2025 CVE Vulnerabilities
45,172 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-38338 | HIGH | 7.8 | 0.2% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: fs/nfs/read: fix double-unlock bug in nfs_return_em... |
| CVE-2025-38330 | HIGH | 7.1 | 0.1% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: firmware: cs_dsp: Fix OOB memory read access in KUn... |
| CVE-2025-38329 | HIGH | 7.1 | 0.2% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: firmware: cs_dsp: Fix OOB memory read access in KUn... |
| CVE-2025-38323 | HIGH | 7.8 | 0.2% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: atm: add lec_mutex syzbot found its way in ne... |
| CVE-2025-38320 | HIGH | 7.1 | 0.2% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: arm64/ptrace: Fix stack-out-of-bounds read in regs_... |
| CVE-2025-38317 | HIGH | 7.8 | 0.2% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Fix buffer overflow in debugfs If th... |
| CVE-2025-38313 | HIGH | 7.8 | 0.2% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: bus: fsl-mc: fix double-free on mc_dev The blamed ... |
| CVE-2025-38298 | HIGH | 7.8 | 0.2% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: EDAC/skx_common: Fix general protection fault Afte... |
| CVE-2025-38295 | HIGH | 7.8 | 0.2% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: perf/amlogic: Replace smp_processor_id() with raw_s... |
| CVE-2025-38292 | HIGH | 7.1 | 0.2% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix invalid access to memory In ath1... |
| CVE-2025-38289 | HIGH | 7.8 | 0.2% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Avoid potential ndlp use-after-free in ... |
| CVE-2025-38288 | HIGH | 7.8 | 0.2% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: scsi: smartpqi: Fix smp_processor_id() call trace f... |
| CVE-2025-38286 | HIGH | 7.1 | 0.2% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: pinctrl: at91: Fix possible out-of-boundary access ... |
| CVE-2025-38280 | HIGH | 7.8 | 0.2% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: bpf: Avoid __bpf_prog_ret0_warn when jit fails syz... |
| CVE-2025-38279 | HIGH | 7.8 | 0.2% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: bpf: Do not include stack ptr register in precision... |
| CVE-2025-38270 | HIGH | 7.8 | 0.2% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: drv: netdevsim: don't napi_complete() from net... |
| CVE-2025-38267 | HIGH | 7.8 | 0.2% | Jul 10, 2025 | In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Do not trigger WARN_ON() due to a comm... |
| CVE-2025-32988 | HIGH | 8.2 | 1.2% | Jul 10, 2025 | A flaw was found in GnuTLS. A double-free vulnerability exists in GnuTLS due to incorrect ownership handling in the expo... |
| CVE-2025-6970 | HIGH | 7.5 | 55.7% | Jul 9, 2025 | The Events Manager – Calendar, Bookings, Tickets, and more! plugin for WordPress is vulnerable to time-based SQL Injecti... |
| CVE-2025-0141 | HIGH | 8.4 | 0.2% | Jul 9, 2025 | An incorrect privilege assignment vulnerability in the Palo Alto Networks GlobalProtect™ App on enables a locally authen... |
| CVE-2025-6377 | HIGH | 7.8 | 0.2% | Jul 9, 2025 | A remote code execution security issue exists in the Rockwell Automation Arena®. A crafted DOE file can force Arena Sim... |
| CVE-2025-6376 | HIGH | 7.8 | 0.2% | Jul 9, 2025 | A remote code execution security issue exists in the Rockwell Automation Arena®. A crafted DOE file can force Arena Sim... |
| CVE-2025-53548 | HIGH | 7.5 | 0.2% | Jul 9, 2025 | Clerk helps developers build user management. Applications that use the verifyWebhook() helper to verify incoming Clerk ... |
| CVE-2025-53645 | HIGH | 7.5 | 1.3% | Jul 9, 2025 | Zimbra Collaboration (ZCS) before 9.0.0 Patch 46, 10.0.x before 10.0.15, and 10.1.x before 10.1.9 is vulnerable to a den... |
| CVE-2025-53652 | HIGH | 8.2 | 0.6% | Jul 9, 2025 | Jenkins Git Parameter Plugin 439.vb_0e46ca_14534 and earlier does not validate that the Git parameter value submitted to... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now