2025 CVE Vulnerabilities

45,172 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-20234HIGH7.5A vulnerability in Universal Disk Format (UDF) processing of ClamAV could allow an unauthenticated, remote attacker to c...
CVE-2025-4821HIGH7.5Impact Cloudflare quiche was discovered to be vulnerable to incorrect congestion window growth, which could cause it to...
CVE-2025-44952HIGH7.8A missing length check in `ogs_pfcp_subnet_add` function from PFCP library, used by both smf and upf in open5gs 2.7.2 an...
CVE-2025-44951HIGH7.1A missing length check in `ogs_pfcp_dev_add` function from PFCP library, used by both smf and upf in open5gs 2.7.2 and e...
CVE-2025-36049HIGH8.8IBM webMethods Integration Server 10.5, 10.7, 10.11, and 10.15 is vulnerable to an XML external entity injection (XXE)...
CVE-2025-36048HIGH7.2IBM webMethods Integration Server 10.5, 10.7, 10.11, and 10.15 could allow a privileged user to escalate their privilege...
CVE-2025-46109HIGH8.8SQL Injection vulnerability in pbootCMS v.3.2.5 and v.3.2.10 allows a remote attacker to obtain sensitive information vi...
CVE-2025-45786HIGH8.1Real Estate Management 1.0 is vulnerable to Cross Site Scripting (XSS) in /store/index.php.
CVE-2025-6220HIGH7.2The Ultra Addons for Contact Form 7 plugin for WordPress is vulnerable to arbitrary file uploads due to missing file typ...
CVE-2025-6086HIGH7.2The CSV Me plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the ...
CVE-2025-38082HIGH7.8In the Linux kernel, the following vulnerability has been resolved: gpio: virtuser: fix potential out-of-bound write I...
CVE-2025-38081HIGH7.1In the Linux kernel, the following vulnerability has been resolved: spi-rockchip: Fix register out of bounds access Do...
CVE-2025-38079HIGH7.8In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - fix double free in hash_accept...
CVE-2025-38077HIGH7.8In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-wmi-sysman: Avoid buffer overflo...
CVE-2025-38076HIGH7.8In the Linux kernel, the following vulnerability has been resolved: alloc_tag: allocate percpu counters for module tags...
CVE-2025-38069HIGH7.8In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: pci-epf-test: Fix double free that c...
CVE-2025-38068HIGH7.8In the Linux kernel, the following vulnerability has been resolved: crypto: lzo - Fix compression buffer overrun Unlik...
CVE-2025-38056HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Intel: hda: Fix UAF when reloading modul...
CVE-2025-38052HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net/tipc: fix slab-use-after-free Read in tipc_aead...
CVE-2025-38051HIGH7In the Linux kernel, the following vulnerability has been resolved: smb: client: Fix use-after-free in cifs_fill_dirent...
CVE-2025-38027HIGH7.1In the Linux kernel, the following vulnerability has been resolved: regulator: max20086: fix invalid memory access max...
CVE-2025-38024HIGH7.8In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix slab-use-after-free Read in rxe_queue...
CVE-2025-38022HIGH7.8In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix "KASAN: slab-use-after-free Read in ...
CVE-2025-38019HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_router: Fix use-after-free when del...
CVE-2025-38013HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: Set n_channels after allocating str...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now