2025 CVE Vulnerabilities

45,206 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-12703Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2025-64517MEDIUM4.4sudo-rs is a memory safe implementation of sudo and su written in Rust. With `Defaults targetpw` (or `Defaults rootpw`) ...
CVE-2025-64503LOW3.3cups-filters contains backends, filters, and other software required to get the cups printing service working on operati...
CVE-2025-64500HIGH7.3Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Symfony's HttpFoundati...
CVE-2025-64482MEDIUM4.6Tuleap is an Open Source Suite to improve management of software developments and collaboration. Tuleap Community Editio...
CVE-2025-64429MEDIUM6.5DuckDB is a SQL database management system. DuckDB implemented block-based encryption of DB on the filesystem starting w...
CVE-2025-64345LOW1.8Wasmtime is a runtime for WebAssembly. Prior to version 38.0.4, 37.0.3, 36.0.3, and 24.0.5, Wasmtime's Rust embedder API...
CVE-2025-63645MEDIUM5.4A stored cross-site scripting (XSS) vulnerability exists in pH7Software pH7-Social-Dating-CMS 17.9.1 in the application'...
CVE-2025-40208In the Linux kernel, the following vulnerability has been resolved: media: iris: fix module removal if firmware downloa...
CVE-2025-40207In the Linux kernel, the following vulnerability has been resolved: media: v4l2-subdev: Fix alloc failure check in v4l2...
CVE-2025-40206HIGH7.8In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_objref: validate objref and objrefma...
CVE-2025-40205HIGH7.8In the Linux kernel, the following vulnerability has been resolved: btrfs: avoid potential out-of-bounds in btrfs_encod...
CVE-2025-40204HIGH8.1In the Linux kernel, the following vulnerability has been resolved: sctp: Fix MAC comparison to be constant-time To pr...
CVE-2025-40203HIGH7.8In the Linux kernel, the following vulnerability has been resolved: listmount: don't call path_put() under namespace se...
CVE-2025-40202HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ipmi: Rework user message limit handling The limit...
CVE-2025-40201HIGH7.8In the Linux kernel, the following vulnerability has been resolved: kernel/sys.c: fix the racy usage of task_lock(tsk->...
CVE-2025-40200In the Linux kernel, the following vulnerability has been resolved: Squashfs: reject negative file sizes in squashfs_re...
CVE-2025-40199HIGH7.8In the Linux kernel, the following vulnerability has been resolved: page_pool: Fix PP_MAGIC_MASK to avoid crashing on s...
CVE-2025-40198HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ext4: avoid potential buffer over-read in parse_app...
CVE-2025-40197In the Linux kernel, the following vulnerability has been resolved: media: mc: Clear minor number before put device Th...
CVE-2025-40196In the Linux kernel, the following vulnerability has been resolved: fs: quota: create dedicated workqueue for quota_rel...
CVE-2025-40195In the Linux kernel, the following vulnerability has been resolved: mount: handle NULL values in mnt_ns_release() When...
CVE-2025-40194In the Linux kernel, the following vulnerability has been resolved: cpufreq: intel_pstate: Fix object lifecycle issue i...
CVE-2025-40193In the Linux kernel, the following vulnerability has been resolved: xtensa: simdisk: add input size check in proc_write...
CVE-2025-40192In the Linux kernel, the following vulnerability has been resolved: Revert "ipmi: fix msg stack when IPMI is disconnect...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now