2025 CVE Vulnerabilities

45,331 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-58163HIGH8.8FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Versions 1.8.185 and earlier contain ...
CVE-2025-9843HIGH7.5A flaw has been found in Das Parking Management System 停车场管理系统 6.2.0. Affected is an unknown function of the file /Opera...
CVE-2025-9842HIGH7.5A vulnerability was detected in Das Parking Management System 停车场管理系统 6.2.0. This impacts an unknown function of the fil...
CVE-2025-9841HIGH8.8A security vulnerability has been detected in code-projects Mobile Shop Management System 1.0. This affects an unknown f...
CVE-2025-54588HIGH7.5Envoy is an open source L7 proxy and communication bus designed for large modern service oriented architectures. Version...
CVE-2025-22442HIGH7In multiple functions of DevicePolicyManagerService.java, there is a possible way to install unauthorized applications i...
CVE-2025-22439HIGH7.3In onLastAccessedStackLoaded of ActionHandler.java , there is a possible way to bypass storage restrictions across apps ...
CVE-2025-22438HIGH7.8In afterKeyEventLockedInterruptable of InputDispatcher.cpp, there is a possible use after free. This could lead to local...
CVE-2025-22437HIGH7.8In setMediaButtonReceiver of multiple files, there is a possible way to launch arbitrary activities from background due ...
CVE-2025-22434HIGH7.8In handleKeyGestureEvent of PhoneWindowManager.java, there is a possible lock screen bypass due to a logic error in the ...
CVE-2025-22433HIGH7.8In canForward of IntentForwarderActivity.java, there is a possible bypass of the cross profile intent filter most common...
CVE-2025-22428HIGH7.8In hasInteractAcrossUsersFullPermission of AppInfoBase.java, there is a possible way to grant permissions to an app on t...
CVE-2025-22427HIGH7.3In onCreate of NotificationAccessConfirmationActivity.java, there is a possible way to grant notification access above t...
CVE-2025-22423HIGH7.5In ParseTag of dng_ifd.cpp, there is a possible way to crash the image renderer due to a missing bounds check. This coul...
CVE-2025-22422HIGH7.8In multiple locations, there is a possible way to mislead a user into approving an authentication prompt for one app whe...
CVE-2025-22419HIGH7.3In multiple locations, there is a possible way to mislead the user into enabling malicious phone calls forwarding due to...
CVE-2025-22418HIGH7.8In multiple locations, there is a possible confused deputy due to Intent Redirect. This could lead to local escalation o...
CVE-2025-22417HIGH7.3In finishTransition of Transition.java, there is a possible way to bypass touch filtering restrictions due to a tapjacki...
CVE-2025-22416HIGH7.8In onCreate of ChooserActivity.java , there is a possible way to view other users' images due to a confused deputy. This...
CVE-2025-9330HIGH7.8Foxit PDF Reader Update Service Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerab...
CVE-2025-9329HIGH7.8Foxit PDF Reader PRC File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remo...
CVE-2025-9328HIGH7.8Foxit PDF Reader PRC File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remo...
CVE-2025-9326HIGH7.8Foxit PDF Reader PRC File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remo...
CVE-2025-9275HIGH7.8Oxford Instruments Imaris Viewer IMS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerab...
CVE-2025-9274HIGH7.8Oxford Instruments Imaris Viewer IMS File Parsing Uninitialized Pointer Remote Code Execution Vulnerability. This vulner...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now