2025 CVE Vulnerabilities

45,342 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-55209MEDIUM5.1contactmanager is a module for FreePBX@, which is an open source GUI that controls and manages Asterisk© (PBX). In versi...
CVE-2025-22415MEDIUM4In android_app of Android.bp, there is a possible way to launch any activity as a system user. This could lead to local ...
CVE-2025-48562MEDIUM5In writeContent of RemotePrintDocument.java, there is a possible information disclosure due to a logic error. This could...
CVE-2025-48561MEDIUM5.5In multiple locations, there is a possible way to access data displayed on the screen due to side channel information di...
CVE-2025-48560MEDIUM5.5In AndroidManifest.xml, there is a possible way for an app to monitor motion events due to a confused deputy. This could...
CVE-2025-48559MEDIUM5.5In multiple functions of AppOpsService.java, there is a possible add a large amount of app ops due to improper input val...
CVE-2025-48554MEDIUM6.1In handlePackagesChanged of DevicePolicyManagerService.java, there is a possible persistent denial of service due to a l...
CVE-2025-48551MEDIUM5In multiple locations, there is a possible leak of an image across the Android User isolation boundary due to a confused...
CVE-2025-48550MEDIUM5.5In testGrantSlicePermission of SliceManagerTest.java, there is a possible permanent denial of service due to a path trav...
CVE-2025-48542MEDIUM5.5In multiple functions of AccountManagerService.java, there is a possible permanent denial of service due to resource exh...
CVE-2025-48538MEDIUM5.5In setApplicationHiddenSettingAsUser of PackageManagerService.java, there is a possible way to hide a system critical pa...
CVE-2025-48529MEDIUM5.5In setRingtoneUri of VoicemailNotificationSettingsUtil.java , there is a possible cross user data leak due to a confused...
CVE-2025-48528MEDIUM4In multiple locations, there is a possible way to overlay biometrics due to a tapjacking/overlay attack. This could lead...
CVE-2025-48527MEDIUM6.2In multiple locations, there is a possible way to leak hidden work profile notifications due to a logic error in the cod...
CVE-2025-48526MEDIUM4In createMultiProfilePagerAdapter of ChooserActivity.java , there is a possible way for an app to launch the ChooserActi...
CVE-2025-48524MEDIUM5.5In isSystem of WifiPermissionsUtil.java, there is a possible permission bypass due to a missing permission check. This c...
CVE-2025-32330MEDIUM5.7In generateRandomPassword of LocalBluetoothLeBroadcast.java, there is a possible way to intercept the Auracast audio str...
CVE-2025-26463MEDIUM5.5In allowPackageAccess of multiple files, resource exhaustion is possible when repeatedly adding allowed packages. This c...
CVE-2025-26456MEDIUM5.5In multiple functions of DexUseManagerLocal.java, there is a possible way to crash system server due to a logic error in...
CVE-2025-26453MEDIUM5.5In isContentUriForOtherUser of BluetoothOppSendFileInfo.java, there is a possible cross user data leak due to a logic er...
CVE-2025-26449MEDIUM5.5In multiple locations, there is a possible permanent denial of service due to resource exhaustion. This could lead to lo...
CVE-2025-26448MEDIUM5.5In writeToParcel of CursorWindow.cpp, there is a possible out of bounds read due to uninitialized data. This could lead ...
CVE-2025-26445MEDIUM5.5In offerNetwork of ConnectivityService.java, there is a possible leak of sensitive data due to a missing permission chec...
CVE-2025-26442MEDIUM5.5In onCreate of NotificationAccessConfirmationActivity.java, there is a possible incorrect verification of proper intent ...
CVE-2025-26441MEDIUM6.5In add_attr of sdp_discovery.cc, there is a possible out of bounds read due to a missing bounds check. This could lead t...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now