2025 CVE Vulnerabilities

45,172 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-54880MEDIUM6.1Mermaid is a JavaScript based diagramming and charting tool that uses Markdown-inspired text definitions and a renderer ...
CVE-2025-54411MEDIUM5.4Discourse is an open-source discussion platform. Welcome banner user name string for logged in users can be vulnerable t...
CVE-2025-52478MEDIUM5.4n8n is a workflow automation platform. From 1.77.0 to before 1.98.2, a stored Cross-Site Scripting (XSS) vulnerability w...
CVE-2025-51506MEDIUM6.5In the smartLibrary component of the HRForecast Suite 0.4.3, a SQL injection vulnerability was discovered in the valueKe...
CVE-2025-38615MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: cancle set bad inode after removing name ...
CVE-2025-38614MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: eventpoll: Fix semi-unbounded recursion Ensure tha...
CVE-2025-38613MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: staging: gpib: fix unset padding field copy back to...
CVE-2025-38612MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: staging: fbtft: fix potential memory leak in fbtft_...
CVE-2025-38610MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: powercap: dtpm_cpu: Fix NULL pointer dereference in...
CVE-2025-38609MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: PM / devfreq: Check governor before using governor-...
CVE-2025-38608MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bpf, ktls: Fix data corruption when using bpf_msg_p...
CVE-2025-38607MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bpf: handle jset (if a & b ...) as a jump in CFG co...
CVE-2025-38606MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Avoid accessing uninitialized arvif->...
CVE-2025-38605MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Pass ab pointer directly to ath12k_dp...
CVE-2025-38604MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: rtl818x: Kill URBs before clearing tx status ...
CVE-2025-38602MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: iwlwifi: Add missing check for alloc_ordered_workqu...
CVE-2025-38601MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: clear initialized flag for deinit-ed ...
CVE-2025-38600MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7925: fix off by one in mt7925_mcu_hw...
CVE-2025-38597MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/rockchip: vop2: fail cleanly if missing a prima...
CVE-2025-38591MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bpf: Reject narrower access to pointer ctx fields ...
CVE-2025-38590MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Remove skb secpath if xfrm state is not ...
CVE-2025-38589MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: neighbour: Fix null-ptr-deref in neigh_flush_dev()....
CVE-2025-38588MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ipv6: prevent infinite loop in rt6_nlmsg_size() Wh...
CVE-2025-38587MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ipv6: fix possible infinite loop in fib6_info_uses_...
CVE-2025-38586MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bpf, arm64: Fix fp initialization for exception bou...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now