2025 CVE Vulnerabilities
45,172 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-20234 | HIGH | 7.5 | 0.7% | Jun 18, 2025 | A vulnerability in Universal Disk Format (UDF) processing of ClamAV could allow an unauthenticated, remote attacker to c... |
| CVE-2025-4821 | HIGH | 7.5 | 0.7% | Jun 18, 2025 | Impact Cloudflare quiche was discovered to be vulnerable to incorrect congestion window growth, which could cause it to... |
| CVE-2025-44952 | HIGH | 7.8 | 0.2% | Jun 18, 2025 | A missing length check in `ogs_pfcp_subnet_add` function from PFCP library, used by both smf and upf in open5gs 2.7.2 an... |
| CVE-2025-44951 | HIGH | 7.1 | 0.2% | Jun 18, 2025 | A missing length check in `ogs_pfcp_dev_add` function from PFCP library, used by both smf and upf in open5gs 2.7.2 and e... |
| CVE-2025-36049 | HIGH | 8.8 | 0.5% | Jun 18, 2025 | IBM webMethods Integration Server 10.5, 10.7, 10.11, and 10.15 is vulnerable to an XML external entity injection (XXE)... |
| CVE-2025-36048 | HIGH | 7.2 | 0.4% | Jun 18, 2025 | IBM webMethods Integration Server 10.5, 10.7, 10.11, and 10.15 could allow a privileged user to escalate their privilege... |
| CVE-2025-46109 | HIGH | 8.8 | 0.4% | Jun 18, 2025 | SQL Injection vulnerability in pbootCMS v.3.2.5 and v.3.2.10 allows a remote attacker to obtain sensitive information vi... |
| CVE-2025-45786 | HIGH | 8.1 | 0.3% | Jun 18, 2025 | Real Estate Management 1.0 is vulnerable to Cross Site Scripting (XSS) in /store/index.php. |
| CVE-2025-6220 | HIGH | 7.2 | 0.9% | Jun 18, 2025 | The Ultra Addons for Contact Form 7 plugin for WordPress is vulnerable to arbitrary file uploads due to missing file typ... |
| CVE-2025-6086 | HIGH | 7.2 | 0.6% | Jun 18, 2025 | The CSV Me plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the ... |
| CVE-2025-38082 | HIGH | 7.8 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: gpio: virtuser: fix potential out-of-bound write I... |
| CVE-2025-38081 | HIGH | 7.1 | 0.1% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: spi-rockchip: Fix register out of bounds access Do... |
| CVE-2025-38079 | HIGH | 7.8 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - fix double free in hash_accept... |
| CVE-2025-38077 | HIGH | 7.8 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-wmi-sysman: Avoid buffer overflo... |
| CVE-2025-38076 | HIGH | 7.8 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: alloc_tag: allocate percpu counters for module tags... |
| CVE-2025-38069 | HIGH | 7.8 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: pci-epf-test: Fix double free that c... |
| CVE-2025-38068 | HIGH | 7.8 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: crypto: lzo - Fix compression buffer overrun Unlik... |
| CVE-2025-38056 | HIGH | 7.8 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Intel: hda: Fix UAF when reloading modul... |
| CVE-2025-38052 | HIGH | 7.8 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: net/tipc: fix slab-use-after-free Read in tipc_aead... |
| CVE-2025-38051 | HIGH | 7 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: smb: client: Fix use-after-free in cifs_fill_dirent... |
| CVE-2025-38027 | HIGH | 7.1 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: regulator: max20086: fix invalid memory access max... |
| CVE-2025-38024 | HIGH | 7.8 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix slab-use-after-free Read in rxe_queue... |
| CVE-2025-38022 | HIGH | 7.8 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix "KASAN: slab-use-after-free Read in ... |
| CVE-2025-38019 | HIGH | 7.8 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_router: Fix use-after-free when del... |
| CVE-2025-38013 | HIGH | 7.8 | 0.2% | Jun 18, 2025 | In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: Set n_channels after allocating str... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now