2025 CVE Vulnerabilities
45,169 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-26445 | MEDIUM | 5.5 | 0.1% | Sep 4, 2025 | In offerNetwork of ConnectivityService.java, there is a possible leak of sensitive data due to a missing permission chec... |
| CVE-2025-26442 | MEDIUM | 5.5 | 0.1% | Sep 4, 2025 | In onCreate of NotificationAccessConfirmationActivity.java, there is a possible incorrect verification of proper intent ... |
| CVE-2025-26441 | MEDIUM | 6.5 | 0.3% | Sep 4, 2025 | In add_attr of sdp_discovery.cc, there is a possible out of bounds read due to a missing bounds check. This could lead t... |
| CVE-2025-26437 | MEDIUM | 5.5 | 0.1% | Sep 4, 2025 | In CredentialManagerServiceStub of CredentialManagerService.java, there is a possible way to retrieve candidate credenti... |
| CVE-2025-26432 | MEDIUM | 5.5 | 0.1% | Sep 4, 2025 | In multiple locations, there is a possible way to persistently DoS the device due to a missing length check. This could ... |
| CVE-2025-26429 | MEDIUM | 5.5 | 0.1% | Sep 4, 2025 | In collectOps of AppOpsService.java, there is a possible way to cause permanent DoS due to improper input validation. Th... |
| CVE-2025-26427 | MEDIUM | 4.4 | 0.1% | Sep 4, 2025 | In multiple locations, there is a possible Android/data access due to a path traversal error. This could lead to local e... |
| CVE-2025-26426 | MEDIUM | 5.1 | 0.1% | Sep 4, 2025 | In BroadcastController.java of registerReceiverWithFeatureTraced, there is a possible way to receive broadcasts meant fo... |
| CVE-2025-26425 | MEDIUM | 4 | 0.1% | Sep 4, 2025 | In multiple functions of RoleService.java, there is a possible permission squatting vulnerability due to a logic error i... |
| CVE-2025-26424 | MEDIUM | 4 | 0.1% | Sep 4, 2025 | In multiple functions of VpnManager.java, there is a possible cross-user data leak due to a logic error in the code. Thi... |
| CVE-2025-26423 | MEDIUM | 6.2 | 0.1% | Sep 4, 2025 | In validateIpConfiguration of WifiConfigurationUtil.java, there is a possible way to trigger a permanent DoS due to a mi... |
| CVE-2025-26422 | MEDIUM | 4 | 0.1% | Sep 4, 2025 | In dump of WindowManagerService.java, there is a possible way of running dumpsys without the required permission due to ... |
| CVE-2025-26421 | MEDIUM | 4 | 0.1% | Sep 4, 2025 | In multiple locations, there is a possible lock screen bypass due to a logic error in the code. This could lead to local... |
| CVE-2025-26420 | MEDIUM | 4.4 | 0.1% | Sep 4, 2025 | In multiple functions of GrantPermissionsActivity.java , there is a possible way to trick the user into granting the inc... |
| CVE-2025-22425 | MEDIUM | 5.1 | 0.1% | Sep 4, 2025 | In onCreate of InstallStart.java, there is a possible permissions bypass due to improper input validation. This could le... |
| CVE-2025-0087 | MEDIUM | 5.1 | 0.2% | Sep 4, 2025 | In onCreate of UninstallerActivity.java, there is a possible way to uninstall a different user's app due to a missing pe... |
| CVE-2025-0077 | MEDIUM | 4 | 0.1% | Sep 4, 2025 | In multiple functions of UserController.java, there is a possible lock screen bypass due to a race condition. This could... |
| CVE-2025-57576 | MEDIUM | 5.4 | 0.2% | Sep 4, 2025 | PHPGurukul Online Shopping Portal 2.1 is vulnerable to Cross Site Scripting (XSS) in /admin/updateorder.php. |
| CVE-2025-38727 | MEDIUM | 5.5 | 0.2% | Sep 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: netlink: avoid infinite retry looping in netlink_un... |
| CVE-2025-38726 | MEDIUM | 5.5 | 0.1% | Sep 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: ftgmac100: fix potential NULL pointer access i... |
| CVE-2025-38725 | MEDIUM | 5.5 | 0.1% | Sep 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: usb: asix_devices: add phy_mask for ax88772 md... |
| CVE-2025-38723 | MEDIUM | 5.5 | 0.2% | Sep 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: LoongArch: BPF: Fix jump offset calculation in tail... |
| CVE-2025-38721 | MEDIUM | 5.5 | 0.2% | Sep 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: fix refcount leak on table du... |
| CVE-2025-38720 | MEDIUM | 5.5 | 0.1% | Sep 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: hibmcge: fix rtnl deadlock issue Currently, t... |
| CVE-2025-38719 | MEDIUM | 5.5 | 0.1% | Sep 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: hibmcge: fix the division by zero issue When ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now