2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-47386 | HIGH | 7.8 | 0.1% | Mar 2, 2026 | Memory Corruption while invoking IOCTL calls when concurrent access to shared buffer occurs. |
| CVE-2025-47385 | HIGH | 7.8 | 0.1% | Mar 2, 2026 | Memory Corruption when accessing trusted execution environment without proper privilege check. |
| CVE-2025-47383 | HIGH | 7.2 | 0.1% | Mar 2, 2026 | Weak configuration may lead to cryptographic issue when a VoWiFi call is triggered from UE. |
| CVE-2025-47381 | HIGH | 7.8 | 0.1% | Mar 2, 2026 | Memory Corruption while processing IOCTL calls when concurrent access to shared buffer occurs. |
| CVE-2025-47379 | HIGH | 7.8 | 0.1% | Mar 2, 2026 | Memory Corruption when concurrent access to shared buffer occurs due to improper synchronization between assignment and ... |
| CVE-2025-47378 | HIGH | 7.1 | 0.1% | Mar 2, 2026 | Cryptographic Issue when a shared VM reference allows HLOS to boot loader and access cert chain. |
| CVE-2025-47377 | HIGH | 7.8 | 0.1% | Mar 2, 2026 | Memory Corruption when accessing a buffer after it has been freed while processing IOCTL calls. |
| CVE-2025-47376 | HIGH | 7.8 | 0.1% | Mar 2, 2026 | Memory Corruption when concurrent access to shared buffer occurs during IOCTL calls. |
| CVE-2025-47375 | HIGH | 7.8 | 0.1% | Mar 2, 2026 | Memory corruption while handling different IOCTL calls from the user-space simultaneously. |
| CVE-2025-47373 | HIGH | 7.8 | 0.1% | Mar 2, 2026 | Memory Corruption when accessing buffers with invalid length during TA invocation. |
| CVE-2025-52469 | HIGH | 7.1 | 0.3% | Mar 2, 2026 | Chamilo is a learning management system. Prior to version 1.11.30, a logic vulnerability in the friend request workflow ... |
| CVE-2025-50197 | HIGH | 7.2 | 2.7% | Mar 2, 2026 | Chamilo is a learning management system. Prior to version 1.11.30, there is an OS Command Injection vulnerability in /ma... |
| CVE-2025-50196 | HIGH | 7.2 | 2.7% | Mar 2, 2026 | Chamilo is a learning management system. Prior to version 1.11.30, there is an OS Command Injection vulnerability in /pl... |
| CVE-2025-50195 | HIGH | 7.2 | 2.7% | Mar 2, 2026 | Chamilo is a learning management system. Prior to version 1.11.30, there is an OS Command Injection vulnerability in /pl... |
| CVE-2025-50194 | HIGH | 7.2 | 2.6% | Mar 2, 2026 | Chamilo is a learning management system. Prior to version 1.11.30, there is an OS Command Injection vulnerability in /ma... |
| CVE-2025-50193 | HIGH | 7.2 | 2.6% | Mar 2, 2026 | Chamilo is a learning management system. Prior to version 1.11.30, there is an OS command Injection vulnerability in /pl... |
| CVE-2025-58107 | HIGH | 7.5 | 0.3% | Mar 2, 2026 | In Microsoft Exchange through 2019, Exchange ActiveSync (EAS) configurations on on-premises servers may transmit sensiti... |
| CVE-2025-52482 | HIGH | 8.3 | 0.4% | Mar 2, 2026 | Chamilo is a learning management system. Prior to version 1.11.30, a Stored XSS vulnerability exists in the glossary fun... |
| CVE-2025-50191 | HIGH | 7.2 | 0.5% | Mar 2, 2026 | Chamilo is a learning management system. Prior to version 1.11.30, there is an error-based SQL Injection via POST userFi... |
| CVE-2025-50189 | HIGH | 8.8 | 0.7% | Mar 2, 2026 | Chamilo is a learning management system. Prior to version 1.11.30, the application performs insufficient validation of d... |
| CVE-2025-50188 | HIGH | 7.2 | 0.7% | Mar 2, 2026 | Chamilo is a learning management system. Prior to version 1.11.30, the application performs insufficient validation of d... |
| CVE-2025-58402 | HIGH | 7.5 | 0.2% | Mar 2, 2026 | The CGM CLININET application uses direct, sequential object identifiers "MessageID" without proper authorization checks.... |
| CVE-2025-30042 | HIGH | 7.8 | 0.1% | Mar 2, 2026 | The CGM CLININET system provides smart card authentication; however, authentication is conducted locally on the client d... |
| CVE-2025-10350 | HIGH | 8.8 | 0.2% | Mar 2, 2026 | SQL Injection vulnerability in "imageserver" module when processing C-FIND queries in CGM NETRAAD software allows attack... |
| CVE-2025-13673 | HIGH | 7.5 | 0.5% | Feb 28, 2026 | The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to SQL Injection via the 'coupon... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now