2025 CVE Vulnerabilities

45,221 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-59241HIGH7.8Improper link resolution before file access ('link following') in Windows Health and Optimized Experiences Service allow...
CVE-2025-59238HIGH7.8Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.
CVE-2025-59237HIGH8.8Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a ne...
CVE-2025-59236HIGH7.8Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2025-59235HIGH7.1Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2025-59234HIGH7.8Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2025-59233HIGH7.8Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker ...
CVE-2025-59232HIGH7.1Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2025-59231HIGH7.8Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker ...
CVE-2025-59230HIGH7.8Improper access control in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges ...
CVE-2025-59229MEDIUM5.5Uncaught exception in Microsoft Office allows an unauthorized attacker to deny service locally.
CVE-2025-59228HIGH8.8Improper input validation in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2025-59227HIGH7.8Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2025-59226HIGH7.8Use after free in Microsoft Office Visio allows an unauthorized attacker to execute code locally.
CVE-2025-59225HIGH7.8Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2025-59224HIGH7.8Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2025-59223HIGH7.8Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2025-59222HIGH7.8Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2025-59221HIGH7Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2025-59214MEDIUM6.5Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to p...
CVE-2025-59213HIGH8.8Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Configuration Manager ...
CVE-2025-59211MEDIUM5.5Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core allows an authorized attack...
CVE-2025-59210HIGH7.4Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability
CVE-2025-59209MEDIUM5.5Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core allows an authorized attack...
CVE-2025-59208HIGH7.1Out-of-bounds read in Windows MapUrlToZone allows an unauthorized attacker to disclose information over a network.

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now