2025 CVE Vulnerabilities
45,172 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-50202 | HIGH | 7.5 | 0.5% | Jun 18, 2025 | Lychee is a free photo-management tool. In versions starting from 6.6.6 to before 6.6.10, an attacker can leak local fil... |
| CVE-2025-4413 | HIGH | 8.8 | 0.5% | Jun 18, 2025 | The Pixabay Images plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in t... |
| CVE-2025-23252 | HIGH | 7.5 | 0.3% | Jun 18, 2025 | The NVIDIA NVDebug tool contains a vulnerability that may allow an actor to gain access to restricted components. A succ... |
| CVE-2025-49385 | HIGH | 7.1 | 0.1% | Jun 17, 2025 | Trend Micro Security 17.8 (Consumer) is vulnerable to a link following local privilege escalation vulnerability that cou... |
| CVE-2025-49384 | HIGH | 7.1 | 0.1% | Jun 17, 2025 | Trend Micro Security 17.8 (Consumer) is vulnerable to a link following local privilege escalation vulnerability that cou... |
| CVE-2025-49218 | HIGH | 7.8 | 0.1% | Jun 17, 2025 | A post-auth SQL injection vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an attacker to e... |
| CVE-2025-49215 | HIGH | 8.8 | 0.3% | Jun 17, 2025 | A post-auth SQL injection vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an attacker to e... |
| CVE-2025-49214 | HIGH | 8.8 | 0.8% | Jun 17, 2025 | An insecure deserialization operation in the Trend Micro Endpoint Encryption PolicyServer could lead to a post-authentic... |
| CVE-2025-49211 | HIGH | 7.8 | 0.1% | Jun 17, 2025 | A SQL injection vulnerability in the Trend Micro Endpoint Encryption PolicyServer could allow an attacker to escalate pr... |
| CVE-2025-41413 | HIGH | 8.4 | 0.2% | Jun 17, 2025 | Fuji Electric Smart Editor is vulnerable to an out-of-bounds write, which may allow an attacker to execute arbitrary cod... |
| CVE-2025-41388 | HIGH | 8.4 | 0.2% | Jun 17, 2025 | Fuji Electric Smart Editor is vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitr... |
| CVE-2025-32412 | HIGH | 8.4 | 0.2% | Jun 17, 2025 | Fuji Electric Smart Editor is vulnerable to an out-of-bounds read, which may allow an attacker to execute arbitrary code... |
| CVE-2025-30641 | HIGH | 7.8 | 0.2% | Jun 17, 2025 | A link following vulnerability in the anti-malware solution portion of Trend Micro Deep Security 20.0 agents could allow... |
| CVE-2025-30640 | HIGH | 7.8 | 0.2% | Jun 17, 2025 | A link following vulnerability in Trend Micro Deep Security 20.0 agents could allow a local attacker to escalate privile... |
| CVE-2025-49847 | HIGH | 8.8 | 0.4% | Jun 17, 2025 | llama.cpp is an inference of several LLM models in C/C++. Prior to version b5662, an attacker‐supplied GGUF model vocabu... |
| CVE-2025-30680 | HIGH | 7.1 | 0.2% | Jun 17, 2025 | A Server-side Request Forgery (SSRF) vulnerability in Trend Micro Apex Central (SaaS) could allow an attacker to manipul... |
| CVE-2025-30679 | HIGH | 7.5 | 0.3% | Jun 17, 2025 | A Server-side Request Forgery (SSRF) vulnerability in Trend Micro Apex Central (on-premise) modOSCE component could allo... |
| CVE-2025-30678 | HIGH | 7.5 | 0.3% | Jun 17, 2025 | A Server-side Request Forgery (SSRF) vulnerability in Trend Micro Apex Central (on-premise) modTMSM component could allo... |
| CVE-2025-49850 | HIGH | 8.4 | 0.1% | Jun 17, 2025 | A Heap-based Buffer Overflow vulnerability exists within the parsing of PRJ files. The issues result from the lack of pr... |
| CVE-2025-49849 | HIGH | 8.4 | 0.1% | Jun 17, 2025 | An Out-of-bounds Read vulnerability exists within the parsing of PRJ files. The issues result from the lack of proper va... |
| CVE-2025-49848 | HIGH | 8.4 | 0.2% | Jun 17, 2025 | An out-of-bounds write vulnerability exists within the parsing of PRJ files. The issues result from the lack of proper v... |
| CVE-2025-49158 | HIGH | 7.8 | 0.1% | Jun 17, 2025 | An uncontrolled search path vulnerability in the Trend Micro Apex One security agent could allow a local attacker to esc... |
| CVE-2025-49157 | HIGH | 7.8 | 0.2% | Jun 17, 2025 | A link following vulnerability in the Trend Micro Apex One Damage Cleanup Engine could allow a local attacker to escalat... |
| CVE-2025-49156 | HIGH | 7.8 | 0.1% | Jun 17, 2025 | A link following vulnerability in the Trend Micro Apex One scan engine could allow a local attacker to escalation privil... |
| CVE-2025-49155 | HIGH | 8.8 | 0.8% | Jun 17, 2025 | An uncontrolled search path vulnerability in the Trend Micro Apex One Data Loss Prevention module could allow an attacke... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now