2025 CVE Vulnerabilities

45,342 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-39848MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ax25: properly unshare skbs in ax25_kiss_rcv() Ber...
CVE-2025-39847MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ppp: fix memory leak in pad_compress_skb If alloc_...
CVE-2025-39846MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: pcmcia: Fix a NULL pointer dereference in __iodyn_f...
CVE-2025-39845MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: x86/mm/64: define ARCH_PAGE_TABLE_SYNC_MASK and arc...
CVE-2025-39844MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm: move page table sync declarations to linux/pgta...
CVE-2025-39843MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm: slub: avoid wake up kswapd in set_track_prepare...
CVE-2025-39842MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ocfs2: prevent release journal inode after journal ...
CVE-2025-39838MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: cifs: prevent NULL pointer dereference in UTF16 con...
CVE-2025-10718MEDIUM5.3A vulnerability was found in Ooma Office Business Phone App up to 7.2.2 on Android. This affects an unknown part of the ...
CVE-2025-8664MEDIUM6.3Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Saysis Comp...
CVE-2025-8532MEDIUM6.4Authorization Bypass Through User-Controlled Key, Improper Authorization vulnerability in Bimser Solution Software Trade...
CVE-2025-10717MEDIUM5.3A vulnerability has been found in intsig CamScanner App 6.91.1.5.250711 on Android. Affected by this issue is some unkno...
CVE-2025-10716MEDIUM5.3A flaw has been found in Creality Cloud App up to 6.1.0 on Android. Affected by this vulnerability is an unknown functio...
CVE-2025-58114MEDIUM4.8Improper Input Validation vulnerability in Hallo Welt! GmbH BlueSpice (Extension:CognitiveProcessDesigner) allows Cross-...
CVE-2025-57880MEDIUM5.4Improper Encoding or Escaping of Output vulnerability in Hallo Welt! GmbH BlueSpice (Extension:BlueSpiceWhoIsOnline) all...
CVE-2025-48007MEDIUM6.4Improper Encoding or Escaping of Output vulnerability in Hallo Welt! GmbH BlueSpice (Extension:BlueSpiceAvatars) allows ...
CVE-2025-46703MEDIUM6.4Improper Encoding or Escaping of Output vulnerability in Hallo Welt! GmbH BlueSpice (Extension:AtMentions) allows Cross-...
CVE-2025-10715MEDIUM5.3A security flaw has been discovered in APEUni PTE Exam Practice App up to 10.8.0 on Android. The impacted element is an ...
CVE-2025-10711MEDIUM4.3A vulnerability has been found in 07FLYCMS, 07FLY-CMS and 07FlyCRM up to 20250831. This vulnerability affects unknown co...
CVE-2025-10710MEDIUM4.3A flaw has been found in 07FLYCMS, 07FLY-CMS and 07FlyCRM up to 20250831. This affects an unknown part of the file /inde...
CVE-2025-8531MEDIUM6.8Improper Handling of Length Parameter Inconsistency vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series Q03...
CVE-2025-10719MEDIUM5.3Tronclass developed by WisdomGarden has an Insecure Direct object Reference vulnerability, allowing remote attackers wit...
CVE-2025-10630MEDIUM4.3Grafana is an open-source platform for monitoring and observability. Grafana-Zabbix is a plugin for Grafana allowing to ...
CVE-2025-7702MEDIUM4.7URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Pusula Communication Information Internet Industry ...
CVE-2025-7403MEDIUM6.5Unsafe handling in bt_conn_tx_processor causes a use-after-free, resulting in a write-before-zero. The written 4 bytes a...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now