2025 CVE Vulnerabilities
45,200 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-5970 | MEDIUM | 5.4 | 0.3% | Jun 10, 2025 | A vulnerability was found in PHPGurukul Restaurant Table Booking System 1.0 and classified as problematic. Affected by t... |
| CVE-2025-47969 | MEDIUM | 4.4 | 0.6% | Jun 10, 2025 | Exposure of sensitive information to an unauthorized actor in Windows Hello allows an authorized attacker to disclose in... |
| CVE-2025-47956 | MEDIUM | 5.5 | 0.4% | Jun 10, 2025 | External control of file name or path in Windows Security App allows an authorized attacker to perform spoofing locally. |
| CVE-2025-47171 | MEDIUM | 6.7 | 1.3% | Jun 10, 2025 | Improper input validation in Microsoft Office Outlook allows an authorized attacker to execute code locally. |
| CVE-2025-47160 | MEDIUM | 5.4 | 0.7% | Jun 10, 2025 | Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a networ... |
| CVE-2025-47106 | MEDIUM | 5.5 | 0.3% | Jun 10, 2025 | InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by a Use After Free vulnerability that could lead to... |
| CVE-2025-47105 | MEDIUM | 5.5 | 0.2% | Jun 10, 2025 | InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by an out-of-bounds read vulnerability that could le... |
| CVE-2025-47104 | MEDIUM | 5.5 | 0.2% | Jun 10, 2025 | InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by an out-of-bounds read vulnerability that could le... |
| CVE-2025-33069 | MEDIUM | 5.1 | 0.3% | Jun 10, 2025 | Improper verification of cryptographic signature in App Control for Business (WDAC) allows an unauthorized attacker to b... |
| CVE-2025-33065 | MEDIUM | 5.5 | 0.5% | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. |
| CVE-2025-33063 | MEDIUM | 5.5 | 0.5% | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. |
| CVE-2025-33062 | MEDIUM | 5.5 | 0.5% | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. |
| CVE-2025-33061 | MEDIUM | 5.5 | 0.5% | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. |
| CVE-2025-33060 | MEDIUM | 5.5 | 0.5% | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. |
| CVE-2025-33059 | MEDIUM | 5.5 | 0.5% | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. |
| CVE-2025-33058 | MEDIUM | 5.5 | 0.5% | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. |
| CVE-2025-33057 | MEDIUM | 6.5 | 1.4% | Jun 10, 2025 | Null pointer dereference in Windows Local Security Authority (LSA) allows an authorized attacker to deny service over a ... |
| CVE-2025-33055 | MEDIUM | 5.5 | 0.5% | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. |
| CVE-2025-33052 | MEDIUM | 5.5 | 0.5% | Jun 10, 2025 | Use of uninitialized resource in Windows DWM Core Library allows an authorized attacker to disclose information locally. |
| CVE-2025-32722 | MEDIUM | 5.5 | 1.0% | Jun 10, 2025 | Improper access control in Windows Storage Port Driver allows an authorized attacker to disclose information locally. |
| CVE-2025-32720 | MEDIUM | 5.5 | 0.6% | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. |
| CVE-2025-32719 | MEDIUM | 5.5 | 0.5% | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. |
| CVE-2025-32715 | MEDIUM | 6.5 | 1.2% | Jun 10, 2025 | Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network. |
| CVE-2025-30321 | MEDIUM | 5.5 | 0.2% | Jun 10, 2025 | InDesign Desktop versions ID20.2, ID19.5.3 and earlier are affected by a NULL Pointer Dereference vulnerability that cou... |
| CVE-2025-25250 | MEDIUM | 4.3 | 0.4% | Jun 10, 2025 | An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now