2025 CVE Vulnerabilities
45,320 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-57834 | HIGH | 7.5 | 0.4% | Apr 6, 2026 | An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem (Exynos 980, 850, 990, 1080, 2100, 12... |
| CVE-2025-54602 | HIGH | 7 | 0.1% | Apr 6, 2026 | An issue was discovered in the Wi-Fi driver in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 12... |
| CVE-2025-54328 | CRITICAL | 10 | 0.5% | Apr 6, 2026 | An issue was discovered in SMS in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 21... |
| CVE-2025-58349 | CRITICAL | 9.1 | 0.3% | Apr 6, 2026 | An issue was discovered in L2 in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 210... |
| CVE-2025-54324 | HIGH | 7.5 | 0.3% | Apr 6, 2026 | An issue was discovered in NAS in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 21... |
| CVE-2025-48651 | MEDIUM | 5.5 | 0.1% | Apr 6, 2026 | In importWrappedKey of KMKeymasterApplet.java, there is a possible way access keys that should be restricted due to impr... |
| CVE-2025-61166 | MEDIUM | 6.1 | 0.2% | Apr 6, 2026 | An open redirect in Ascertia SigningHub User v10.0 allows attackers to redirect users to a malicious site via a crafted ... |
| CVE-2025-59440 | HIGH | 7.5 | 0.3% | Apr 6, 2026 | An issue was discovered in USIM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2... |
| CVE-2025-57835 | HIGH | 7.5 | 0.3% | Apr 6, 2026 | An issue was discovered in RRC in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 21... |
| CVE-2025-47400 | HIGH | 7.1 | 0.1% | Apr 6, 2026 | Cryptographic issue while copying data to a destination buffer without validating its size. |
| CVE-2025-47392 | HIGH | 8.8 | 0.2% | Apr 6, 2026 | Memory corruption when decoding corrupted satellite data files with invalid signature offsets. |
| CVE-2025-47391 | HIGH | 7.8 | 0.1% | Apr 6, 2026 | Memory corruption while processing a frame request from user. |
| CVE-2025-47390 | HIGH | 7.8 | 0.1% | Apr 6, 2026 | Memory corruption while preprocessing IOCTL request in JPEG driver. |
| CVE-2025-47389 | HIGH | 7.8 | 0.1% | Apr 6, 2026 | Memory corruption when buffer copy operation fails due to integer overflow during attestation report generation. |
| CVE-2025-47374 | MEDIUM | 6.5 | 0.1% | Apr 6, 2026 | Memory Corruption when accessing freed memory due to concurrent fence deregistration and signal handling. |
| CVE-2025-14938 | MEDIUM | 5.3 | 0.3% | Apr 4, 2026 | The Listeo Core plugin for WordPress is vulnerable to unauthenticated arbitrary media upload in all versions up to, and ... |
| CVE-2025-15064 | MEDIUM | 6.4 | 0.3% | Apr 4, 2026 | The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugi... |
| CVE-2025-13368 | MEDIUM | 6.4 | 0.2% | Apr 4, 2026 | The Xpro Addons — 140+ Widgets for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the P... |
| CVE-2025-10681 | HIGH | 8.8 | 0.3% | Apr 3, 2026 | Storage credentials are hardcoded in the mobile app and device firmware. These credentials do not adequately limit end u... |
| CVE-2025-68153 | MEDIUM | 6.5 | 0.2% | Apr 3, 2026 | Juju is an open source application orchestration engine that enables any application operation on any infrastructure at ... |
| CVE-2025-68152 | MEDIUM | 4.9 | 0.4% | Apr 3, 2026 | Juju is an open source application orchestration engine that enables any application operation on any infrastructure at ... |
| CVE-2025-64340 | HIGH | 7.8 | 0.7% | Apr 3, 2026 | FastMCP is the standard framework for building MCP applications. Prior to version 3.2.0, server names containing shell m... |
| CVE-2025-59711 | HIGH | 8.3 | 0.7% | Apr 3, 2026 | An issue was discovered in Biztalk360 before 11.5. Because of mishandling of user-provided input in an upload mechanism,... |
| CVE-2025-59710 | HIGH | 8.8 | 0.5% | Apr 3, 2026 | An issue was discovered in Biztalk360 before 11.5. Because of incorrect access control, any user is able to request the ... |
| CVE-2025-59709 | MEDIUM | 6.8 | 0.9% | Apr 3, 2026 | An issue was discovered in Biztalk360 through 11.5. because of mishandling of user-provided input in a path to be read b... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now