2025 CVE Vulnerabilities
45,172 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-27446 | HIGH | 7.8 | 0.2% | Jul 6, 2025 | Incorrect Permission Assignment for Critical Resource vulnerability in Apache APISIX(java-plugin-runner). Local listeni... |
| CVE-2025-7076 | HIGH | 8.8 | 0.7% | Jul 6, 2025 | A vulnerability was found in BlackVue Dashcam 590X up to 20250624. It has been rated as critical. Affected by this issue... |
| CVE-2025-7075 | HIGH | 8.8 | 0.8% | Jul 6, 2025 | A vulnerability was found in BlackVue Dashcam 590X up to 20250624. It has been declared as critical. Affected by this vu... |
| CVE-2025-7074 | HIGH | 7.5 | 0.5% | Jul 5, 2025 | A vulnerability classified as problematic has been found in vercel hyper up to 3.4.1. This affects the function expand/b... |
| CVE-2025-47227 | HIGH | 7.5 | 2.0% | Jul 5, 2025 | In the Production Environment extension in Netmake ScriptCase through 9.12.006 (23), the Administrator password reset me... |
| CVE-2025-53603 | HIGH | 7.5 | 0.6% | Jul 5, 2025 | In Alinto SOPE SOGo 2.0.2 through 5.12.2, sope-core/NGExtensions/NGHashMap.m allows a NULL pointer dereference and SOGo ... |
| CVE-2025-43711 | HIGH | 8.1 | 0.2% | Jul 5, 2025 | Tunnelblick 3.5beta06 before 7.0, when incompletely uninstalled, allows attackers to execute arbitrary code as root (upo... |
| CVE-2025-7070 | HIGH | 8.8 | 0.8% | Jul 4, 2025 | A vulnerability has been found in IROAD Dashcam Q9 up to 20250624 and classified as problematic. Affected by this vulner... |
| CVE-2025-53366 | HIGH | 8.7 | 5.7% | Jul 4, 2025 | The MCP Python SDK, called `mcp` on PyPI, is a Python implementation of the Model Context Protocol (MCP). Prior to versi... |
| CVE-2025-53365 | HIGH | 8.7 | 0.4% | Jul 4, 2025 | The MCP Python SDK, called `mcp` on PyPI, is a Python implementation of the Model Context Protocol (MCP). Prior to versi... |
| CVE-2025-53485 | HIGH | 7.5 | 0.3% | Jul 4, 2025 | SetTranslationHandler.php does not validate that the user is an election admin, allowing any (even unauthenticated) user... |
| CVE-2025-53483 | HIGH | 8.8 | 0.2% | Jul 4, 2025 | ArchivePage.php, UnarchivePage.php, and VoterEligibilityPage#executeClear() do not validate request methods or CSRF toke... |
| CVE-2025-53481 | HIGH | 7.5 | 0.4% | Jul 4, 2025 | Uncontrolled Resource Consumption vulnerability in Wikimedia Foundation Mediawiki - IPInfo Extension allows Excessive Al... |
| CVE-2025-52496 | HIGH | 7.8 | 0.2% | Jul 4, 2025 | Mbed TLS before 3.6.4 has a race condition in AESNI detection if certain compiler optimizations occur. An attacker may b... |
| CVE-2025-46733 | HIGH | 7.9 | 0.1% | Jul 4, 2025 | OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Corte... |
| CVE-2025-38233 | HIGH | 7.8 | 0.1% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: powerpc64/ftrace: fix clobbered r15 during livepatc... |
| CVE-2025-38230 | HIGH | 7.8 | 0.2% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: jfs: validate AG parameters in dbMount() to prevent... |
| CVE-2025-38227 | HIGH | 7.8 | 0.2% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: media: vidtv: Terminating the subsequent process of... |
| CVE-2025-38226 | HIGH | 7.8 | 0.2% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: media: vivid: Change the siize of the composing sy... |
| CVE-2025-38224 | HIGH | 7.1 | 0.1% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: can: kvaser_pciefd: refine error prone echo_skb_max... |
| CVE-2025-38221 | HIGH | 7.1 | 0.1% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: ext4: fix out of bounds punch offset Punching a ho... |
| CVE-2025-38216 | HIGH | 7.8 | 0.1% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Restore context entry setup order for a... |
| CVE-2025-38212 | HIGH | 7.8 | 0.2% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: ipc: fix to protect IPCS lookups using RCU syzbot ... |
| CVE-2025-38211 | HIGH | 7.8 | 0.2% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: RDMA/iwcm: Fix use-after-free of work objects after... |
| CVE-2025-38209 | HIGH | 7.8 | 0.1% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: remove tag set when second admin queue co... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now