2025 CVE Vulnerabilities
45,342 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-39848 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: ax25: properly unshare skbs in ax25_kiss_rcv() Ber... |
| CVE-2025-39847 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: ppp: fix memory leak in pad_compress_skb If alloc_... |
| CVE-2025-39846 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: pcmcia: Fix a NULL pointer dereference in __iodyn_f... |
| CVE-2025-39845 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: x86/mm/64: define ARCH_PAGE_TABLE_SYNC_MASK and arc... |
| CVE-2025-39844 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm: move page table sync declarations to linux/pgta... |
| CVE-2025-39843 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm: slub: avoid wake up kswapd in set_track_prepare... |
| CVE-2025-39842 | MEDIUM | 5.5 | 0.2% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: prevent release journal inode after journal ... |
| CVE-2025-39838 | MEDIUM | 5.5 | 0.1% | Sep 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: cifs: prevent NULL pointer dereference in UTF16 con... |
| CVE-2025-10718 | MEDIUM | 5.3 | 0.1% | Sep 19, 2025 | A vulnerability was found in Ooma Office Business Phone App up to 7.2.2 on Android. This affects an unknown part of the ... |
| CVE-2025-8664 | MEDIUM | 6.3 | 0.2% | Sep 19, 2025 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Saysis Comp... |
| CVE-2025-8532 | MEDIUM | 6.4 | 0.1% | Sep 19, 2025 | Authorization Bypass Through User-Controlled Key, Improper Authorization vulnerability in Bimser Solution Software Trade... |
| CVE-2025-10717 | MEDIUM | 5.3 | 0.1% | Sep 19, 2025 | A vulnerability has been found in intsig CamScanner App 6.91.1.5.250711 on Android. Affected by this issue is some unkno... |
| CVE-2025-10716 | MEDIUM | 5.3 | 0.1% | Sep 19, 2025 | A flaw has been found in Creality Cloud App up to 6.1.0 on Android. Affected by this vulnerability is an unknown functio... |
| CVE-2025-58114 | MEDIUM | 4.8 | 0.2% | Sep 19, 2025 | Improper Input Validation vulnerability in Hallo Welt! GmbH BlueSpice (Extension:CognitiveProcessDesigner) allows Cross-... |
| CVE-2025-57880 | MEDIUM | 5.4 | 0.2% | Sep 19, 2025 | Improper Encoding or Escaping of Output vulnerability in Hallo Welt! GmbH BlueSpice (Extension:BlueSpiceWhoIsOnline) all... |
| CVE-2025-48007 | MEDIUM | 6.4 | 0.2% | Sep 19, 2025 | Improper Encoding or Escaping of Output vulnerability in Hallo Welt! GmbH BlueSpice (Extension:BlueSpiceAvatars) allows ... |
| CVE-2025-46703 | MEDIUM | 6.4 | 0.2% | Sep 19, 2025 | Improper Encoding or Escaping of Output vulnerability in Hallo Welt! GmbH BlueSpice (Extension:AtMentions) allows Cross-... |
| CVE-2025-10715 | MEDIUM | 5.3 | 0.1% | Sep 19, 2025 | A security flaw has been discovered in APEUni PTE Exam Practice App up to 10.8.0 on Android. The impacted element is an ... |
| CVE-2025-10711 | MEDIUM | 4.3 | 0.3% | Sep 19, 2025 | A vulnerability has been found in 07FLYCMS, 07FLY-CMS and 07FlyCRM up to 20250831. This vulnerability affects unknown co... |
| CVE-2025-10710 | MEDIUM | 4.3 | 0.3% | Sep 19, 2025 | A flaw has been found in 07FLYCMS, 07FLY-CMS and 07FlyCRM up to 20250831. This affects an unknown part of the file /inde... |
| CVE-2025-8531 | MEDIUM | 6.8 | 1.0% | Sep 19, 2025 | Improper Handling of Length Parameter Inconsistency vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series Q03... |
| CVE-2025-10719 | MEDIUM | 5.3 | 0.3% | Sep 19, 2025 | Tronclass developed by WisdomGarden has an Insecure Direct object Reference vulnerability, allowing remote attackers wit... |
| CVE-2025-10630 | MEDIUM | 4.3 | 0.3% | Sep 19, 2025 | Grafana is an open-source platform for monitoring and observability. Grafana-Zabbix is a plugin for Grafana allowing to ... |
| CVE-2025-7702 | MEDIUM | 4.7 | 0.2% | Sep 19, 2025 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Pusula Communication Information Internet Industry ... |
| CVE-2025-7403 | MEDIUM | 6.5 | 0.2% | Sep 19, 2025 | Unsafe handling in bt_conn_tx_processor causes a use-after-free, resulting in a write-before-zero. The written 4 bytes a... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now