2025 CVE Vulnerabilities

45,202 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-30735HIGH8.1Vulnerability in the PeopleSoft Enterprise CC Common Application Objects product of Oracle PeopleSoft (component: Page a...
CVE-2025-30730HIGH7.5Vulnerability in the Oracle Application Object Library product of Oracle E-Business Suite (component: Core). Supported ...
CVE-2025-30728HIGH7.5Vulnerability in the Oracle Configurator product of Oracle E-Business Suite (component: Core). Supported versions that ...
CVE-2025-30724HIGH7.5Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: XML Services). Supported versions that...
CVE-2025-30716HIGH7.5Vulnerability in the Oracle Common Applications product of Oracle E-Business Suite (component: CRM User Management Frame...
CVE-2025-30712HIGH8.1Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version th...
CVE-2025-30708HIGH7.5Vulnerability in the Oracle User Management product of Oracle E-Business Suite (component: Search and Register Users). ...
CVE-2025-30707HIGH7.5Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: User Management). Supported versions ...
CVE-2025-30706HIGH7.5Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are aff...
CVE-2025-30701HIGH7.3Vulnerability in the RAS Security component of Oracle Database Server. Supported versions that are affected are 19.3-19...
CVE-2025-30690HIGH7.2Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). The supported version that is a...
CVE-2025-30686HIGH7.6Vulnerability in the Oracle Hospitality Simphony product of Oracle Food and Beverage Applications (component: EMC). Sup...
CVE-2025-2497HIGH7.8A maliciously crafted DWG file, when parsed through Autodesk Revit, can cause a Stack-Based Buffer Overflow vulnerabilit...
CVE-2025-27939HIGH7.5An attacker can change registered email addresses of other users and take over arbitrary accounts.
CVE-2025-21587HIGH7.4Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE...
CVE-2025-1656HIGH7.8A maliciously crafted PDF file, when linked or imported into Autodesk applications, can force a Heap-Based Overflow vuln...
CVE-2025-1277HIGH7.8A maliciously crafted PDF file, when parsed through Autodesk applications, can force a Memory Corruption vulnerability. ...
CVE-2025-1276HIGH7.8A maliciously crafted DWG file, when parsed through certain Autodesk applications, can force an Out-of-Bounds Write vuln...
CVE-2025-1275HIGH7.8A maliciously crafted JPG file, when linked or imported into certain Autodesk applications, can force a Heap-Based Overf...
CVE-2025-1274HIGH7.8A maliciously crafted RCS file, when parsed through Autodesk Revit, can force an Out-of-Bounds Write vulnerability. A ma...
CVE-2025-1273HIGH7.8A maliciously crafted PDF file, when linked or imported into Autodesk applications, can force a Heap-Based Overflow vuln...
CVE-2025-32438HIGH8.8make-initrd-ng is a tool for copying binaries and their dependencies. Local privilege escalation affecting all NixOS use...
CVE-2025-32012HIGH7.5Jellyfin is an open source self hosted media server. In versions 10.9.0 to before 10.10.7, the /System/Restart endpoint ...
CVE-2025-31497HIGH7.5TEIGarage is a webservice and RESTful service to transform, convert and validate various formats, focussing on the TEI f...
CVE-2025-27791HIGH8.3Collabora Online is a collaborative online office suite based on LibreOffice technology. In versions prior to 24.04.12.4...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now