2025 CVE Vulnerabilities
45,326 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-68130 | HIGH | 8.5 | 0.4% | Dec 16, 2025 | tRPC allows users to build and consume fully typesafe APIs without schemas or code generation. Starting in version 10.27... |
| CVE-2025-68116 | MEDIUM | 5.4 | 0.2% | Dec 16, 2025 | FileRise is a self-hosted web file manager / WebDAV server. Versions prior to 2.7.1 are vulnerable to Stored Cross-Site ... |
| CVE-2025-63414 | CRITICAL | 10 | 1.6% | Dec 16, 2025 | A Path Traversal vulnerability in the Allsky WebUI version v2024.12.06_06 allows an unauthenticated remote attacker to a... |
| CVE-2025-62862 | MEDIUM | 4.6 | 0.1% | Dec 16, 2025 | Ampere AmpereOne AC03 devices before 3.5.9.3, AmpereOne AC04 devices before 4.4.5.2, and AmpereOne M devices before 5.4.... |
| CVE-2025-59935 | MEDIUM | 6.5 | 0.2% | Dec 16, 2025 | GLPI is a free asset and IT management software package. Starting in version 10.0.0 and prior to version 10.0.21, an una... |
| CVE-2025-50401 | CRITICAL | 9.8 | 0.4% | Dec 16, 2025 | Mercury D196G d196gv1-cn-up_2020-01-09_11.21.44 is vulnerable to Buffer Overflow in the function sub_404CAEDC via the pa... |
| CVE-2025-50398 | CRITICAL | 9.8 | 0.4% | Dec 16, 2025 | Mercury D196G d196gv1-cn-up_2020-01-09_11.21.44 is vulnerable to Buffer Overflow in the function sub_404CAEDC via the pa... |
| CVE-2025-37164 | CRITICAL | 9.8 | 89.7% | Dec 16, 2025 | A remote code execution issue exists in HPE OneView. |
| CVE-2025-29231 | MEDIUM | 6.1 | 0.2% | Dec 16, 2025 | A stored cross-site scripting (XSS) vulnerability in the page_save component of Linksys E5600 V1.1.0.26 allows attackers... |
| CVE-2025-68322 | — | — | 0.2% | Dec 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: parisc: Avoid crash due to unaligned access in unwi... |
| CVE-2025-68321 | HIGH | 7.5 | 0.2% | Dec 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: page_pool: always add GFP_NOWARN for ATOMIC allocat... |
| CVE-2025-68320 | HIGH | 7.5 | 0.2% | Dec 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: lan966x: Fix sleeping in atomic context The follow... |
| CVE-2025-68319 | — | — | 0.1% | Dec 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: netconsole: Acquire su_mutex before navigating conf... |
| CVE-2025-68318 | — | — | 0.2% | Dec 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: clk: thead: th1520-ap: set all AXI clocks to CLK_IS... |
| CVE-2025-68317 | HIGH | 7.8 | 0.2% | Dec 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: io_uring/zctx: check chained notif contexts Send z... |
| CVE-2025-68316 | — | — | 0.2% | Dec 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Fix invalid probe error return val... |
| CVE-2025-68315 | CRITICAL | 9.8 | 0.2% | Dec 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to detect potential corrupted nid in free... |
| CVE-2025-68314 | HIGH | 8.8 | 0.1% | Dec 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/msm: make sure last_fence is always updated Up... |
| CVE-2025-68313 | HIGH | 7.1 | 0.1% | Dec 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: x86/CPU/AMD: Add RDSEED fix for Zen5 There's an is... |
| CVE-2025-68312 | — | — | 0.2% | Dec 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: usbnet: Prevents free active kevent The root cause... |
| CVE-2025-68311 | — | — | 0.2% | Dec 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: tty: serial: ip22zilog: Use platform device for pro... |
| CVE-2025-68310 | — | — | 0.2% | Dec 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: s390/pci: Avoid deadlock between PCI error recovery... |
| CVE-2025-68309 | — | — | 0.1% | Dec 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: PCI/AER: Fix NULL pointer access by aer_info The k... |
| CVE-2025-68308 | — | — | 0.2% | Dec 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: can: kvaser_usb: leaf: Fix potential infinite loop ... |
| CVE-2025-68307 | — | — | 0.2% | Dec 16, 2025 | In the Linux kernel, the following vulnerability has been resolved: can: gs_usb: gs_usb_xmit_callback(): fix handling o... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now