2025 CVE Vulnerabilities

45,172 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-24294HIGH7.5The attack vector is a potential Denial of Service (DoS). The vulnerability is caused by an insufficient check on the le...
CVE-2025-5199HIGH7.8In Canonical Multipass up to and including version 1.15.1 on macOS, incorrect default permissions allow a local attacker...
CVE-2025-7460HIGH8.8A vulnerability has been found in TOTOLINK T6 4.1.5cu.748_B20211015 and classified as critical. Affected by this vulnera...
CVE-2025-3631HIGH7.5An IBM MQ 9.3 and 9.4 Client connecting to an MQ Queue Manager can cause a SIGSEGV in the AMQRMPPA channel process termi...
CVE-2025-30403HIGH8.1A heap-buffer-overflow vulnerability is possible in mvfst via a specially crafted message during a QUIC session. This is...
CVE-2025-53641HIGH8.2Postiz is an AI social media scheduling tool. From 1.45.1 to 1.62.3, the Postiz frontend application allows an attacker ...
CVE-2025-30402HIGH8.1A heap-buffer-overflow vulnerability in the loading of ExecuTorch methods can cause the runtime to crash and potentially...
CVE-2025-43856HIGH7.3immich is a high performance self-hosted photo and video management solution. Prior to 1.132.0, immich is vulnerable to ...
CVE-2025-7029HIGH8.2A vulnerability in the Software SMI handler (SwSmiInputValue 0xB2) allows a local attacker to control the RBX register, ...
CVE-2025-7028HIGH7.8A vulnerability in the Software SMI handler (SwSmiInputValue 0x20) allows a local attacker to supply a crafted pointer (...
CVE-2025-7027HIGH8.2A vulnerability in the Software SMI handler (SwSmiInputValue 0xB2) allows a local attacker to control both the read and ...
CVE-2025-7026HIGH8.2A vulnerability in the Software SMI handler (SwSmiInputValue 0xB2) allows a local attacker to control the RBX register, ...
CVE-2025-52988HIGH8.4An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in the CLI o...
CVE-2025-52984HIGH8.2A NULL Pointer Dereference vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS ...
CVE-2025-52983HIGH8.6A UI Discrepancy for Security Feature vulnerability in the UI of Juniper Networks Junos OS on VM Host systems allows a ...
CVE-2025-52982HIGH8.2An Improper Resource Shutdown or Release vulnerability in the SIP ALG of Juniper Networks Junos OS on MX Series with MS-...
CVE-2025-52981HIGH8.7An Improper Check for Unusual or Exceptional Conditions vulnerability in the flow processing daemon (flowd) of Juniper N...
CVE-2025-52980HIGH8.7A Use of Incorrect Byte Ordering vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS on ...
CVE-2025-52964HIGH7.1A Reachable Assertion vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolv...
CVE-2025-52955HIGH7.1An Incorrect Calculation of Buffer Size vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS ...
CVE-2025-52954HIGH8.5A Missing Authorization vulnerability in the internal virtual routing and forwarding (VRF) of Juniper Networks Junos OS ...
CVE-2025-52953HIGH7.1An Expected Behavior Violation vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos...
CVE-2025-52952HIGH7.1An Out-of-bounds Write vulnerability in the connectivity fault management (CFM) daemon of Juniper Networks Junos OS on M...
CVE-2025-52949HIGH7.1An Improper Handling of Length Parameter Inconsistency vulnerability in the routing protocol daemon (rpd) of Juniper Net...
CVE-2025-52948HIGH8.2An Improper Handling of Exceptional Conditions vulnerability in Berkeley Packet Filter (BPF) processing of Juniper Netwo...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now