2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-47386HIGH7.8Memory Corruption while invoking IOCTL calls when concurrent access to shared buffer occurs.
CVE-2025-47385HIGH7.8Memory Corruption when accessing trusted execution environment without proper privilege check.
CVE-2025-47383HIGH7.2Weak configuration may lead to cryptographic issue when a VoWiFi call is triggered from UE.
CVE-2025-47381HIGH7.8Memory Corruption while processing IOCTL calls when concurrent access to shared buffer occurs.
CVE-2025-47379HIGH7.8Memory Corruption when concurrent access to shared buffer occurs due to improper synchronization between assignment and ...
CVE-2025-47378HIGH7.1Cryptographic Issue when a shared VM reference allows HLOS to boot loader and access cert chain.
CVE-2025-47377HIGH7.8Memory Corruption when accessing a buffer after it has been freed while processing IOCTL calls.
CVE-2025-47376HIGH7.8Memory Corruption when concurrent access to shared buffer occurs during IOCTL calls.
CVE-2025-47375HIGH7.8Memory corruption while handling different IOCTL calls from the user-space simultaneously.
CVE-2025-47373HIGH7.8Memory Corruption when accessing buffers with invalid length during TA invocation.
CVE-2025-52469HIGH7.1Chamilo is a learning management system. Prior to version 1.11.30, a logic vulnerability in the friend request workflow ...
CVE-2025-50197HIGH7.2Chamilo is a learning management system. Prior to version 1.11.30, there is an OS Command Injection vulnerability in /ma...
CVE-2025-50196HIGH7.2Chamilo is a learning management system. Prior to version 1.11.30, there is an OS Command Injection vulnerability in /pl...
CVE-2025-50195HIGH7.2Chamilo is a learning management system. Prior to version 1.11.30, there is an OS Command Injection vulnerability in /pl...
CVE-2025-50194HIGH7.2Chamilo is a learning management system. Prior to version 1.11.30, there is an OS Command Injection vulnerability in /ma...
CVE-2025-50193HIGH7.2Chamilo is a learning management system. Prior to version 1.11.30, there is an OS command Injection vulnerability in /pl...
CVE-2025-58107HIGH7.5In Microsoft Exchange through 2019, Exchange ActiveSync (EAS) configurations on on-premises servers may transmit sensiti...
CVE-2025-52482HIGH8.3Chamilo is a learning management system. Prior to version 1.11.30, a Stored XSS vulnerability exists in the glossary fun...
CVE-2025-50191HIGH7.2Chamilo is a learning management system. Prior to version 1.11.30, there is an error-based SQL Injection via POST userFi...
CVE-2025-50189HIGH8.8Chamilo is a learning management system. Prior to version 1.11.30, the application performs insufficient validation of d...
CVE-2025-50188HIGH7.2Chamilo is a learning management system. Prior to version 1.11.30, the application performs insufficient validation of d...
CVE-2025-58402HIGH7.5The CGM CLININET application uses direct, sequential object identifiers "MessageID" without proper authorization checks....
CVE-2025-30042HIGH7.8The CGM CLININET system provides smart card authentication; however, authentication is conducted locally on the client d...
CVE-2025-10350HIGH8.8SQL Injection vulnerability in "imageserver" module when processing C-FIND queries in CGM NETRAAD software allows attack...
CVE-2025-13673HIGH7.5The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to SQL Injection via the 'coupon...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now