2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-20047 | MEDIUM | 5.7 | 0.1% | May 13, 2025 | Improper locking in the Intel(R) Integrated Connectivity I/O interface (CNVi) for some Intel(R) Core™ Ultra Processors m... |
| CVE-2025-20043 | MEDIUM | 6.7 | 0.1% | May 13, 2025 | Uncontrolled search path for some Intel(R) RealSense™ SDK software before version 2.56.2 may allow an authenticated user... |
| CVE-2025-20041 | MEDIUM | 6.7 | 0.1% | May 13, 2025 | Uncontrolled search path for some Intel(R) Graphics software for Intel(R) Arc™ graphics and Intel(R) Iris(R) Xe graphics... |
| CVE-2025-20039 | MEDIUM | 6.9 | 0.1% | May 13, 2025 | Race condition for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenti... |
| CVE-2025-20034 | MEDIUM | 5.6 | 0.1% | May 13, 2025 | Improper input validation in the BackupBiosUpdate UEFI firmware SmiVariable driver for the Intel(R) Server D50DNP and M5... |
| CVE-2025-20031 | MEDIUM | 6.8 | 0.1% | May 13, 2025 | Improper input validation for some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable denia... |
| CVE-2025-20022 | MEDIUM | 5.8 | 0.2% | May 13, 2025 | Insufficient control flow management for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may allow a p... |
| CVE-2025-20015 | MEDIUM | 6.7 | 0.1% | May 13, 2025 | Uncontrolled search path element for some Intel(R) Ethernet Connection software before version 29.4 may allow an authent... |
| CVE-2025-20013 | MEDIUM | 5.5 | 0.1% | May 13, 2025 | Exposure of sensitive information to an unauthorized actor for some Edge Orchestrator software for Intel(R) Tiber™ Edge ... |
| CVE-2025-20012 | MEDIUM | 4.9 | 0.2% | May 13, 2025 | Incorrect behavior order for some Intel(R) Core™ Ultra Processors may allow an unauthenticated user to potentially enabl... |
| CVE-2025-20009 | MEDIUM | 5.6 | 0.1% | May 13, 2025 | Improper input validation in the UEFI firmware GenerationSetup module for the Intel(R) Server D50DNP and M50FCP boards m... |
| CVE-2025-30329 | MEDIUM | 5.5 | 0.2% | May 13, 2025 | Animate versions 24.0.8, 23.0.11 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to... |
| CVE-2025-47280 | MEDIUM | 6.1 | 0.2% | May 13, 2025 | Umbraco Forms is a form builder that integrates with the Umbraco content management system. Starting in the 7.x branch a... |
| CVE-2025-32703 | MEDIUM | 5.5 | 0.4% | May 13, 2025 | Insufficient granularity of access control in Visual Studio allows an authorized attacker to disclose information locall... |
| CVE-2025-30394 | MEDIUM | 5.9 | 20.6% | May 13, 2025 | Sensitive data storage in improperly locked memory in Remote Desktop Gateway Service allows an unauthorized attacker to ... |
| CVE-2025-30320 | MEDIUM | 5.5 | 0.2% | May 13, 2025 | InDesign Desktop versions ID19.5.2, ID20.2 and earlier are affected by a NULL Pointer Dereference vulnerability that cou... |
| CVE-2025-30319 | MEDIUM | 5.5 | 0.2% | May 13, 2025 | InDesign Desktop versions ID19.5.2, ID20.2 and earlier are affected by a NULL Pointer Dereference vulnerability that cou... |
| CVE-2025-29974 | MEDIUM | 5.7 | 0.6% | May 13, 2025 | Integer underflow (wrap or wraparound) in Windows Kernel allows an unauthorized attacker to disclose information over an... |
| CVE-2025-29968 | MEDIUM | 6.5 | 1.6% | May 13, 2025 | Improper input validation in Active Directory Certificate Services (AD CS) allows an authorized attacker to deny service... |
| CVE-2025-29961 | MEDIUM | 6.5 | 1.1% | May 13, 2025 | Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose infor... |
| CVE-2025-29960 | MEDIUM | 6.5 | 1.3% | May 13, 2025 | Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose infor... |
| CVE-2025-29959 | MEDIUM | 6.5 | 1.3% | May 13, 2025 | Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to dis... |
| CVE-2025-29958 | MEDIUM | 6.5 | 1.1% | May 13, 2025 | Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to dis... |
| CVE-2025-29957 | MEDIUM | 6.2 | 0.5% | May 13, 2025 | Uncontrolled resource consumption in Windows Deployment Services allows an unauthorized attacker to deny service locally... |
| CVE-2025-29956 | MEDIUM | 5.4 | 0.8% | May 13, 2025 | Buffer over-read in Windows SMB allows an authorized attacker to disclose information over a network. |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now