2025 CVE Vulnerabilities

45,172 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-27072MEDIUM5.5Information disclosure while processing a packet at EAVB BE side with invalid header length.
CVE-2025-21472MEDIUM5.5Information disclosure while capturing logs as eSE debug messages are logged.
CVE-2025-21465MEDIUM6.5Information disclosure while processing the hash segment in an MBN file.
CVE-2025-21464MEDIUM6.5Information disclosure while reading data from an image using specified offset and size parameters.
CVE-2025-21457MEDIUM6.1Information disclosure while opening a fastrpc session when domain is not sanitized.
CVE-2025-7727MEDIUM6.4The Gutenverse plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Animated Text and Fun ...
CVE-2025-7376MEDIUM5.9Windows Shortcut Following (.LNK) vulnerability in multiple processes of Mitsubishi Electric GENESIS64 versions 10.97.3 ...
CVE-2025-21024MEDIUM5.5Use of Implicit Intent for Sensitive Communication in Smart View prior to Android 16 allows local attackers to access se...
CVE-2025-21022MEDIUM5.5Improper access control in Galaxy Wearable prior to version 2.2.63.25042861 allows local attackers to access sensitive i...
CVE-2025-21021MEDIUM6.7Out-of-bounds write in drawing pinpad in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers...
CVE-2025-21020MEDIUM6.7Out-of-bounds write in creating bitmap images in Blockchain Keystore prior to version 1.3.17.2 allows local privileged a...
CVE-2025-21019MEDIUM5.5Improper authorization in Samsung Health prior to version 6.30.1.003 allows local attackers to access data in Samsung He...
CVE-2025-21018MEDIUM4.4Out-of-bounds read in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to read out-of-bou...
CVE-2025-21017MEDIUM6.7Out-of-bounds write in detaching crypto box in Blockchain Keystore prior to version 1.3.17.2 allows local privileged att...
CVE-2025-21016MEDIUM4.3Improper access control in PkgPredictorService prior to SMR Aug-2025 Release 1 in Chinese Android 13, 14, 15 and 16 allo...
CVE-2025-21014MEDIUM5.5Improper export of android application component in Emergency SoS prior to SMR Aug-2025 Release 1 allows local attackers...
CVE-2025-21013MEDIUM6.2Improper access control in SemSensorManager for Galaxy Watch prior to SMR Aug-2025 Release 1 allows local attackers to a...
CVE-2025-21012MEDIUM5.5Improper access control in fall detection for Galaxy Watch prior to SMR Aug-2025 Release 1 allows local attackers to mod...
CVE-2025-21011MEDIUM5.5Improper access control in SemSensorService for Galaxy Watch prior to SMR Aug-2025 Release 1 allows local attackers to a...
CVE-2025-21010MEDIUM6Improper privilege management in SamsungAccount prior to SMR Aug-2025 Release 1 allows local privileged attackers to dea...
CVE-2025-8100MEDIUM5.4The Element Pack Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via th...
CVE-2025-7498MEDIUM5.4The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Countdown W...
CVE-2025-7399MEDIUM6.4The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via an Elementor display setting in all ver...
CVE-2025-54651MEDIUM4.7Race condition vulnerability in the kernel hufs module. Impact: Successful exploitation of this vulnerability may affect...
CVE-2025-54650MEDIUM5.3Improper array index verification vulnerability in the audio codec module. Impact: Successful exploitation of this vulne...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now