2025 CVE Vulnerabilities
45,342 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-39765 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: ALSA: timer: fix ida_free call while not allocated ... |
| CVE-2025-39764 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: remove refcounting in expecta... |
| CVE-2025-39763 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: ACPI: APEI: send SIGBUS to current task if synchron... |
| CVE-2025-39762 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: add null check [WHY] Prevents nul... |
| CVE-2025-39758 | MEDIUM | 5.5 | 0.4% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Fix the sendmsg byte count in siw_tcp_sen... |
| CVE-2025-39756 | MEDIUM | 5.5 | 0.2% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: fs: Prevent file descriptor table allocations excee... |
| CVE-2025-39754 | MEDIUM | 4.7 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm/smaps: fix race between smaps_hugetlb_range and ... |
| CVE-2025-39753 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: gfs2: Set .migrate_folio in gfs2_{rgrp,meta}_aops ... |
| CVE-2025-39752 | MEDIUM | 5.5 | 0.2% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: ARM: rockchip: fix kernel hang during smp initializ... |
| CVE-2025-39748 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: bpf: Forget ranges when refining tnum after JSET S... |
| CVE-2025-39747 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/msm: Add error handling for krealloc in metadat... |
| CVE-2025-39746 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath10k: shutdown driver when hardware is unre... |
| CVE-2025-39745 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: rcutorture: Fix rcutorture_one_extend_check() splat... |
| CVE-2025-39742 | MEDIUM | 5.5 | 0.2% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: RDMA: hfi1: fix possible divide-by-zero in find_hw_... |
| CVE-2025-39741 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/xe/migrate: don't overflow max copy size With ... |
| CVE-2025-39739 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: iommu/arm-smmu-qcom: Add SM6115 MDSS compatible Ad... |
| CVE-2025-39737 | MEDIUM | 5.5 | 0.2% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm/kmemleak: avoid soft lockup in __kmemleak_do_cle... |
| CVE-2025-39736 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm/kmemleak: avoid deadlock by moving pr_warn() out... |
| CVE-2025-26499 | MEDIUM | 6 | 0.1% | Sep 11, 2025 | Under heavy system utilization a random race condition can occur during authentication or token refresh operation. This ... |
| CVE-2025-8716 | MEDIUM | 5.8 | 0.2% | Sep 11, 2025 | In Content Management versions 20.4- 25.3 authenticated attackers may exploit a complex cache poisoning technique to dow... |
| CVE-2025-40696 | MEDIUM | 5.4 | 0.2% | Sep 11, 2025 | Stored Cross Site Scripting in Online Fire Reporting System v1.2 by PHPGurukul, that consists in a stored authenticated ... |
| CVE-2025-40695 | MEDIUM | 5.4 | 0.2% | Sep 11, 2025 | Stored Cross Site Scripting in Online Fire Reporting System v1.2 by PHPGurukul, that consists in a stored authenticated ... |
| CVE-2025-40694 | MEDIUM | 5.4 | 0.2% | Sep 11, 2025 | Stored Cross Site Scripting in Online Fire Reporting System v1.2 by PHPGurukul, that consists in a stored authenticated ... |
| CVE-2025-40693 | MEDIUM | 5.4 | 0.2% | Sep 11, 2025 | Stored Cross Site Scripting in Online Fire Reporting System v1.2 by PHPGurukul, that consists in a reflected and stored ... |
| CVE-2025-10250 | MEDIUM | 5 | 0.2% | Sep 11, 2025 | A weakness has been identified in DJI Mavic Spark, Mavic Air and Mavic Mini 01.00.0500. Affected is an unknown function ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now