2025 CVE Vulnerabilities

45,223 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-11709CRITICAL9.8A compromised web process was able to trigger out of bounds reads and writes in a more privileged process using manipula...
CVE-2025-11708CRITICAL9.8Use-after-free in MediaTrackGraphImpl::GetInstance(). This vulnerability was fixed in Firefox 144, Firefox ESR 140.4, Th...
CVE-2025-11498MEDIUM6.1An Improper Neutralization of Formula Elements in a CSV File vulnerability exists in System Diagnostics Manager (SDM) of...
CVE-2025-10610CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SFS Consulting Inf...
CVE-2025-9437HIGH8.7A security issue exists within the Studio 5000 Logix Designer add-on profile (AOP) for the ArmorStart Classic distribute...
CVE-2025-40812HIGH7.8A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 14), Solid Edge SE2025 (All versi...
CVE-2025-40811HIGH7.8A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 14), Solid Edge SE2025 (All versi...
CVE-2025-40810HIGH7.8A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 14), Solid Edge SE2025 (All versi...
CVE-2025-40809HIGH7.8A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 14), Solid Edge SE2025 (All versi...
CVE-2025-40774MEDIUM6.7A vulnerability has been identified in SiPass integrated (All versions < V3.0). Affected server applications store user ...
CVE-2025-40773MEDIUM5.3A vulnerability has been identified in SiPass integrated (All versions < V3.0). Affected server applications contains a ...
CVE-2025-40772MEDIUM6.1A vulnerability has been identified in SiPass integrated (All versions < V3.0). Affected server applications are vulnera...
CVE-2025-40771CRITICAL9.8A vulnerability has been identified in SIMATIC CP 1542SP-1 (6GK7542-6UX00-0XE0) (All versions < V2.4.24), SIMATIC CP 154...
CVE-2025-40765CRITICAL9.8A vulnerability has been identified in TeleControl Server Basic V3.1 (All versions >= V3.1.2.2 < V3.1.2.3). The affected...
CVE-2025-40755HIGH8.8A vulnerability has been identified in SINEC NMS (All versions < V4.0 SP1). Affected applications are vulnerable to SQL ...
CVE-2025-20724MEDIUM5.5In wlan AP driver, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local inf...
CVE-2025-20723HIGH7.8In gnss driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escal...
CVE-2025-20722MEDIUM5.5In gnss driver, there is a possible out of bounds read due to an integer overflow. This could lead to local information ...
CVE-2025-20721HIGH7.8In imgsensor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation...
CVE-2025-20720HIGH8.8In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (...
CVE-2025-20719HIGH8.8In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (...
CVE-2025-20718HIGH7.8In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es...
CVE-2025-20717HIGH7.8In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es...
CVE-2025-20716HIGH7.8In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es...
CVE-2025-20715HIGH7.8In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now