2025 CVE Vulnerabilities

45,200 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-5970MEDIUM5.4A vulnerability was found in PHPGurukul Restaurant Table Booking System 1.0 and classified as problematic. Affected by t...
CVE-2025-47969MEDIUM4.4Exposure of sensitive information to an unauthorized actor in Windows Hello allows an authorized attacker to disclose in...
CVE-2025-47956MEDIUM5.5External control of file name or path in Windows Security App allows an authorized attacker to perform spoofing locally.
CVE-2025-47171MEDIUM6.7Improper input validation in Microsoft Office Outlook allows an authorized attacker to execute code locally.
CVE-2025-47160MEDIUM5.4Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a networ...
CVE-2025-47106MEDIUM5.5InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by a Use After Free vulnerability that could lead to...
CVE-2025-47105MEDIUM5.5InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by an out-of-bounds read vulnerability that could le...
CVE-2025-47104MEDIUM5.5InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by an out-of-bounds read vulnerability that could le...
CVE-2025-33069MEDIUM5.1Improper verification of cryptographic signature in App Control for Business (WDAC) allows an unauthorized attacker to b...
CVE-2025-33065MEDIUM5.5Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
CVE-2025-33063MEDIUM5.5Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
CVE-2025-33062MEDIUM5.5Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
CVE-2025-33061MEDIUM5.5Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
CVE-2025-33060MEDIUM5.5Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
CVE-2025-33059MEDIUM5.5Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
CVE-2025-33058MEDIUM5.5Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
CVE-2025-33057MEDIUM6.5Null pointer dereference in Windows Local Security Authority (LSA) allows an authorized attacker to deny service over a ...
CVE-2025-33055MEDIUM5.5Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
CVE-2025-33052MEDIUM5.5Use of uninitialized resource in Windows DWM Core Library allows an authorized attacker to disclose information locally.
CVE-2025-32722MEDIUM5.5Improper access control in Windows Storage Port Driver allows an authorized attacker to disclose information locally.
CVE-2025-32720MEDIUM5.5Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
CVE-2025-32719MEDIUM5.5Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
CVE-2025-32715MEDIUM6.5Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
CVE-2025-30321MEDIUM5.5InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by a NULL Pointer Dereference vulnerability that cou...
CVE-2025-25250MEDIUM4.3An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now