2025 CVE Vulnerabilities

45,181 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-53545MEDIUM6.9Press, a Frappe custom app that runs Frappe Cloud, manages infrastructure, subscription, marketplace, and software-as-a-...
CVE-2025-53480MEDIUM5.4The CheckUser extension’s Special:Investigate page has a vulnerability in the Account information tab, where specific in...
CVE-2025-3630MEDIUM5.4IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.6, 6.2.0.0 through 6.2.0.4, IBM Sterling File Gateway 6.0.0.0 throug...
CVE-2025-2827MEDIUM4.3IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6, and 6.2.0.0 through 6.2.0.4 could disclose sensitive installat...
CVE-2025-2793MEDIUM5.4IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.6, 6.2.0.0 through 6.2.0.4, IBM Sterling File Gateway 6.0.0.0 throug...
CVE-2025-29267MEDIUM6.5SQL Injection vulnerability in Abis, Inc Adjutant Core Accounting ERP build v.PreBeta250F allows a remote attacker to ob...
CVE-2025-21433MEDIUM5.5Transient DOS when importing a PKCS#8-encoded RSA private key with a zero-sized modulus.
CVE-2025-40721MEDIUM5.4Reflected Cross-site Scripting (XSS) vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerab...
CVE-2025-40720MEDIUM6.1Reflected Cross-site Scripting (XSS) vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerab...
CVE-2025-40719MEDIUM6.1Reflected Cross-site Scripting (XSS) vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerab...
CVE-2025-41223MEDIUM6.3A vulnerability has been identified in RUGGEDCOM i800 (All versions), RUGGEDCOM i801 (All versions), RUGGEDCOM i802 (All...
CVE-2025-41222MEDIUM6.9A vulnerability has been identified in RUGGEDCOM i800 (All versions), RUGGEDCOM i801 (All versions), RUGGEDCOM i802 (All...
CVE-2025-40742MEDIUM6A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V11.0), SIPROTEC 5 6MD85 (CP200) (All ve...
CVE-2025-27127MEDIUM5.3A vulnerability has been identified in TIA Project-Server (All versions < V2.1.1), TIA Project-Server V17 (All versions)...
CVE-2025-21009MEDIUM5.5Out-of-bounds read in decoding malformed frame header in libsavsvc.so prior to Android 15 allows local attackers to caus...
CVE-2025-21008MEDIUM5.5Out-of-bounds read in decoding frame header in libsavsvc.so prior to Android 15 allows local attackers to cause memory c...
CVE-2025-21007MEDIUM5.5Out-of-bounds write in accessing uninitialized memory in libsavsvc.so prior to Android 15 allows local attackers to caus...
CVE-2025-21005MEDIUM5.5Improper access control in isemtelephony prior to Android 15 allows local attackers to access sensitive information.
CVE-2025-21004MEDIUM5.5Improper verification of intent by broadcast receiver in System UI for Galaxy Watch prior to SMR Jul-2025 Release 1 allo...
CVE-2025-21003MEDIUM5.5Insecure storage of sensitive information in Emergency SOS prior to SMR Jul-2025 Release 1 allows local attackers to acc...
CVE-2025-21002MEDIUM5.5Improper access control in LeAudioService prior to SMR Jul-2025 Release 1 allows local attackers to manipulate broadcast...
CVE-2025-21001MEDIUM5.5Improper access control in LeAudioService prior to SMR Jul-2025 Release 1 allows local attackers to stop broadcasting Au...
CVE-2025-20997MEDIUM5.5Incorrect default permission in Framework for Galaxy Watch prior to SMR Jul-2025 Release 1 allows local attackers to res...
CVE-2025-20983MEDIUM6.7Out-of-bounds write in checking auth secret in KnoxVault trustlet prior to SMR Jul-2025 Release 1 allows local privilege...
CVE-2025-20982MEDIUM6.7Out-of-bounds write in setting auth secret in KnoxVault trustlet prior to SMR Jul-2025 Release 1 allows local privileged...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now