2025 CVE Vulnerabilities
45,347 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-38261 | MEDIUM | 5.5 | 0.1% | Jul 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: riscv: save the SR_SUM status over switches When t... |
| CVE-2025-38260 | MEDIUM | 5.5 | 0.1% | Jul 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: btrfs: handle csum tree error with rescue=ibadroots... |
| CVE-2025-38258 | MEDIUM | 5.5 | 0.1% | Jul 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs-schemes: free old damon_sysfs_scheme... |
| CVE-2025-38256 | MEDIUM | 5.5 | 0.1% | Jul 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: io_uring/rsrc: fix folio unpinning syzbot complain... |
| CVE-2025-38255 | MEDIUM | 5.5 | 0.1% | Jul 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: lib/group_cpus: fix NULL pointer dereference from g... |
| CVE-2025-38254 | MEDIUM | 5.5 | 0.1% | Jul 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Add sanity checks for drm_edid_raw... |
| CVE-2025-38253 | MEDIUM | 5.5 | 0.1% | Jul 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: HID: wacom: fix crash in wacom_aes_battery_handler(... |
| CVE-2025-38252 | MEDIUM | 5.5 | 0.1% | Jul 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: cxl/ras: Fix CPER handler device confusion By insp... |
| CVE-2025-38251 | MEDIUM | 5.5 | 0.1% | Jul 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: atm: clip: prevent NULL deref in clip_push() Blame... |
| CVE-2025-38247 | MEDIUM | 5.5 | 0.1% | Jul 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: userns and mnt_idmap leak in open_tree_attr(2) Onc... |
| CVE-2025-38246 | MEDIUM | 5.5 | 0.1% | Jul 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: bnxt: properly flush XDP redirect lists We encount... |
| CVE-2025-38244 | MEDIUM | 5.5 | 0.1% | Jul 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential deadlock when reconnecti... |
| CVE-2025-38243 | MEDIUM | 5.5 | 0.1% | Jul 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix invalid inode pointer dereferences durin... |
| CVE-2025-38242 | MEDIUM | 4.7 | 0.1% | Jul 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm: userfaultfd: fix race of userfaultfd_move and s... |
| CVE-2025-38241 | MEDIUM | 5.5 | 0.1% | Jul 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm/shmem, swap: fix softlockup with mTHP swapin Fo... |
| CVE-2025-38238 | MEDIUM | 5.5 | 0.1% | Jul 9, 2025 | In the Linux kernel, the following vulnerability has been resolved: scsi: fnic: Fix crash in fnic_wq_cmpl_handler when ... |
| CVE-2025-7379 | MEDIUM | 5.2 | 0.2% | Jul 9, 2025 | A security bypass vulnerability allows exploitation via Reverse Tabnabbing, a type of phishing attack where attackers ca... |
| CVE-2025-27028 | MEDIUM | 6.8 | 0.3% | Jul 9, 2025 | The Linux deprivileged user vpuser in Radiflow iSAP Smart Collector (CentOS 7 - VSAP 1.20) can read the entire file syst... |
| CVE-2025-27027 | MEDIUM | 4.1 | 0.2% | Jul 9, 2025 | A user with vpuser credentials that opens an SSH connection to the device, gets a restricted shell rbash that allows onl... |
| CVE-2025-7378 | MEDIUM | 6 | 0.1% | Jul 9, 2025 | An improper Input Validation vulnerability allows injecting arbitrary values of the NAS configuration file in ASUSTOR AD... |
| CVE-2025-7059 | MEDIUM | 6.4 | 0.2% | Jul 9, 2025 | The Simple Featured Image plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘slideshow’ paramete... |
| CVE-2025-7213 | MEDIUM | 6.4 | 0.2% | Jul 9, 2025 | A vulnerability classified as critical has been found in FNKvision FNK-GU2 up to 40.1.7. Affected is an unknown function... |
| CVE-2025-5678 | MEDIUM | 5.4 | 0.2% | Jul 9, 2025 | The Gutenberg Blocks with AI by Kadence WP – Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Si... |
| CVE-2025-7209 | MEDIUM | 5.5 | 0.2% | Jul 9, 2025 | A vulnerability has been found in 9fans plan9port up to 9da5b44 and classified as problematic. Affected by this vulnerab... |
| CVE-2025-7207 | MEDIUM | 5.5 | 0.2% | Jul 9, 2025 | A vulnerability, which was classified as problematic, was found in mruby up to 3.4.0-rc2. Affected is the function scope... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now