2025 CVE Vulnerabilities
45,172 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-40330 | — | — | 0.2% | Dec 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Shutdown FW DMA in bnxt_shutdown() The ne... |
| CVE-2025-40329 | — | — | 0.2% | Dec 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/sched: Fix deadlock in drm_sched_entity_kill_jo... |
| CVE-2025-40328 | HIGH | 8.8 | 0.2% | Dec 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential UAF in smb2_close_cached... |
| CVE-2025-40327 | — | — | 0.2% | Dec 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: perf/core: Fix system hang caused by cpu-clock usag... |
| CVE-2025-2296 | HIGH | 8.4 | 0.7% | Dec 9, 2025 | EDK2 contains a vulnerability in BIOS where an attacker may cause “ Improper Input Validation” by local access. Successf... |
| CVE-2025-14345 | MEDIUM | 5.4 | 0.2% | Dec 9, 2025 | A post-authentication flaw in the network two-phase commit protocol used for cross-shard transactions in MongoDB Server ... |
| CVE-2025-14333 | HIGH | 8.1 | 0.4% | Dec 9, 2025 | Memory safety bugs present in Firefox ESR 140.5, Thunderbird ESR 140.5, Firefox 145 and Thunderbird 145. Some of these b... |
| CVE-2025-14332 | HIGH | 7.3 | 0.3% | Dec 9, 2025 | Memory safety bugs present in Firefox 145 and Thunderbird 145. Some of these bugs showed evidence of memory corruption a... |
| CVE-2025-14331 | MEDIUM | 6.5 | 0.2% | Dec 9, 2025 | Same-origin policy bypass in the Request Handling component. This vulnerability was fixed in Firefox 146, Firefox ESR 11... |
| CVE-2025-14330 | CRITICAL | 9.8 | 0.4% | Dec 9, 2025 | JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 140... |
| CVE-2025-14329 | HIGH | 8.8 | 0.3% | Dec 9, 2025 | Privilege escalation in the Netmonitor component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunde... |
| CVE-2025-14328 | HIGH | 8.8 | 0.3% | Dec 9, 2025 | Privilege escalation in the Netmonitor component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunde... |
| CVE-2025-14327 | HIGH | 7.5 | 0.3% | Dec 9, 2025 | Spoofing issue in the Downloads Panel component. This vulnerability was fixed in Firefox 146, Thunderbird 146, Firefox E... |
| CVE-2025-14326 | CRITICAL | 9.8 | 0.4% | Dec 9, 2025 | Use-after-free in the Audio/Video: GMP component. This vulnerability was fixed in Firefox 146 and Thunderbird 146. |
| CVE-2025-14325 | HIGH | 7.3 | 0.3% | Dec 9, 2025 | JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 140... |
| CVE-2025-14324 | CRITICAL | 9.8 | 0.5% | Dec 9, 2025 | JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 115... |
| CVE-2025-14323 | HIGH | 8.8 | 0.3% | Dec 9, 2025 | Privilege escalation in the DOM: Notifications component. This vulnerability was fixed in Firefox 146, Firefox ESR 115.3... |
| CVE-2025-14322 | HIGH | 8 | 0.3% | Dec 9, 2025 | Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed... |
| CVE-2025-14321 | CRITICAL | 9.8 | 0.5% | Dec 9, 2025 | Use-after-free in the WebRTC: Signaling component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thund... |
| CVE-2025-14311 | MEDIUM | 6.8 | 0.2% | Dec 9, 2025 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in JMRI.This issue affects ... |
| CVE-2025-14310 | CRITICAL | 9.3 | 0.4% | Dec 9, 2025 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in rethinkdb.This issue affects ret... |
| CVE-2025-14309 | HIGH | 7.5 | 0.4% | Dec 9, 2025 | NULL Pointer Dereference vulnerability in ravynsoft ravynos.This issue affects ravynos: through 0.5.2. |
| CVE-2025-14308 | CRITICAL | 9.8 | 0.5% | Dec 9, 2025 | An integer overflow vulnerability exists in the write method of the Buffer class in Robocode version 1.9.3.6. The method... |
| CVE-2025-14307 | HIGH | 8.1 | 0.3% | Dec 9, 2025 | An insecure temporary file creation vulnerability exists in the AutoExtract component of Robocode version 1.9.3.6. The c... |
| CVE-2025-14306 | CRITICAL | 9.1 | 0.9% | Dec 9, 2025 | A directory traversal vulnerability exists in the CacheCleaner component of Robocode version 1.9.3.6. The recursivelyDel... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now