2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-54518HIGH7.3Improper isolation of shared resources within the CPU operation cache on Zen 2-based products could allow an attacker to...
CVE-2025-52532LOW2A race condition in the MxGPU-Virtualization driver’s ioctl path caused by concurrent unsynchronized access to the globa...
CVE-2025-66664MEDIUM4.6Insufficient parameter sanitization in AMD Secure Processor (ASP) TEE SOC Driver could allow an attacker to issue a malf...
CVE-2025-66660LOW1.8Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_SRIOV_...
CVE-2025-54517HIGH8.5Out of bounds write in AMD AMDGV_CMD_GET_DIAG_DATA ioctl handler could allow a local user to escalate privileges via rem...
CVE-2025-54511MEDIUM5.3Improper handling of insufficient privileges in the AMD Secure Processor (ASP) could allow an attacker to provide an inp...
CVE-2025-48516MEDIUM6.9Insecure default configuration state of DDR5 memory module by AGESA Bootloader Firmware could allow an attacker with loc...
CVE-2025-48513MEDIUM6.9Use of uninitialized resource within the AMD Platform Management Framework (PMF) could allow an attacker to read a unini...
CVE-2025-29944MEDIUM6.8A buffer overflow vulnerability within AMD Sensor Fusion Hub Driver can allow a local attacker to write out of bounds, p...
CVE-2025-29938HIGH7.1An unchecked return value within the AMD Platform Management Framework (PMF) could allow an attacker to write to an arbi...
CVE-2025-29937MEDIUM5.8An out of bounds read within the AMD Platform Management Framework (PMF) could allow an attacker to trigger a read of an...
CVE-2025-29936HIGH8.4Improper input validation within the AMD Platform Management Framework (PMF) could allow an attacker to unmap arbitrary ...
CVE-2025-29935HIGH8.4An out of bounds write within the AMD Platform Management Framework (PMF) could allow an attacker to execute arbitrary c...
CVE-2025-0044MEDIUM4.8An out-of-bounds read in power management firmware by a malicious local attacker with low privileges could potentially l...
CVE-2025-0040MEDIUM5.3Improper access control between the Joint Test Action Group (JTAG) and Advanced Extensible Interface (AXI) could allow a...
CVE-2025-0028HIGH8.3An unchecked return value within the AMD Platform Management Framework (PMF) could allow an attacker to read or modify ...
CVE-2025-52540HIGH8.5An improper input validation vulnerability within the AMD Platform Management Framework (PMF) Driver can allow a local a...
CVE-2025-48521MEDIUM6.9Improper input validation in the AMD Secure Processor (ASP) PCI driver could allow a local attacker to trigger a Use-Aft...
CVE-2025-48520MEDIUM6.9An improper input validation vulnerability within the AMD Platform Management Framework (PMF) driver can allow a local a...
CVE-2025-48519HIGH8.5An improper input validation vulnerability within the AMD Platform Management Framework (PMF) driver can allow a local a...
CVE-2025-48512HIGH7Incorrect default permissions in the installation directory for the AMD general-purpose input/output controller (GPIO) c...
CVE-2025-0045MEDIUM6.9Improper Input validation in the AMD Secure Processor (ASP) PCI driver may allow a local attacker to create a buffer ove...
CVE-2025-64526MEDIUM5.3Strapi is an open source headless content management system. In Strapi versions prior to 5.45.0, the rate-limit middlewa...
CVE-2025-15024HIGH8.8Improper Control of Generation of Code ('Code Injection') vulnerability in Yordam Information Technology Consulting, Tra...
CVE-2025-15023HIGH8.8Incorrect Authorization vulnerability in Yordam Information Technology Consulting, Training and Electronic Systems Indus...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now