2025 CVE Vulnerabilities
45,185 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-37749 | HIGH | 7.1 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: ppp: Add bound checking for skb data on ppp_sy... |
| CVE-2025-37739 | HIGH | 7.1 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid out-of-bounds access in f2fs_tru... |
| CVE-2025-37738 | HIGH | 7.8 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: ext4: ignore xattrs past end Once inside 'ext4_xat... |
| CVE-2025-23158 | HIGH | 7.8 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: media: venus: hfi: add check to handle incorrect qu... |
| CVE-2025-23157 | HIGH | 7.1 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: media: venus: hfi_parser: add check to avoid out of... |
| CVE-2025-23156 | HIGH | 7.1 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: media: venus: hfi_parser: refactor hfi packet parsi... |
| CVE-2025-23142 | HIGH | 7.8 | 0.2% | May 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: sctp: detect and prevent references to a freed tran... |
| CVE-2025-4157 | HIGH | 8.8 | 0.3% | May 1, 2025 | A vulnerability was found in PHPGurukul Boat Booking System 1.0 and classified as critical. This issue affects some unkn... |
| CVE-2025-4156 | HIGH | 8.8 | 0.3% | May 1, 2025 | A vulnerability has been found in PHPGurukul Boat Booking System 1.0 and classified as critical. This vulnerability affe... |
| CVE-2025-4155 | HIGH | 8.8 | 0.3% | May 1, 2025 | A vulnerability, which was classified as critical, was found in PHPGurukul Boat Booking System 1.0. This affects an unkn... |
| CVE-2025-4154 | HIGH | 8.8 | 0.3% | May 1, 2025 | A vulnerability, which was classified as critical, has been found in PHPGurukul Pre-School Enrollment System 1.0. Affect... |
| CVE-2025-3952 | HIGH | 8.1 | 0.3% | May 1, 2025 | The Projectopia – WordPress Project Management plugin for WordPress is vulnerable to unauthorized modification of data t... |
| CVE-2025-1305 | HIGH | 8.8 | 0.3% | May 1, 2025 | The NewsBlogger theme for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.... |
| CVE-2025-1304 | HIGH | 8.8 | 1.0% | May 1, 2025 | The NewsBlogger theme for WordPress is vulnerable to arbitrary file uploads due to a missing capability check on the new... |
| CVE-2025-2816 | HIGH | 8.1 | 0.3% | May 1, 2025 | The Page View Count plugin for WordPress is vulnerable to unauthorized modification of data that can lead to a denial of... |
| CVE-2025-4139 | HIGH | 8.8 | 0.9% | Apr 30, 2025 | A vulnerability classified as critical was found in Netgear EX6120 1.0.0.68. Affected by this vulnerability is the funct... |
| CVE-2025-2082 | HIGH | 7.5 | 0.3% | Apr 30, 2025 | Tesla Model 3 VCSEC Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent att... |
| CVE-2025-27611 | HIGH | 8.7 | 0.4% | Apr 30, 2025 | base-x is a base encoder and decoder of any given alphabet using bitcoin style leading zero compression. Versions 4.0.0,... |
| CVE-2025-32777 | HIGH | 8.2 | 0.4% | Apr 30, 2025 | Volcano is a Kubernetes-native batch scheduling system. Prior to versions 1.11.2, 1.10.2, 1.9.1, 1.11.0-network-topology... |
| CVE-2025-2170 | HIGH | 7.2 | 0.3% | Apr 30, 2025 | A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface, wh... |
| CVE-2025-46619 | HIGH | 7.6 | 0.4% | Apr 30, 2025 | A security issue has been discovered in Couchbase Server before 7.6.4 and fixed in v.7.6.4 and v.7.2.7 for Windows that ... |
| CVE-2025-44194 | HIGH | 7.3 | 0.3% | Apr 30, 2025 | SourceCodester Simple Barangay Management System v1.0 has a SQL injection vulnerability in /barangay_management/admin/?p... |
| CVE-2025-44193 | HIGH | 7.6 | 0.3% | Apr 30, 2025 | SourceCodester Simple Barangay Management System v1.0 has a SQL injection vulnerability in /barangay_management/admin/?p... |
| CVE-2025-39413 | HIGH | 8.8 | 0.3% | Apr 30, 2025 | Missing Authorization vulnerability in David Gwyer Simple Sitemap – Create a Responsive HTML Sitemap simple-sitemap.This... |
| CVE-2025-33074 | HIGH | 8.8 | 0.5% | Apr 30, 2025 | Improper verification of cryptographic signature in Microsoft Azure Functions allows an authorized attacker to execute c... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now