2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-12703 | — | — | — | Nov 12, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2025-64517 | MEDIUM | 4.4 | 0.1% | Nov 12, 2025 | sudo-rs is a memory safe implementation of sudo and su written in Rust. With `Defaults targetpw` (or `Defaults rootpw`) ... |
| CVE-2025-64503 | LOW | 3.3 | 0.2% | Nov 12, 2025 | cups-filters contains backends, filters, and other software required to get the cups printing service working on operati... |
| CVE-2025-64500 | HIGH | 7.3 | 1.3% | Nov 12, 2025 | Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Symfony's HttpFoundati... |
| CVE-2025-64482 | MEDIUM | 4.6 | 0.1% | Nov 12, 2025 | Tuleap is an Open Source Suite to improve management of software developments and collaboration. Tuleap Community Editio... |
| CVE-2025-64429 | MEDIUM | 6.5 | 0.1% | Nov 12, 2025 | DuckDB is a SQL database management system. DuckDB implemented block-based encryption of DB on the filesystem starting w... |
| CVE-2025-64345 | LOW | 1.8 | 0.1% | Nov 12, 2025 | Wasmtime is a runtime for WebAssembly. Prior to version 38.0.4, 37.0.3, 36.0.3, and 24.0.5, Wasmtime's Rust embedder API... |
| CVE-2025-63645 | MEDIUM | 5.4 | 0.2% | Nov 12, 2025 | A stored cross-site scripting (XSS) vulnerability exists in pH7Software pH7-Social-Dating-CMS 17.9.1 in the application'... |
| CVE-2025-40208 | — | — | 0.1% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: media: iris: fix module removal if firmware downloa... |
| CVE-2025-40207 | — | — | 0.2% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: media: v4l2-subdev: Fix alloc failure check in v4l2... |
| CVE-2025-40206 | HIGH | 7.8 | 0.1% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_objref: validate objref and objrefma... |
| CVE-2025-40205 | HIGH | 7.8 | 0.2% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: btrfs: avoid potential out-of-bounds in btrfs_encod... |
| CVE-2025-40204 | HIGH | 8.1 | 0.2% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: sctp: Fix MAC comparison to be constant-time To pr... |
| CVE-2025-40203 | HIGH | 7.8 | 0.2% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: listmount: don't call path_put() under namespace se... |
| CVE-2025-40202 | HIGH | 7.8 | 0.2% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: ipmi: Rework user message limit handling The limit... |
| CVE-2025-40201 | HIGH | 7.8 | 0.2% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: kernel/sys.c: fix the racy usage of task_lock(tsk->... |
| CVE-2025-40200 | — | — | 0.2% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: Squashfs: reject negative file sizes in squashfs_re... |
| CVE-2025-40199 | HIGH | 7.8 | 0.2% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: page_pool: Fix PP_MAGIC_MASK to avoid crashing on s... |
| CVE-2025-40198 | HIGH | 7.8 | 0.2% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: ext4: avoid potential buffer over-read in parse_app... |
| CVE-2025-40197 | — | — | 0.2% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: media: mc: Clear minor number before put device Th... |
| CVE-2025-40196 | — | — | 0.2% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: fs: quota: create dedicated workqueue for quota_rel... |
| CVE-2025-40195 | — | — | 0.2% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: mount: handle NULL values in mnt_ns_release() When... |
| CVE-2025-40194 | — | — | 0.2% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: cpufreq: intel_pstate: Fix object lifecycle issue i... |
| CVE-2025-40193 | — | — | 0.2% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: xtensa: simdisk: add input size check in proc_write... |
| CVE-2025-40192 | — | — | 0.2% | Nov 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: Revert "ipmi: fix msg stack when IPMI is disconnect... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now