2025 CVE Vulnerabilities

45,206 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-20047MEDIUM5.7Improper locking in the Intel(R) Integrated Connectivity I/O interface (CNVi) for some Intel(R) Core™ Ultra Processors m...
CVE-2025-20043MEDIUM6.7Uncontrolled search path for some Intel(R) RealSense™ SDK software before version 2.56.2 may allow an authenticated user...
CVE-2025-20041MEDIUM6.7Uncontrolled search path for some Intel(R) Graphics software for Intel(R) Arc™ graphics and Intel(R) Iris(R) Xe graphics...
CVE-2025-20039MEDIUM6.9Race condition for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenti...
CVE-2025-20034MEDIUM5.6Improper input validation in the BackupBiosUpdate UEFI firmware SmiVariable driver for the Intel(R) Server D50DNP and M5...
CVE-2025-20031MEDIUM6.8Improper input validation for some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable denia...
CVE-2025-20022MEDIUM5.8Insufficient control flow management for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may allow a p...
CVE-2025-20015MEDIUM6.7Uncontrolled search path element for some Intel(R) Ethernet Connection software before version 29.4 may allow an authent...
CVE-2025-20013MEDIUM5.5Exposure of sensitive information to an unauthorized actor for some Edge Orchestrator software for Intel(R) Tiber™ Edge ...
CVE-2025-20012MEDIUM4.9Incorrect behavior order for some Intel(R) Core™ Ultra Processors may allow an unauthenticated user to potentially enabl...
CVE-2025-20009MEDIUM5.6Improper input validation in the UEFI firmware GenerationSetup module for the Intel(R) Server D50DNP and M50FCP boards m...
CVE-2025-30329MEDIUM5.5Animate versions 24.0.8, 23.0.11 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to...
CVE-2025-47280MEDIUM6.1Umbraco Forms is a form builder that integrates with the Umbraco content management system. Starting in the 7.x branch a...
CVE-2025-32703MEDIUM5.5Insufficient granularity of access control in Visual Studio allows an authorized attacker to disclose information locall...
CVE-2025-30394MEDIUM5.9Sensitive data storage in improperly locked memory in Remote Desktop Gateway Service allows an unauthorized attacker to ...
CVE-2025-30320MEDIUM5.5InDesign Desktop versions ID19.5.2, ID20.2 and earlier are affected by a NULL Pointer Dereference vulnerability that cou...
CVE-2025-30319MEDIUM5.5InDesign Desktop versions ID19.5.2, ID20.2 and earlier are affected by a NULL Pointer Dereference vulnerability that cou...
CVE-2025-29974MEDIUM5.7Integer underflow (wrap or wraparound) in Windows Kernel allows an unauthorized attacker to disclose information over an...
CVE-2025-29968MEDIUM6.5Improper input validation in Active Directory Certificate Services (AD CS) allows an authorized attacker to deny service...
CVE-2025-29961MEDIUM6.5Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose infor...
CVE-2025-29960MEDIUM6.5Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose infor...
CVE-2025-29959MEDIUM6.5Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to dis...
CVE-2025-29958MEDIUM6.5Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to dis...
CVE-2025-29957MEDIUM6.2Uncontrolled resource consumption in Windows Deployment Services allows an unauthorized attacker to deny service locally...
CVE-2025-29956MEDIUM5.4Buffer over-read in Windows SMB allows an authorized attacker to disclose information over a network.

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now