2025 CVE Vulnerabilities

45,169 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-53133HIGH7.8Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges locally.
CVE-2025-53132HIGH7.8Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX all...
CVE-2025-53131HIGH8.8Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
CVE-2025-50177HIGH8.1Use after free in Windows Message Queuing allows an unauthorized attacker to execute code over a network.
CVE-2025-50176HIGH7.8Access of resource using incompatible type ('type confusion') in Graphics Kernel allows an authorized attacker to execut...
CVE-2025-50173HIGH7.8Weak authentication in Windows Installer allows an authorized attacker to elevate privileges locally.
CVE-2025-50170HIGH7.8Improper handling of insufficient permissions or privileges in Windows Cloud Files Mini Filter Driver allows an authoriz...
CVE-2025-50169HIGH7.5Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB allows an una...
CVE-2025-50168HIGH7.8Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an authorized attacker to...
CVE-2025-50167HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an...
CVE-2025-50164HIGH8Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute ...
CVE-2025-50163HIGH8.8Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execut...
CVE-2025-50162HIGH8Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute ...
CVE-2025-50161HIGH7.3Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
CVE-2025-50160HIGH8Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute ...
CVE-2025-50159HIGH7.3Use after free in Remote Access Point-to-Point Protocol (PPP) EAP-TLS allows an authorized attacker to elevate privilege...
CVE-2025-50158HIGH7Time-of-check time-of-use (toctou) race condition in Windows NTFS allows an unauthorized attacker to disclose informatio...
CVE-2025-50155HIGH7.8Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacke...
CVE-2025-50153HIGH7.8Use after free in Desktop Windows Manager allows an authorized attacker to elevate privileges locally.
CVE-2025-49762HIGH7Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Functio...
CVE-2025-49761HIGH7.8Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2025-49759HIGH8.8Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized ...
CVE-2025-49758HIGH8.8Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized ...
CVE-2025-49757HIGH8.8Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execut...
CVE-2025-49712HIGH8.8Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a ne...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now