2025 CVE Vulnerabilities

45,172 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-50059HIGH8.6Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE...
CVE-2025-49828HIGH8.8Conjur provides secrets management and application identity for infrastructure. Conjur OSS versions 1.19.5 through 1.21....
CVE-2025-30762HIGH7.5Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions t...
CVE-2025-30751HIGH8.8Vulnerability in the Oracle Database component of Oracle Database Server. Supported versions that are affected are 19.2...
CVE-2025-30749HIGH8.1Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE...
CVE-2025-30744HIGH8.1Vulnerability in the Oracle Mobile Field Service product of Oracle E-Business Suite (component: Multiplatform Sync Error...
CVE-2025-30743HIGH8.1Vulnerability in the Oracle Lease and Finance Management product of Oracle E-Business Suite (component: Internal Operati...
CVE-2025-41239HIGH7.1VMware ESXi, Workstation, Fusion, and VMware Tools contains an information disclosure vulnerability due to the usage of ...
CVE-2025-7657HIGH8.8Use after free in WebRTC in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially exploit heap ...
CVE-2025-7656HIGH8.8Integer overflow in V8 in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially exploit heap co...
CVE-2025-6558HIGH8.8Insufficient validation of untrusted input in ANGLE and GPU in Google Chrome prior to 138.0.7204.157 allowed a remote at...
CVE-2025-53959HIGH7.6In JetBrains YouTrack before 2025.2.86069, 2024.3.85077, 2025.1.86199 email spoofing via an administrative API was pos...
CVE-2025-53895HIGH8.8ZITADEL is an open source identity management system. Starting in version 2.53.0 and prior to versions 4.0.0-rc.2, 3.3.2...
CVE-2025-26186HIGH8.1SQL Injection vulnerability in openSIS v.9.1 allows a remote attacker to execute arbitrary code via the id parameter in ...
CVE-2025-50819HIGH7.1Directory traversal vulnerability in beiyuouo arxiv-daily thru 2025-05-06 (commit fad168770b0e68aef3e5acfa16bb2e7a7765d6...
CVE-2025-7042HIGH7.8Use After Free vulnerability exists in the IPT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desk...
CVE-2025-6974HIGH7.8Use of Uninitialized Variable vulnerability exists in the JT file reading procedure in SOLIDWORKS eDrawings on Release S...
CVE-2025-6973HIGH7.8Use After Free vulnerability exists in the JT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Deskt...
CVE-2025-6972HIGH7.8Use After Free vulnerability exists in the CATPRODUCT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWOR...
CVE-2025-6971HIGH7.8Use After Free vulnerability exists in the CATPRODUCT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWOR...
CVE-2025-0831HIGH7.8Out-Of-Bounds Read vulnerability exists in the JT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS D...
CVE-2025-6965HIGH7.7There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the numbe...
CVE-2025-34116HIGH8.7A remote command execution vulnerability exists in IPFire before version 2.19 Core Update 101 via the 'proxy.cgi' CGI in...
CVE-2025-34115HIGH8.7An authenticated command injection vulnerability exists in OP5 Monitor through version 7.1.9 via the 'cmd_str' parameter...
CVE-2025-34113HIGH8.7An authenticated command injection vulnerability exists in Tiki Wiki CMS versions ≤14.1, ≤12.4 LTS, ≤9.10 LTS, and ≤6.14...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now