2025 CVE Vulnerabilities
45,342 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-38570 | HIGH | 7.8 | 0.2% | Aug 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: eth: fbnic: unlink NAPIs from queues on error to op... |
| CVE-2025-38568 | HIGH | 7.8 | 0.2% | Aug 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: net/sched: mqprio: fix stack out-of-bounds write in... |
| CVE-2025-38566 | HIGH | 7.5 | 0.6% | Aug 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: sunrpc: fix handling of server side tls alerts Sco... |
| CVE-2025-38565 | HIGH | 7.8 | 0.2% | Aug 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: perf/core: Exit early on perf_mmap() fail When per... |
| CVE-2025-38563 | HIGH | 7.8 | 0.4% | Aug 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: perf/core: Prevent VMA split of buffer mappings Th... |
| CVE-2025-38556 | HIGH | 7.1 | 0.1% | Aug 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: HID: core: Harden s32ton() against conversion to 0 ... |
| CVE-2025-38555 | HIGH | 7.8 | 0.2% | Aug 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget : fix use-after-free in composite_dev_c... |
| CVE-2025-38554 | HIGH | 7.8 | 0.2% | Aug 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm: fix a UAF when vma->mm is freed after vma->vm_r... |
| CVE-2025-9146 | HIGH | 8.1 | 0.5% | Aug 19, 2025 | A flaw has been found in Linksys E5600 1.1.0.26. The affected element is the function verify_gemtek_header of the file c... |
| CVE-2025-9140 | HIGH | 8.8 | 0.4% | Aug 19, 2025 | A vulnerability was identified in Shanghai Lingdang Information Technology Lingdang CRM up to 8.6.4.7. Affected by this ... |
| CVE-2025-4046 | HIGH | 8.5 | 0.3% | Aug 19, 2025 | A missing authorization vulnerability in Lexmark Cloud Services badge management allows attacker to reassign badges with... |
| CVE-2025-4044 | HIGH | 8.2 | 0.1% | Aug 19, 2025 | Improper Restriction of XML External Entity Reference in various Lexmark printer drivers for Windows allows attacker to ... |
| CVE-2025-9136 | HIGH | 7.8 | 0.2% | Aug 19, 2025 | A flaw has been found in libretro RetroArch 1.18.0/1.19.0/1.20.0. This affects the function filestream_vscanf of the fil... |
| CVE-2025-41689 | HIGH | 7.5 | 0.3% | Aug 19, 2025 | An unauthenticated remote attacker can get access without password protection to the affected device. This enables the u... |
| CVE-2025-7670 | HIGH | 7.5 | 0.5% | Aug 19, 2025 | The JS Archive List plugin for WordPress is vulnerable to time-based SQL Injection via the build_sql_where() function in... |
| CVE-2025-7654 | HIGH | 8.8 | 0.6% | Aug 19, 2025 | Multiple FunnelKit plugins are vulnerable to Sensitive Information Exposure via the wf_get_cookie shortcode. This makes ... |
| CVE-2025-8218 | HIGH | 8.8 | 0.3% | Aug 19, 2025 | The Real Spaces - WordPress Properties Directory Theme theme for WordPress is vulnerable to privilege escalation via the... |
| CVE-2025-54156 | HIGH | 7.5 | 0.2% | Aug 18, 2025 | The Sante PACS Server Web Portal sends credential information without encryption. |
| CVE-2025-53948 | HIGH | 8.7 | 0.7% | Aug 18, 2025 | The Sante PACS Server allows a remote attacker to crash the main thread by sending a crafted HL7 message, causing a deni... |
| CVE-2025-52584 | HIGH | 8.4 | 0.2% | Aug 18, 2025 | In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions prior to 12.6.1204.204, the affected applicati... |
| CVE-2025-46269 | HIGH | 8.4 | 0.2% | Aug 18, 2025 | In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions prior to 12.6.1204.204, the affected applicati... |
| CVE-2025-53705 | HIGH | 8.4 | 0.2% | Aug 18, 2025 | In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions prior to 12.6.1204.204, the affected applicati... |
| CVE-2025-41392 | HIGH | 8.4 | 0.2% | Aug 18, 2025 | In Ashlar-Vellum Cobalt, Xenon, Argon, Lithium, and Cobalt Share versions prior to 12.6.1204.204, the affected applicati... |
| CVE-2025-8098 | HIGH | 8.5 | 0.1% | Aug 18, 2025 | An improper permission vulnerability was reported in Lenovo PC Manager that could allow a local attacker to escalate pri... |
| CVE-2025-55588 | HIGH | 7.5 | 0.4% | Aug 18, 2025 | TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to contain a buffer overflow in the fw_ip parameter at /boafrm/form... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now