2025 CVE Vulnerabilities

45,168 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-8912HIGH8.7Organization Portal System developed by WellChoose has an Arbitrary File Reading vulnerability, allowing unauthenticated...
CVE-2025-8909HIGH7.1Organization Portal System developed by WellChoose has an Arbitrary File Reading vulnerability, allowing remote attacker...
CVE-2025-55345HIGH8.8Using Codex CLI in workspace-write mode inside a malicious context (repo, directory, etc) could lead to arbitrary file o...
CVE-2025-8761HIGH7.7A vulnerability has been found in INSTAR 2K+ and 4K 3.11.1 Build 1124. This vulnerability affects unknown code of the co...
CVE-2025-6184HIGH8.8The Tutor LMS Pro – eLearning and online course solution plugin for WordPress is vulnerable to time-based SQL Injection ...
CVE-2025-8901HIGH8.8Out of bounds write in ANGLE in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to perform out of bounds...
CVE-2025-8882HIGH8.8Use after free in Aura in Google Chrome prior to 139.0.7258.127 allowed a remote attacker who convinced a user to engage...
CVE-2025-8880HIGH8.8Race in V8 in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to execute arbitrary code inside a sandbox...
CVE-2025-8879HIGH8.8Heap buffer overflow in libaom in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to potentially exploit...
CVE-2025-4410HIGH7.5A buffer overflow vulnerability exists in the module SetupUtility. An attacker with local privileged access can exploit ...
CVE-2025-4277HIGH7.5Tcg2Smm has a vulnerability which can be used to write arbitrary memory inside SMRAM and execute arbitrary code at SMM l...
CVE-2025-4276HIGH7.5UsbCoreDxe has a vulnerability which can be used to write arbitrary memory inside SMRAM and execute arbitrary code at SM...
CVE-2025-54232HIGH7.8Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in...
CVE-2025-54231HIGH7.8Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in...
CVE-2025-54230HIGH7.8Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in...
CVE-2025-54229HIGH7.8Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in...
CVE-2025-49457HIGH8.8Untrusted search path in certain Zoom Clients for Windows may allow an unauthenticated user to conduct an escalation of ...
CVE-2025-54222HIGH7.8Substance3D - Stager versions 3.1.3 and earlier are affected by an out-of-bounds write vulnerability that could result i...
CVE-2025-55171HIGH7.5WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. Prior to versio...
CVE-2025-55170HIGH7.4WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. Prior to versio...
CVE-2025-55165HIGH8.2Autocaliweb is a web app that offers an interface for browsing, reading, and downloading eBooks using a valid Calibre da...
CVE-2025-54226HIGH7.8InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability that could result in a...
CVE-2025-54225HIGH7.8InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability that could result in a...
CVE-2025-54224HIGH7.8InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability that could result in a...
CVE-2025-54223HIGH7.8InCopy versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary c...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now