2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-40048 | HIGH | 7.5 | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: uio_hv_generic: Let userspace take care of interrup... |
| CVE-2025-40047 | HIGH | 7.8 | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: io_uring/waitid: always prune wait queue entry in i... |
| CVE-2025-40046 | HIGH | 8.6 | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: io_uring/zcrx: fix overshooting recv limit It's re... |
| CVE-2025-40045 | HIGH | 7.8 | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: ASoC: codecs: wcd937x: set the comp soundwire port ... |
| CVE-2025-40044 | HIGH | 7.8 | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: fs: udf: fix OOB read in lengthAllocDescs handling ... |
| CVE-2025-40043 | HIGH | 8.8 | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: nfc: nci: Add parameter validation for packet ... |
| CVE-2025-40042 | — | — | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: tracing: Fix race condition in kprobe initializatio... |
| CVE-2025-40041 | HIGH | 7.8 | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: LoongArch: BPF: Sign-extend struct ops return value... |
| CVE-2025-40040 | MEDIUM | 5.5 | 0.3% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm/ksm: fix flag-dropping behavior in ksm_madvise ... |
| CVE-2025-40039 | MEDIUM | 4.7 | 0.1% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix race condition in RPC handle list access... |
| CVE-2025-40038 | HIGH | 7.1 | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Skip fastpath emulation on VM-Exit if nex... |
| CVE-2025-40037 | — | — | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: fbdev: simplefb: Fix use after free in simplefb_det... |
| CVE-2025-40036 | — | — | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: fix possible map leak in fastrpc_put... |
| CVE-2025-40035 | — | — | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: Input: uinput - zero-initialize uinput_ff_upload_co... |
| CVE-2025-40034 | — | — | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: PCI/AER: Avoid NULL pointer dereference in aer_rate... |
| CVE-2025-40033 | — | — | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: remoteproc: pru: Fix potential NULL pointer derefer... |
| CVE-2025-40032 | — | — | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: pci-epf-test: Add NULL check for DMA... |
| CVE-2025-40031 | — | — | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: tee: fix register_shm_helper() In register_shm_hel... |
| CVE-2025-40030 | — | — | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: pinctrl: check the return value of pinmux_ops::get_... |
| CVE-2025-40029 | — | — | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: bus: fsl-mc: Check return value of platform_get_res... |
| CVE-2025-55758 | MEDIUM | 5.4 | 0.1% | Oct 28, 2025 | Multiple CSRF attack vectors in JDownloads component 1.0.0-4.0.47 for Joomla were discovered. |
| CVE-2025-41090 | HIGH | 7.6 | 0.3% | Oct 28, 2025 | microCLAUDIA in v3.2.0 and prior has an improper access control vulnerability. This flaw allows an authenticated user t... |
| CVE-2025-40028 | HIGH | 7.8 | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: binder: fix double-free in dbitmap A process might... |
| CVE-2025-40027 | HIGH | 7.8 | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: net/9p: fix double req put in p9_fd_cancelled Syzk... |
| CVE-2025-40026 | HIGH | 7.9 | 0.2% | Oct 28, 2025 | In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Don't (re)check L1 intercepts when comple... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now