2025 CVE Vulnerabilities

45,203 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-2222HIGH8.2CWE-552: Files or Directories Accessible to External Parties vulnerability over https exists that could leak information...
CVE-2025-29870HIGH7.5Missing authentication for critical function vulnerability exists in Wi-Fi AP UNIT 'AC-WPS-11ac series'. If exploited, a...
CVE-2025-27934HIGH7.5Information disclosure of authentication information in the specific service vulnerability exists in Wi-Fi AP UNIT 'AC-W...
CVE-2025-25053HIGH8.8OS command injection vulnerability in the WEB UI (the setting page) exists in Wi-Fi AP UNIT 'AC-WPS-11ac series'. If exp...
CVE-2025-30290HIGH8.7ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Improper Limitation of a Pathname to a Restr...
CVE-2025-30289HIGH8.2ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Improper Neutralization of Special Elements ...
CVE-2025-30288HIGH8.2ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Improper Access Control vulnerability that c...
CVE-2025-30287HIGH8.2ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Improper Authentication vulnerability that c...
CVE-2025-30286HIGH8.4ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by an Improper Neutralization of Special Elements ...
CVE-2025-30285HIGH8.4ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by a Deserialization of Untrusted Data vulnerabili...
CVE-2025-30284HIGH8.4ColdFusion versions 2023.12, 2021.18, 2025.0 and earlier are affected by a Deserialization of Untrusted Data vulnerabili...
CVE-2025-30304HIGH7.8Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an out-of-bounds write vulnerability that could res...
CVE-2025-30299HIGH7.8Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow vulnerability that cou...
CVE-2025-30298HIGH7.8Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Stack-based Buffer Overflow vulnerability that co...
CVE-2025-30297HIGH7.8Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an out-of-bounds write vulnerability that could res...
CVE-2025-30296HIGH7.8Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerabi...
CVE-2025-30295HIGH7.8Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Heap-based Buffer Overflow vulnerability that cou...
CVE-2025-32035HIGH7.5DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. Prior to 9...
CVE-2025-29824HIGH7.8Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
CVE-2025-29823HIGH7.8Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2025-29822HIGH7.8Incomplete list of disallowed inputs in Microsoft Office OneNote allows an unauthorized attacker to bypass a security fe...
CVE-2025-29820HIGH7.8Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2025-29816HIGH7.5Improper input validation in Microsoft Office Word allows an unauthorized attacker to bypass a security feature over a n...
CVE-2025-29812HIGH7.8Untrusted pointer dereference in Windows Kernel Memory allows an authorized attacker to elevate privileges locally.
CVE-2025-29811HIGH7.8Improper input validation in Windows Mobile Broadband allows an authorized attacker to elevate privileges locally.

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now