2025 CVE Vulnerabilities

45,221 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-9178HIGH7.7A denial-of-service security issue exists in the affected product and version. The security issue is caused through CIP ...
CVE-2025-9177HIGH7.7A denial-of-service security issue exists in the affected product and version. The security issue stems from a high numb...
CVE-2025-9124HIGH8.7A denial-of-service security issue in the affected product. The security issue stems from a fault occurring when a craft...
CVE-2025-9068HIGH7.8A security issue exists within the Rockwell Automation Driver Package x64 Microsoft Installer File (MSI) repair function...
CVE-2025-9067HIGH7.8A security issue exists within the x86 Microsoft Installer File (MSI), installed with FTLinx. Authenticated attackers wi...
CVE-2025-9066HIGH8.7A security issue was discovered within FactoryTalk® ViewPoint, allowing unauthenticated attackers to achieve XXE. Certai...
CVE-2025-9064CRITICAL9.1A path traversal security issue exists within FactoryTalk View Machine Edition, allowing unauthenticated attackers on th...
CVE-2025-9063CRITICAL9.8An authentication bypass security issue exists within FactoryTalk View Machine Edition Web Browser ActiveX control. Exp...
CVE-2025-7330MEDIUM6.5A cross-site request forgery security issue exists in the product and version listed. The vulnerability stems from missi...
CVE-2025-7329MEDIUM4.8A Stored Cross-Site Scripting security issue exists in the affected product that could potentially allow a malicious use...
CVE-2025-7328CRITICAL9.8Multiple Broken Authentication security issues exist in the affected product. The security issues are due to missing aut...
CVE-2025-11721CRITICAL9.8Memory safety bug present in Firefox 143 and Thunderbird 143. This bug showed evidence of memory corruption and we presu...
CVE-2025-11720HIGH8.1The Firefox and Firefox Focus UI for the Android custom tab feature only showed the "site" that was loaded, not the full...
CVE-2025-11719CRITICAL9.8Starting in Thunderbird 143, the use of the native messaging API by web extensions on Windows could lead to crashes caus...
CVE-2025-11718MEDIUM6.5When the address bar was hidden due to scrolling on Android, a malicious page could create a fake address bar to fool th...
CVE-2025-11717CRITICAL9.1When switching between Android apps using the card carousel Firefox shows a black screen as its card image when a passwo...
CVE-2025-11716MEDIUM6.5Links in a sandboxed iframe could open an external app on Android without the required "allow-" permission. This vulnera...
CVE-2025-11715HIGH8.8Memory safety bugs present in Firefox ESR 140.3, Thunderbird ESR 140.3, Firefox 143 and Thunderbird 143. Some of these b...
CVE-2025-11714HIGH8.8Memory safety bugs present in Firefox ESR 115.28, Firefox ESR 140.3, Thunderbird ESR 140.3, Firefox 143 and Thunderbird ...
CVE-2025-11713HIGH8.1Insufficient escaping in the “Copy as cURL” feature could have been used to trick a user into executing unexpected code ...
CVE-2025-11712MEDIUM6.1A malicious page could have used the type attribute of an OBJECT tag to override the default browser behavior when encou...
CVE-2025-11711MEDIUM6.5There was a way to change the value of JavaScript Object properties that were supposed to be non-writeable. This vulnera...
CVE-2025-11710CRITICAL9.8A compromised web process using malicious IPC messages could have caused the privileged browser process to reveal blocks...
CVE-2025-11709CRITICAL9.8A compromised web process was able to trigger out of bounds reads and writes in a more privileged process using manipula...
CVE-2025-11708CRITICAL9.8Use-after-free in MediaTrackGraphImpl::GetInstance(). This vulnerability was fixed in Firefox 144, Firefox ESR 140.4, Th...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now