2025 CVE Vulnerabilities
45,155 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-2415 | HIGH | 8.6 | 0.3% | Sep 3, 2025 | Improper Restriction of Excessive Authentication Attempts vulnerability in Akinsoft MyRezzta allows Authentication Bypas... |
| CVE-2025-9817 | HIGH | 7.5 | 0.2% | Sep 3, 2025 | SSH dissector crash in Wireshark 4.4.0 to 4.4.8 allows denial of service |
| CVE-2025-21034 | HIGH | 7.8 | 0.1% | Sep 3, 2025 | Out-of-bounds write in libsavsvc.so prior to SMR Sep-2025 Release 1 allows local attackers to potentially execute arbitr... |
| CVE-2025-9785 | HIGH | 7.7 | 0.1% | Sep 3, 2025 | PaperCut Print Deploy is an optional component that integrates with PaperCut NG/MF which simplifies printer deployment a... |
| CVE-2025-58176 | HIGH | 8.8 | 7.7% | Sep 3, 2025 | Dive is an open-source MCP Host Desktop Application that enables integration with function-calling LLMs. In versions 0.9... |
| CVE-2025-9848 | HIGH | 7.5 | 0.6% | Sep 3, 2025 | A security vulnerability has been detected in ScriptAndTools Real Estate Management System 1.0. The affected element is ... |
| CVE-2025-58163 | HIGH | 8.8 | 0.7% | Sep 3, 2025 | FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Versions 1.8.185 and earlier contain ... |
| CVE-2025-9843 | HIGH | 7.5 | 0.4% | Sep 3, 2025 | A flaw has been found in Das Parking Management System 停车场管理系统 6.2.0. Affected is an unknown function of the file /Opera... |
| CVE-2025-9842 | HIGH | 7.5 | 0.4% | Sep 3, 2025 | A vulnerability was detected in Das Parking Management System 停车场管理系统 6.2.0. This impacts an unknown function of the fil... |
| CVE-2025-9841 | HIGH | 8.8 | 0.3% | Sep 3, 2025 | A security vulnerability has been detected in code-projects Mobile Shop Management System 1.0. This affects an unknown f... |
| CVE-2025-54588 | HIGH | 7.5 | 0.4% | Sep 3, 2025 | Envoy is an open source L7 proxy and communication bus designed for large modern service oriented architectures. Version... |
| CVE-2025-22442 | HIGH | 7 | 0.1% | Sep 2, 2025 | In multiple functions of DevicePolicyManagerService.java, there is a possible way to install unauthorized applications i... |
| CVE-2025-22439 | HIGH | 7.3 | 0.1% | Sep 2, 2025 | In onLastAccessedStackLoaded of ActionHandler.java , there is a possible way to bypass storage restrictions across apps ... |
| CVE-2025-22438 | HIGH | 7.8 | 0.1% | Sep 2, 2025 | In afterKeyEventLockedInterruptable of InputDispatcher.cpp, there is a possible use after free. This could lead to local... |
| CVE-2025-22437 | HIGH | 7.8 | 0.1% | Sep 2, 2025 | In setMediaButtonReceiver of multiple files, there is a possible way to launch arbitrary activities from background due ... |
| CVE-2025-22434 | HIGH | 7.8 | 0.1% | Sep 2, 2025 | In handleKeyGestureEvent of PhoneWindowManager.java, there is a possible lock screen bypass due to a logic error in the ... |
| CVE-2025-22433 | HIGH | 7.8 | 0.1% | Sep 2, 2025 | In canForward of IntentForwarderActivity.java, there is a possible bypass of the cross profile intent filter most common... |
| CVE-2025-22428 | HIGH | 7.8 | 0.1% | Sep 2, 2025 | In hasInteractAcrossUsersFullPermission of AppInfoBase.java, there is a possible way to grant permissions to an app on t... |
| CVE-2025-22427 | HIGH | 7.3 | 0.1% | Sep 2, 2025 | In onCreate of NotificationAccessConfirmationActivity.java, there is a possible way to grant notification access above t... |
| CVE-2025-22423 | HIGH | 7.5 | 0.3% | Sep 2, 2025 | In ParseTag of dng_ifd.cpp, there is a possible way to crash the image renderer due to a missing bounds check. This coul... |
| CVE-2025-22422 | HIGH | 7.8 | 0.1% | Sep 2, 2025 | In multiple locations, there is a possible way to mislead a user into approving an authentication prompt for one app whe... |
| CVE-2025-22419 | HIGH | 7.3 | 0.1% | Sep 2, 2025 | In multiple locations, there is a possible way to mislead the user into enabling malicious phone calls forwarding due to... |
| CVE-2025-22418 | HIGH | 7.8 | 0.1% | Sep 2, 2025 | In multiple locations, there is a possible confused deputy due to Intent Redirect. This could lead to local escalation o... |
| CVE-2025-22417 | HIGH | 7.3 | 0.1% | Sep 2, 2025 | In finishTransition of Transition.java, there is a possible way to bypass touch filtering restrictions due to a tapjacki... |
| CVE-2025-22416 | HIGH | 7.8 | 0.1% | Sep 2, 2025 | In onCreate of ChooserActivity.java , there is a possible way to view other users' images due to a confused deputy. This... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now