2025 CVE Vulnerabilities
45,172 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-3052 | HIGH | 8.2 | 0.3% | Jun 10, 2025 | An arbitrary write vulnerability in Microsoft signed UEFI firmware allows for code execution of untrusted software. This... |
| CVE-2025-47107 | HIGH | 7.8 | 0.2% | Jun 10, 2025 | InCopy versions 20.2, 19.5.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in... |
| CVE-2025-43577 | HIGH | 7.8 | 0.4% | Jun 10, 2025 | Acrobat Reader versions 24.001.30235, 20.005.30763, 25.001.20521 and earlier are affected by a Use After Free vulnerabil... |
| CVE-2025-43576 | HIGH | 7.8 | 0.5% | Jun 10, 2025 | Acrobat Reader versions 24.001.30235, 20.005.30763, 25.001.20521 and earlier are affected by a Use After Free vulnerabil... |
| CVE-2025-43575 | HIGH | 7.8 | 0.3% | Jun 10, 2025 | Acrobat Reader versions 24.001.30235, 20.005.30763, 25.001.20521 and earlier are affected by an out-of-bounds write vuln... |
| CVE-2025-43574 | HIGH | 7.8 | 0.4% | Jun 10, 2025 | Acrobat Reader versions 24.001.30235, 20.005.30763, 25.001.20521 and earlier are affected by a Use After Free vulnerabil... |
| CVE-2025-43573 | HIGH | 7.8 | 0.4% | Jun 10, 2025 | Acrobat Reader versions 24.001.30235, 20.005.30763, 25.001.20521 and earlier are affected by a Use After Free vulnerabil... |
| CVE-2025-43550 | HIGH | 7.8 | 0.4% | Jun 10, 2025 | Acrobat Reader versions 24.001.30235, 20.005.30763, 25.001.20521 and earlier are affected by a Use After Free vulnerabil... |
| CVE-2025-30327 | HIGH | 7.8 | 0.2% | Jun 10, 2025 | InCopy versions 20.2, 19.5.3 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could resu... |
| CVE-2025-5971 | HIGH | 8.8 | 0.5% | Jun 10, 2025 | A vulnerability was found in code-projects School Fees Payment System 1.0. It has been classified as critical. This affe... |
| CVE-2025-5943 | HIGH | 8.8 | 0.6% | Jun 10, 2025 | MicroDicom DICOM Viewer suffers from an out-of-bounds write vulnerability. Remote attackers are able to exploit this i... |
| CVE-2025-43588 | HIGH | 7.8 | 0.2% | Jun 10, 2025 | Substance3D - Sampler versions 5.0 and earlier are affected by an out-of-bounds write vulnerability that could result in... |
| CVE-2025-43581 | HIGH | 7.8 | 0.2% | Jun 10, 2025 | Substance3D - Sampler versions 5.0 and earlier are affected by an out-of-bounds write vulnerability that could result in... |
| CVE-2025-36575 | HIGH | 7.5 | 0.3% | Jun 10, 2025 | Dell Wyse Management Suite, versions prior to WMS 5.2, contain an Exposure of Sensitive Information Through Data Queries... |
| CVE-2025-36574 | HIGH | 8.2 | 0.4% | Jun 10, 2025 | Dell Wyse Management Suite, versions prior to WMS 5.2, contain an Absolute Path Traversal vulnerability. An unauthentica... |
| CVE-2025-0052 | HIGH | 8.3 | 0.3% | Jun 10, 2025 | Improper input validation performed during the authentication process of FlashBlade could lead to a system Denial of Ser... |
| CVE-2025-0051 | HIGH | 8.7 | 0.3% | Jun 10, 2025 | Improper input validation performed during the authentication process of FlashArray could lead to a system Denial of Ser... |
| CVE-2025-5969 | HIGH | 8.8 | 0.9% | Jun 10, 2025 | A vulnerability has been found in D-Link DIR-632 FW103B08 and classified as critical. Affected by this vulnerability is ... |
| CVE-2025-47977 | HIGH | 8.2 | 0.5% | Jun 10, 2025 | Improper neutralization of input during web page generation ('cross-site scripting') in Nuance Digital Engagement Platfo... |
| CVE-2025-47968 | HIGH | 7.8 | 0.4% | Jun 10, 2025 | Improper input validation in Microsoft AutoUpdate (MAU) allows an authorized attacker to elevate privileges locally. |
| CVE-2025-47962 | HIGH | 7.8 | 1.4% | Jun 10, 2025 | Improper access control in Windows SDK allows an authorized attacker to elevate privileges locally. |
| CVE-2025-47957 | HIGH | 8.4 | 1.2% | Jun 10, 2025 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. |
| CVE-2025-47955 | HIGH | 7.8 | 0.8% | Jun 10, 2025 | Improper privilege management in Windows Remote Access Connection Manager allows an authorized attacker to elevate privi... |
| CVE-2025-47953 | HIGH | 8.4 | 0.5% | Jun 10, 2025 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2025-47176 | HIGH | 7.8 | 0.6% | Jun 10, 2025 | '.../...//' in Microsoft Office Outlook allows an authorized attacker to execute code locally. |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now