2025 CVE Vulnerabilities

45,172 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-52454HIGH8.2Server-Side Request Forgery (SSRF) vulnerability in Salesforce Tableau Server on Windows, Linux (Amazon S3 Connector mod...
CVE-2025-52453HIGH8.2Server-Side Request Forgery (SSRF) vulnerability in Salesforce Tableau Server on Windows, Linux (Flow Data Source module...
CVE-2025-52452HIGH8.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Salesforce Tableau Serve...
CVE-2025-52449HIGH8.5Unrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (Extensible...
CVE-2025-52448HIGH8.1Authorization Bypass Through User-Controlled Key vulnerability in Salesforce Tableau Server on Windows, Linux (validate-...
CVE-2025-52447HIGH8.1Authorization Bypass Through User-Controlled Key vulnerability in Salesforce Tableau Server on Windows, Linux (set-initi...
CVE-2025-52446HIGH8Authorization Bypass Through User-Controlled Key vulnerability in Salesforce Tableau Server on Windows, Linux (tab-doc a...
CVE-2025-8164HIGH8.8A vulnerability has been found in code-projects Public Chat Room 1.0 and classified as critical. This vulnerability affe...
CVE-2025-8163HIGH8.8A vulnerability, which was classified as critical, was found in deerwms deer-wms-2 up to 3.3. This affects an unknown pa...
CVE-2025-8162HIGH8.8A vulnerability, which was classified as critical, has been found in deerwms deer-wms-2 up to 3.3. Affected by this issu...
CVE-2025-8161HIGH8.8A vulnerability classified as critical was found in deerwms deer-wms-2 up to 3.3. Affected by this vulnerability is an u...
CVE-2025-36728HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Simplehelp.This issue affects Simplehelp: before 5.5.11.
CVE-2025-36727HIGH8.8Inclusion of Functionality from Untrusted Control Sphere vulnerability in Simplehelp.This issue affects Simplehelp: befo...
CVE-2025-45466HIGH8.8Unitree Go1 <= Go1_2022_05_11 is vulnerale to Incorrect Access Control due to authentication credentials being hardcoded...
CVE-2025-38464HIGH7.8In the Linux kernel, the following vulnerability has been resolved: tipc: Fix use-after-free in tipc_conn_close(). syz...
CVE-2025-38459HIGH7.8In the Linux kernel, the following vulnerability has been resolved: atm: clip: Fix infinite recursive call of clip_push...
CVE-2025-38456HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ipmi:msghandler: Fix potential memory corruption in...
CVE-2025-38447HIGH7.1In the Linux kernel, the following vulnerability has been resolved: mm/rmap: fix potential out-of-bounds page table acc...
CVE-2025-38446HIGH7.1In the Linux kernel, the following vulnerability has been resolved: clk: imx: Fix an out-of-bounds access in dispmix_cs...
CVE-2025-38445HIGH7.1In the Linux kernel, the following vulnerability has been resolved: md/raid1: Fix stack memory use after return in raid...
CVE-2025-38443HIGH7.8In the Linux kernel, the following vulnerability has been resolved: nbd: fix uaf in nbd_genl_connect() error path Ther...
CVE-2025-38437HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix potential use-after-free in oplock/lease...
CVE-2025-34139HIGH8.7A vulnerability exists in Sitecore Experience Manager (XM), Experience Platform (XP), Experience Commerce (XC), and Mana...
CVE-2025-34114HIGH8.4A client-side security misconfiguration vulnerability exists in OpenBlow whistleblowing platform across multiple version...
CVE-2025-8160HIGH8.8A vulnerability classified as critical has been found in Tenda AC20 up to 16.03.08.12. Affected is an unknown function o...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now