2025 CVE Vulnerabilities
45,342 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-49573 | HIGH | 7.8 | 0.2% | Aug 12, 2025 | Substance3D - Modeler versions 1.22.0 and earlier are affected by an out-of-bounds write vulnerability that could result... |
| CVE-2025-49572 | HIGH | 7.8 | 0.2% | Aug 12, 2025 | Substance3D - Modeler versions 1.22.0 and earlier are affected by an out-of-bounds write vulnerability that could result... |
| CVE-2025-49571 | HIGH | 7.8 | 0.2% | Aug 12, 2025 | Substance3D - Modeler versions 1.22.0 and earlier are affected by an Uncontrolled Search Path Element vulnerability that... |
| CVE-2025-49570 | HIGH | 7.8 | 0.2% | Aug 12, 2025 | Photoshop Desktop versions 25.12.3, 26.8 and earlier are affected by an out-of-bounds write vulnerability that could res... |
| CVE-2025-49561 | HIGH | 7.8 | 0.3% | Aug 12, 2025 | Animate versions 23.0.12, 24.0.9 and earlier are affected by a Use After Free vulnerability that could result in arbitra... |
| CVE-2025-49569 | HIGH | 7.8 | 0.2% | Aug 12, 2025 | Substance3D - Viewer versions 0.25 and earlier are affected by an out-of-bounds write vulnerability that could result in... |
| CVE-2025-49560 | HIGH | 7.8 | 0.2% | Aug 12, 2025 | Substance3D - Viewer versions 0.25 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could res... |
| CVE-2025-53744 | HIGH | 7.2 | 0.6% | Aug 12, 2025 | An incorrect privilege assignment vulnerability [CWE-266] in FortiOS Security Fabric version 7.6.0 through 7.6.2, 7.4.0 ... |
| CVE-2025-52970 | HIGH | 8.1 | 10.7% | Aug 12, 2025 | A improper handling of parameters in Fortinet FortiWeb versions 7.6.3 and below, versions 7.4.7 and below, versions 7.2.... |
| CVE-2025-49813 | HIGH | 7.2 | 1.1% | Aug 12, 2025 | An improper neutralization of special elements used in an OS Command ("OS Command Injection") vulnerability [CWE-78] in ... |
| CVE-2025-36124 | HIGH | 7.5 | 0.4% | Aug 12, 2025 | IBM WebSphere Application Server Liberty 17.0.0.3 through 25.0.0.8 could allow a remote attacker to bypass security rest... |
| CVE-2025-53793 | HIGH | 7.5 | 1.2% | Aug 12, 2025 | Improper authentication in Azure Stack allows an unauthorized attacker to disclose information over a network. |
| CVE-2025-53789 | HIGH | 7.8 | 0.3% | Aug 12, 2025 | Missing authentication for critical function in Windows StateRepository API allows an authorized attacker to elevate pri... |
| CVE-2025-53788 | HIGH | 7 | 0.2% | Aug 12, 2025 | Time-of-check time-of-use (toctou) race condition in Windows Subsystem for Linux allows an authorized attacker to elevat... |
| CVE-2025-53784 | HIGH | 8.4 | 0.4% | Aug 12, 2025 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. |
| CVE-2025-53783 | HIGH | 7.5 | 0.8% | Aug 12, 2025 | Heap-based buffer overflow in Microsoft Teams allows an unauthorized attacker to execute code over a network. |
| CVE-2025-53779 | HIGH | 7.2 | 2.6% | Aug 12, 2025 | Relative path traversal in Windows Kerberos allows an authorized attacker to elevate privileges over a network. |
| CVE-2025-53778 | HIGH | 8.8 | 36.1% | Aug 12, 2025 | Improper authentication in Windows NTLM allows an authorized attacker to elevate privileges over a network. |
| CVE-2025-53773 | HIGH | 7.8 | 2.6% | Aug 12, 2025 | Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio ... |
| CVE-2025-53772 | HIGH | 8.8 | 22.3% | Aug 12, 2025 | Deserialization of untrusted data in Web Deploy allows an authorized attacker to execute code over a network. |
| CVE-2025-53761 | HIGH | 7.8 | 0.5% | Aug 12, 2025 | Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. |
| CVE-2025-53760 | HIGH | 7.1 | 11.1% | Aug 12, 2025 | Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to elevate privileges ov... |
| CVE-2025-53759 | HIGH | 7.8 | 0.5% | Aug 12, 2025 | Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
| CVE-2025-53741 | HIGH | 7.8 | 0.5% | Aug 12, 2025 | Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
| CVE-2025-53740 | HIGH | 8.4 | 0.5% | Aug 12, 2025 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now