2025 CVE Vulnerabilities
45,168 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-8912 | HIGH | 8.7 | 0.5% | Aug 13, 2025 | Organization Portal System developed by WellChoose has an Arbitrary File Reading vulnerability, allowing unauthenticated... |
| CVE-2025-8909 | HIGH | 7.1 | 0.6% | Aug 13, 2025 | Organization Portal System developed by WellChoose has an Arbitrary File Reading vulnerability, allowing remote attacker... |
| CVE-2025-55345 | HIGH | 8.8 | 0.8% | Aug 13, 2025 | Using Codex CLI in workspace-write mode inside a malicious context (repo, directory, etc) could lead to arbitrary file o... |
| CVE-2025-8761 | HIGH | 7.7 | 6.4% | Aug 13, 2025 | A vulnerability has been found in INSTAR 2K+ and 4K 3.11.1 Build 1124. This vulnerability affects unknown code of the co... |
| CVE-2025-6184 | HIGH | 8.8 | 0.3% | Aug 13, 2025 | The Tutor LMS Pro – eLearning and online course solution plugin for WordPress is vulnerable to time-based SQL Injection ... |
| CVE-2025-8901 | HIGH | 8.8 | 0.3% | Aug 13, 2025 | Out of bounds write in ANGLE in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to perform out of bounds... |
| CVE-2025-8882 | HIGH | 8.8 | 0.2% | Aug 13, 2025 | Use after free in Aura in Google Chrome prior to 139.0.7258.127 allowed a remote attacker who convinced a user to engage... |
| CVE-2025-8880 | HIGH | 8.8 | 0.2% | Aug 13, 2025 | Race in V8 in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to execute arbitrary code inside a sandbox... |
| CVE-2025-8879 | HIGH | 8.8 | 0.3% | Aug 13, 2025 | Heap buffer overflow in libaom in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to potentially exploit... |
| CVE-2025-4410 | HIGH | 7.5 | 0.1% | Aug 13, 2025 | A buffer overflow vulnerability exists in the module SetupUtility. An attacker with local privileged access can exploit ... |
| CVE-2025-4277 | HIGH | 7.5 | 0.1% | Aug 13, 2025 | Tcg2Smm has a vulnerability which can be used to write arbitrary memory inside SMRAM and execute arbitrary code at SMM l... |
| CVE-2025-4276 | HIGH | 7.5 | 0.1% | Aug 13, 2025 | UsbCoreDxe has a vulnerability which can be used to write arbitrary memory inside SMRAM and execute arbitrary code at SM... |
| CVE-2025-54232 | HIGH | 7.8 | 0.2% | Aug 12, 2025 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in... |
| CVE-2025-54231 | HIGH | 7.8 | 0.2% | Aug 12, 2025 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in... |
| CVE-2025-54230 | HIGH | 7.8 | 0.2% | Aug 12, 2025 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in... |
| CVE-2025-54229 | HIGH | 7.8 | 0.2% | Aug 12, 2025 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in... |
| CVE-2025-49457 | HIGH | 8.8 | 0.5% | Aug 12, 2025 | Untrusted search path in certain Zoom Clients for Windows may allow an unauthenticated user to conduct an escalation of ... |
| CVE-2025-54222 | HIGH | 7.8 | 0.2% | Aug 12, 2025 | Substance3D - Stager versions 3.1.3 and earlier are affected by an out-of-bounds write vulnerability that could result i... |
| CVE-2025-55171 | HIGH | 7.5 | 0.6% | Aug 12, 2025 | WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. Prior to versio... |
| CVE-2025-55170 | HIGH | 7.4 | 0.4% | Aug 12, 2025 | WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. Prior to versio... |
| CVE-2025-55165 | HIGH | 8.2 | 0.2% | Aug 12, 2025 | Autocaliweb is a web app that offers an interface for browsing, reading, and downloading eBooks using a valid Calibre da... |
| CVE-2025-54226 | HIGH | 7.8 | 0.3% | Aug 12, 2025 | InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability that could result in a... |
| CVE-2025-54225 | HIGH | 7.8 | 0.3% | Aug 12, 2025 | InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability that could result in a... |
| CVE-2025-54224 | HIGH | 7.8 | 0.3% | Aug 12, 2025 | InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability that could result in a... |
| CVE-2025-54223 | HIGH | 7.8 | 0.3% | Aug 12, 2025 | InCopy versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary c... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now