2025 CVE Vulnerabilities

45,346 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-38578MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid UAF in f2fs_sync_inode_meta() s...
CVE-2025-38577MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid panic in f2fs_evict_inode As sy...
CVE-2025-38576MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: powerpc/eeh: Make EEH driver device hotplug safe M...
CVE-2025-38573MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: spi: cs42l43: Property entry should be a null-termi...
CVE-2025-38571MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: sunrpc: fix client side handling of tls alerts A s...
CVE-2025-38569MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: benet: fix BUG when creating VFs benet crashes as ...
CVE-2025-38567MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: nfsd: avoid ref leak in nfsd_open_local_fh() If tw...
CVE-2025-38564MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: perf/core: Handle buffer mapping fail correctly in ...
CVE-2025-38562MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix null pointer dereference error in genera...
CVE-2025-38561MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix Preauh_HashValue race condition If clie...
CVE-2025-38560MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: x86/sev: Evict cache lines during SNP memory valida...
CVE-2025-38559MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: platform/x86/intel/pmt: fix a crashlog NULL pointer...
CVE-2025-38558MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: usb: gadget: uvc: Initialize frame-based format col...
CVE-2025-38557MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: HID: apple: validate feature-report field count to ...
CVE-2025-9145MEDIUM5.4A security vulnerability has been detected in Scada-LTS 2.7.8.1. This issue affects some unknown processing of the file ...
CVE-2025-51540MEDIUM5.3EzGED3 3.5.0 stores user passwords using an insecure hashing scheme: md5(md5(password)). This hashing method is cryptogr...
CVE-2025-51539MEDIUM5.3EzGED3 3.5.0 contains an unauthenticated arbitrary file read vulnerability due to improper access control and insufficie...
CVE-2025-50938MEDIUM6.1Cross site scripting (XSS) vulnerability in Hustoj 2025-01-31 via the TID parameter to thread.php.
CVE-2025-50434MEDIUM5.3A security issue has been identified in Appian Enterprise Business Process Management version 25.3. The vulnerability is...
CVE-2025-43738MEDIUM5.4A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025...
CVE-2025-9144MEDIUM5.4A weakness has been identified in Scada-LTS 2.7.8.1. This vulnerability affects unknown code of the file publisher_edit....
CVE-2025-9143MEDIUM5.4A security flaw has been discovered in Scada-LTS 2.7.8.1. This affects an unknown part of the file mailing_lists.shtm. T...
CVE-2025-51529MEDIUM5.3Incorrect Access Control in the AJAX endpoint functionality in jonkastonka Cookies and Content Security Policy plugin th...
CVE-2025-51510MEDIUM4.9MoonShine was discovered to contain a SQL injection vulnerability under the Blog -> Categories page when using the moons...
CVE-2025-51489MEDIUM5.4A Stored Cross-Site Scripting (XSS) vulnerability exists in MoonShine version < 3.12.5, allowing remote attackers to upl...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now