2025 CVE Vulnerabilities
45,203 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-27470 | HIGH | 7.5 | 1.9% | Apr 8, 2025 | Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker ... |
| CVE-2025-27469 | HIGH | 7.5 | 2.0% | Apr 8, 2025 | Uncontrolled resource consumption in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacke... |
| CVE-2025-27467 | HIGH | 7.8 | 0.6% | Apr 8, 2025 | Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally. |
| CVE-2025-27200 | HIGH | 7.8 | 0.3% | Apr 8, 2025 | Animate versions 24.0.7, 23.0.10 and earlier are affected by a Use After Free vulnerability that could result in arbitra... |
| CVE-2025-27199 | HIGH | 7.8 | 0.4% | Apr 8, 2025 | Animate versions 24.0.7, 23.0.10 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could resul... |
| CVE-2025-27198 | HIGH | 7.8 | 0.4% | Apr 8, 2025 | Photoshop Desktop versions 25.12.1, 26.4.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that c... |
| CVE-2025-27196 | HIGH | 7.8 | 0.3% | Apr 8, 2025 | Premiere Pro versions 25.1, 24.6.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could res... |
| CVE-2025-27195 | HIGH | 7.8 | 0.4% | Apr 8, 2025 | Media Encoder versions 25.1, 24.6.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could re... |
| CVE-2025-27194 | HIGH | 7.8 | 0.3% | Apr 8, 2025 | Media Encoder versions 25.1, 24.6.4 and earlier are affected by an out-of-bounds write vulnerability that could result i... |
| CVE-2025-27193 | HIGH | 7.8 | 0.3% | Apr 8, 2025 | Bridge versions 14.1.5, 15.0.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result ... |
| CVE-2025-27183 | HIGH | 7.8 | 0.3% | Apr 8, 2025 | After Effects versions 25.1, 24.6.4 and earlier are affected by an out-of-bounds write vulnerability that could result i... |
| CVE-2025-27182 | HIGH | 7.8 | 0.3% | Apr 8, 2025 | After Effects versions 25.1, 24.6.4 and earlier are affected by an out-of-bounds write vulnerability that could result i... |
| CVE-2025-26688 | HIGH | 7.8 | 0.5% | Apr 8, 2025 | Stack-based buffer overflow in Microsoft Virtual Hard Drive allows an authorized attacker to elevate privileges locally. |
| CVE-2025-26687 | HIGH | 7.5 | 1.0% | Apr 8, 2025 | Use after free in Windows Win32K - GRFX allows an unauthorized attacker to elevate privileges over a network. |
| CVE-2025-26686 | HIGH | 7.5 | 1.4% | Apr 8, 2025 | Sensitive data storage in improperly locked memory in Windows TCP/IP allows an unauthorized attacker to execute code ove... |
| CVE-2025-26682 | HIGH | 7.5 | 1.3% | Apr 8, 2025 | Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service ove... |
| CVE-2025-26680 | HIGH | 7.5 | 1.6% | Apr 8, 2025 | Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker ... |
| CVE-2025-26679 | HIGH | 7.8 | 0.5% | Apr 8, 2025 | Use after free in RPC Endpoint Mapper Service allows an authorized attacker to elevate privileges locally. |
| CVE-2025-26678 | HIGH | 8.4 | 0.5% | Apr 8, 2025 | Improper access control in Windows Defender Application Control (WDAC) allows an unauthorized attacker to bypass a secur... |
| CVE-2025-26675 | HIGH | 7.8 | 0.5% | Apr 8, 2025 | Out-of-bounds read in Windows Subsystem for Linux allows an authorized attacker to elevate privileges locally. |
| CVE-2025-26674 | HIGH | 7.8 | 0.6% | Apr 8, 2025 | Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally. |
| CVE-2025-26673 | HIGH | 7.5 | 2.1% | Apr 8, 2025 | Uncontrolled resource consumption in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacke... |
| CVE-2025-26671 | HIGH | 8.1 | 1.1% | Apr 8, 2025 | Use after free in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network. |
| CVE-2025-26670 | HIGH | 8.1 | 7.4% | Apr 8, 2025 | Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code o... |
| CVE-2025-26669 | HIGH | 8.8 | 1.3% | Apr 8, 2025 | Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose infor... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now