read in hfsplus_uni...
CVE-2025-38708HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drbd: add missing kref_get in handle_write_conflict...
CVE-2025-38707HIGH7.8In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Add sanity check for file name The lengt...
CVE-2025-38704HIGH7.8In the Linux kernel, the following vulnerability has been resolved: rcu/nocb: Fix possible invalid rdp's->nocb_cb_kthre...
CVE-2025-38703HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/xe: Make dma-fences compliant with the safe acc...
CVE-2025-38702HIGH7.8In the Linux kernel, the following vulnerability has been resolved: fbdev: fix potential buffer overflow in do_register...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now