2025 CVE Vulnerabilities
45,347 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-38221 | HIGH | 7.1 | 0.1% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: ext4: fix out of bounds punch offset Punching a ho... |
| CVE-2025-38216 | HIGH | 7.8 | 0.1% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Restore context entry setup order for a... |
| CVE-2025-38212 | HIGH | 7.8 | 0.2% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: ipc: fix to protect IPCS lookups using RCU syzbot ... |
| CVE-2025-38211 | HIGH | 7.8 | 0.2% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: RDMA/iwcm: Fix use-after-free of work objects after... |
| CVE-2025-38209 | HIGH | 7.8 | 0.1% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: nvme-tcp: remove tag set when second admin queue co... |
| CVE-2025-38206 | HIGH | 7.8 | 0.2% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: exfat: fix double free in delayed_free The double ... |
| CVE-2025-38204 | HIGH | 7.1 | 0.2% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: jfs: fix array-index-out-of-bounds read in add_miss... |
| CVE-2025-38201 | HIGH | 7.8 | 0.2% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo: clamp maximum map bucket... |
| CVE-2025-38198 | HIGH | 7.8 | 0.2% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: fbcon: Make sure modelist not set on unregistered c... |
| CVE-2025-38187 | HIGH | 7.8 | 0.1% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: fix a use-after-free in r535_gsp_rpc_p... |
| CVE-2025-38183 | HIGH | 7.8 | 0.2% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: lan743x: fix potential out-of-bounds write in ... |
| CVE-2025-38182 | HIGH | 7.8 | 0.2% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: ublk: santizize the arguments from userspace when a... |
| CVE-2025-38180 | HIGH | 7.8 | 0.2% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: atm: fix /proc/net/atm/lec handling /proc/net... |
| CVE-2025-38179 | HIGH | 7.8 | 0.2% | Jul 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix max_sge overflow in smb_extract_fo... |
| CVE-2025-49809 | HIGH | 7.8 | 0.1% | Jul 4, 2025 | mtr through 0.95, in certain privileged contexts, mishandles execution of a program specified by the MTR_PACKET environm... |
| CVE-2025-52828 | HIGH | 8.8 | 0.3% | Jul 4, 2025 | Deserialization of Untrusted Data vulnerability in designthemes Red Art redart allows Object Injection.This issue affect... |
| CVE-2025-52813 | HIGH | 8.1 | 0.3% | Jul 4, 2025 | Missing Authorization vulnerability in pietro MobiLoud allows Exploiting Incorrectly Configured Access Control Security ... |
| CVE-2025-52807 | HIGH | 8.1 | 0.4% | Jul 4, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-52805 | HIGH | 7.5 | 0.4% | Jul 4, 2025 | Path Traversal: '.../...//' vulnerability in VaultDweller Leyka leyka allows PHP Local File Inclusion.This issue affects... |
| CVE-2025-52798 | HIGH | 7.1 | 0.2% | Jul 4, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in eyecix JobSearch w... |
| CVE-2025-52796 | HIGH | 7.1 | 0.2% | Jul 4, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in tggfref WP-Recall ... |
| CVE-2025-52776 | HIGH | 7.1 | 0.2% | Jul 4, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in thanhtungtnt Video... |
| CVE-2025-52718 | HIGH | 7.2 | 0.2% | Jul 4, 2025 | Improper Control of Generation of Code ('Code Injection') vulnerability in Beplusthemes Alone alone allows Remote Code I... |
| CVE-2025-4414 | HIGH | 8.1 | 0.4% | Jul 4, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-49870 | HIGH | 7.5 | 0.2% | Jul 4, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Cozmoslabs Paid Me... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now