2025 CVE Vulnerabilities
45,158 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-10721 | MEDIUM | 5.3 | 0.1% | Sep 19, 2025 | A vulnerability was determined in Webull Investing & Trading App 11.2.5.63 on Android. This vulnerability affects unknow... |
| CVE-2025-36248 | MEDIUM | 6.1 | 0.2% | Sep 19, 2025 | IBM Copy Services Manager 6.3.13 is vulnerable to cross-site scripting. This vulnerability allows an unauthenticated use... |
| CVE-2025-57296 | MEDIUM | 6.5 | 3.3% | Sep 19, 2025 | Tenda AC6 router firmware 15.03.05.19 contains a command injection vulnerability in the formSetIptv function, which proc... |
| CVE-2025-56869 | MEDIUM | 5.3 | 0.7% | Sep 19, 2025 | Directory traversal vulnerability in Sync In server thru 1.1.1 allowing authenticated attackers to gain read and write a... |
| CVE-2025-55910 | MEDIUM | 6.3 | 0.2% | Sep 19, 2025 | CMSEasy v7.7.8.0 and before is vulnerable to Arbitrary file deletion in database_admin.php. |
| CVE-2025-39865 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: tee: fix NULL pointer dereference in tee_shm_put t... |
| CVE-2025-39858 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: eth: mlx4: Fix IS_ERR() vs NULL check bug in mlx4_e... |
| CVE-2025-39857 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: net/smc: fix one NULL pointer dereference in smc_ib... |
| CVE-2025-39856 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: ethernet: ti: am65-cpsw-nuss: Fix null pointer... |
| CVE-2025-39852 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: net/tcp: Fix socket memory leak in TCP-AO failure h... |
| CVE-2025-39851 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: vxlan: Fix NPD when refreshing an FDB entry with a ... |
| CVE-2025-39850 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: vxlan: Fix NPD in {arp,neigh}_reduce() when using n... |
| CVE-2025-39848 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: ax25: properly unshare skbs in ax25_kiss_rcv() Ber... |
| CVE-2025-39847 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: ppp: fix memory leak in pad_compress_skb If alloc_... |
| CVE-2025-39846 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: pcmcia: Fix a NULL pointer dereference in __iodyn_f... |
| CVE-2025-39845 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: x86/mm/64: define ARCH_PAGE_TABLE_SYNC_MASK and arc... |
| CVE-2025-39844 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm: move page table sync declarations to linux/pgta... |
| CVE-2025-39843 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm: slub: avoid wake up kswapd in set_track_prepare... |
| CVE-2025-39842 | MEDIUM | 5.5 | 0.2% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: prevent release journal inode after journal ... |
| CVE-2025-39838 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: cifs: prevent NULL pointer dereference in UTF16 con... |
| CVE-2025-10718 | MEDIUM | 5.3 | 0.1% | Sep 19, 2025 | A vulnerability was found in Ooma Office Business Phone App up to 7.2.2 on Android. This affects an unknown part of the ... |
| CVE-2025-8664 | MEDIUM | 6.3 | 0.2% | Sep 19, 2025 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Saysis Comp... |
| CVE-2025-8532 | MEDIUM | 6.4 | 0.1% | Sep 19, 2025 | Authorization Bypass Through User-Controlled Key, Improper Authorization vulnerability in Bimser Solution Software Trade... |
| CVE-2025-10717 | MEDIUM | 5.3 | 0.1% | Sep 19, 2025 | A vulnerability has been found in intsig CamScanner App 6.91.1.5.250711 on Android. Affected by this issue is some unkno... |
| CVE-2025-10716 | MEDIUM | 5.3 | 0.1% | Sep 19, 2025 | A flaw has been found in Creality Cloud App up to 6.1.0 on Android. Affected by this vulnerability is an unknown functio... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now