2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-24443 | HIGH | 7.8 | 0.3% | Mar 11, 2025 | Substance3D - Sampler versions 4.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could r... |
| CVE-2025-24442 | HIGH | 7.8 | 0.2% | Mar 11, 2025 | Substance3D - Sampler versions 4.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result ... |
| CVE-2025-24441 | HIGH | 7.8 | 0.2% | Mar 11, 2025 | Substance3D - Sampler versions 4.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result ... |
| CVE-2025-24440 | HIGH | 7.8 | 0.2% | Mar 11, 2025 | Substance3D - Sampler versions 4.5.2 and earlier are affected by an out-of-bounds write vulnerability that could result ... |
| CVE-2025-24439 | HIGH | 7.8 | 0.3% | Mar 11, 2025 | Substance3D - Sampler versions 4.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could r... |
| CVE-2025-0151 | HIGH | 8.8 | 0.4% | Mar 11, 2025 | Use after free in some Zoom Workplace Apps may allow an authenticated user to conduct an escalation of privilege via net... |
| CVE-2025-27172 | HIGH | 7.8 | 0.2% | Mar 11, 2025 | Substance3D - Designer versions 14.1 and earlier are affected by an out-of-bounds write vulnerability that could result ... |
| CVE-2025-26645 | HIGH | 8.8 | 3.2% | Mar 11, 2025 | Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code over a network. |
| CVE-2025-26634 | HIGH | 7.5 | 0.6% | Mar 11, 2025 | Heap-based buffer overflow in Windows Core Messaging allows an authorized attacker to elevate privileges over a network. |
| CVE-2025-26633 | HIGH | 7 | 31.9% | Mar 11, 2025 | Improper neutralization in Microsoft Management Console allows an unauthorized attacker to bypass a security feature loc... |
| CVE-2025-26631 | HIGH | 7.3 | 0.5% | Mar 11, 2025 | Uncontrolled search path element in Visual Studio Code allows an authorized attacker to elevate privileges locally. |
| CVE-2025-26630 | HIGH | 7.8 | 0.9% | Mar 11, 2025 | Use after free in Microsoft Office Access allows an unauthorized attacker to execute code locally. |
| CVE-2025-26629 | HIGH | 7.8 | 0.5% | Mar 11, 2025 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2025-26627 | HIGH | 7 | 0.8% | Mar 11, 2025 | Improper neutralization of special elements used in a command ('command injection') in Azure Arc allows an authorized at... |
| CVE-2025-25008 | HIGH | 7.1 | 0.6% | Mar 11, 2025 | Improper link resolution before file access ('link following') in Microsoft Windows allows an authorized attacker to ele... |
| CVE-2025-25003 | HIGH | 7.3 | 0.4% | Mar 11, 2025 | Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally. |
| CVE-2025-24998 | HIGH | 7.3 | 0.4% | Mar 11, 2025 | Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally. |
| CVE-2025-24995 | HIGH | 7.8 | 0.5% | Mar 11, 2025 | Heap-based buffer overflow in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to elevate privile... |
| CVE-2025-24994 | HIGH | 7.3 | 1.2% | Mar 11, 2025 | Improper access control in Windows Cross Device Service allows an authorized attacker to elevate privileges locally. |
| CVE-2025-24993 | HIGH | 7.8 | 2.1% | Mar 11, 2025 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally. |
| CVE-2025-24985 | HIGH | 7.8 | 3.7% | Mar 11, 2025 | Integer overflow or wraparound in Windows Fast FAT Driver allows an unauthorized attacker to execute code locally. |
| CVE-2025-24983 | HIGH | 7 | 1.3% | Mar 11, 2025 | Use after free in Windows Win32 Kernel Subsystem allows an authorized attacker to elevate privileges locally. |
| CVE-2025-24084 | HIGH | 8.4 | 0.7% | Mar 11, 2025 | Untrusted pointer dereference in Windows Subsystem for Linux allows an unauthorized attacker to execute code locally. |
| CVE-2025-24083 | HIGH | 7.8 | 0.7% | Mar 11, 2025 | Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally. |
| CVE-2025-24082 | HIGH | 7.8 | 0.7% | Mar 11, 2025 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now