2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-59440 | HIGH | 7.5 | 0.3% | Apr 6, 2026 | An issue was discovered in USIM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2... |
| CVE-2025-57835 | HIGH | 7.5 | 0.3% | Apr 6, 2026 | An issue was discovered in RRC in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 21... |
| CVE-2025-47400 | HIGH | 7.1 | 0.1% | Apr 6, 2026 | Cryptographic issue while copying data to a destination buffer without validating its size. |
| CVE-2025-47392 | HIGH | 8.8 | 0.2% | Apr 6, 2026 | Memory corruption when decoding corrupted satellite data files with invalid signature offsets. |
| CVE-2025-47391 | HIGH | 7.8 | 0.1% | Apr 6, 2026 | Memory corruption while processing a frame request from user. |
| CVE-2025-47390 | HIGH | 7.8 | 0.1% | Apr 6, 2026 | Memory corruption while preprocessing IOCTL request in JPEG driver. |
| CVE-2025-47389 | HIGH | 7.8 | 0.1% | Apr 6, 2026 | Memory corruption when buffer copy operation fails due to integer overflow during attestation report generation. |
| CVE-2025-47374 | MEDIUM | 6.5 | 0.1% | Apr 6, 2026 | Memory Corruption when accessing freed memory due to concurrent fence deregistration and signal handling. |
| CVE-2025-14938 | MEDIUM | 5.3 | 0.3% | Apr 4, 2026 | The Listeo Core plugin for WordPress is vulnerable to unauthenticated arbitrary media upload in all versions up to, and ... |
| CVE-2025-15064 | MEDIUM | 6.4 | 0.3% | Apr 4, 2026 | The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugi... |
| CVE-2025-13368 | MEDIUM | 6.4 | 0.2% | Apr 4, 2026 | The Xpro Addons — 140+ Widgets for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the P... |
| CVE-2025-10681 | HIGH | 8.8 | 0.3% | Apr 3, 2026 | Storage credentials are hardcoded in the mobile app and device firmware. These credentials do not adequately limit end u... |
| CVE-2025-68153 | MEDIUM | 6.5 | 0.2% | Apr 3, 2026 | Juju is an open source application orchestration engine that enables any application operation on any infrastructure at ... |
| CVE-2025-68152 | MEDIUM | 4.9 | 0.4% | Apr 3, 2026 | Juju is an open source application orchestration engine that enables any application operation on any infrastructure at ... |
| CVE-2025-64340 | HIGH | 7.8 | 0.7% | Apr 3, 2026 | FastMCP is the standard framework for building MCP applications. Prior to version 3.2.0, server names containing shell m... |
| CVE-2025-59711 | HIGH | 8.3 | 0.7% | Apr 3, 2026 | An issue was discovered in Biztalk360 before 11.5. Because of mishandling of user-provided input in an upload mechanism,... |
| CVE-2025-59710 | HIGH | 8.8 | 0.5% | Apr 3, 2026 | An issue was discovered in Biztalk360 before 11.5. Because of incorrect access control, any user is able to request the ... |
| CVE-2025-59709 | MEDIUM | 6.8 | 0.9% | Apr 3, 2026 | An issue was discovered in Biztalk360 through 11.5. because of mishandling of user-provided input in a path to be read b... |
| CVE-2025-7024 | HIGH | 7.3 | 0.1% | Apr 3, 2026 | Incorrect Default Permissions vulnerability in AIRBUS PSS TETRA Connectivity Server on Windows Server OS allows Privileg... |
| CVE-2025-15620 | HIGH | 8.6 | 0.5% | Apr 2, 2026 | HiOS Switch Platform versions 09.1.00 through 09.4.04 and 10.0.00 through 10.3.00 contain a denial-of-service vulnerabil... |
| CVE-2025-43264 | HIGH | 8.8 | 0.4% | Apr 2, 2026 | The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.6. Processing a malicious... |
| CVE-2025-43257 | HIGH | 8.7 | 0.2% | Apr 2, 2026 | This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.6. An app may be ab... |
| CVE-2025-43238 | MEDIUM | 6.2 | 0.2% | Apr 2, 2026 | An integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.6, macOS Sonom... |
| CVE-2025-43236 | LOW | 3.3 | 0.2% | Apr 2, 2026 | A type confusion issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.6, macOS Son... |
| CVE-2025-43219 | HIGH | 8.8 | 0.4% | Apr 2, 2026 | The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.6. Processing a malicious... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now