2025 CVE Vulnerabilities

45,206 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-11565HIGH7.3CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could c...
CVE-2025-62876MEDIUM5.3A Execution with Unnecessary Privileges vulnerability in lightdm-kde-greeter allows escalation from the service user to ...
CVE-2025-12998HIGH8.2Improper Authentication vulnerability in TYPO3 Extension "Modules" codingms/modules.This issue affects Extension "Module...
CVE-2025-40177In the Linux kernel, the following vulnerability has been resolved: accel/qaic: Fix bootlog initialization ordering As...
CVE-2025-40176CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: tls: wait for pending async decryptions if tls_strp...
CVE-2025-40175In the Linux kernel, the following vulnerability has been resolved: idpf: cleanup remaining SKBs in PTP flows When the...
CVE-2025-40174HIGH7.8In the Linux kernel, the following vulnerability has been resolved: x86/mm: Fix SMP ordering in switch_mm_irqs_off() S...
CVE-2025-40173HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net/ip6_tunnel: Prevent perpetual tunnel growth Si...
CVE-2025-40172HIGH7.8In the Linux kernel, the following vulnerability has been resolved: accel/qaic: Treat remaining == 0 as error in find_a...
CVE-2025-40171HIGH7.5In the Linux kernel, the following vulnerability has been resolved: nvmet-fc: move lsop put work to nvmet_fc_ls_req_op ...
CVE-2025-40170HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net: use dst_dev_rcu() in sk_setup_caps() Use RCU ...
CVE-2025-40169HIGH7.8In the Linux kernel, the following vulnerability has been resolved: bpf: Reject negative offsets for ALU ops When veri...
CVE-2025-40168HIGH8.1In the Linux kernel, the following vulnerability has been resolved: smc: Use __sk_dst_get() and dst_dev_rcu() in smc_cl...
CVE-2025-40167HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ext4: detect invalid INLINE_DATA + EXTENTS flag com...
CVE-2025-40166HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/xe/guc: Check GuC running state before deregist...
CVE-2025-40165HIGH7.8In the Linux kernel, the following vulnerability has been resolved: media: nxp: imx8-isi: m2m: Fix streaming cleanup on...
CVE-2025-40164MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: usbnet: Fix using smp_processor_id() in preemptible...
CVE-2025-40163In the Linux kernel, the following vulnerability has been resolved: sched/deadline: Stop dl_server before CPU goes offl...
CVE-2025-40162In the Linux kernel, the following vulnerability has been resolved: ASoC: amd/sdw_utils: avoid NULL deref when devm_kas...
CVE-2025-40161In the Linux kernel, the following vulnerability has been resolved: mailbox: zynqmp-ipi: Fix SGI cleanup on unbind The...
CVE-2025-40160In the Linux kernel, the following vulnerability has been resolved: xen/events: Return -EEXIST for bound VIRQs Change ...
CVE-2025-40159HIGH7.8In the Linux kernel, the following vulnerability has been resolved: xsk: Harden userspace-supplied xdp_desc validation ...
CVE-2025-40158HIGH8.1In the Linux kernel, the following vulnerability has been resolved: ipv6: use RCU in ip6_output() Use RCU in ip6_outpu...
CVE-2025-40157In the Linux kernel, the following vulnerability has been resolved: EDAC/i10nm: Skip DIMM enumeration on a disabled mem...
CVE-2025-40156In the Linux kernel, the following vulnerability has been resolved: PM / devfreq: mtk-cci: Fix potential error pointer ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now