2025 CVE Vulnerabilities
45,207 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-0436 | HIGH | 8.8 | 0.4% | Jan 15, 2025 | Integer overflow in Skia in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially exploit heap c... |
| CVE-2025-0434 | HIGH | 8.8 | 5.9% | Jan 15, 2025 | Out of bounds memory access in V8 in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially explo... |
| CVE-2025-0356 | HIGH | 7.2 | 0.6% | Jan 15, 2025 | NEC Corporation Aterm WX1500HP Ver.1.4.2 and earlier and WX3600HP Ver.1.5.3 and earlier allows a attacker to execute arb... |
| CVE-2025-0355 | HIGH | 7.5 | 0.5% | Jan 15, 2025 | Missing Authentication for Critical Function vulnerability in NEC Corporation Aterm WG2600HS Ver.1.7.2 and earlier, WF12... |
| CVE-2025-22394 | HIGH | 7 | 0.1% | Jan 15, 2025 | Dell Display Manager, versions prior to 2.3.2.18, contain a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerabil... |
| CVE-2025-23013 | HIGH | 7.3 | 0.4% | Jan 15, 2025 | In Yubico pam-u2f before 1.3.1, local privilege escalation can sometimes occur. This product implements a Pluggable Auth... |
| CVE-2025-0343 | HIGH | 7.5 | 0.3% | Jan 15, 2025 | Swift ASN.1 can be caused to crash when parsing certain BER/DER constructions. This crash is caused by a confusion in th... |
| CVE-2025-21139 | HIGH | 7.8 | 0.3% | Jan 14, 2025 | Substance3D - Designer versions 14.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could r... |
| CVE-2025-21138 | HIGH | 7.8 | 0.2% | Jan 14, 2025 | Substance3D - Designer versions 14.0 and earlier are affected by an out-of-bounds write vulnerability that could result ... |
| CVE-2025-21137 | HIGH | 7.8 | 0.3% | Jan 14, 2025 | Substance3D - Designer versions 14.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could r... |
| CVE-2025-21136 | HIGH | 7.8 | 0.2% | Jan 14, 2025 | Substance3D - Designer versions 14.0 and earlier are affected by an out-of-bounds write vulnerability that could result ... |
| CVE-2025-21135 | HIGH | 7.8 | 0.3% | Jan 14, 2025 | Animate versions 24.0.6, 23.0.9 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that... |
| CVE-2025-23042 | HIGH | 7.5 | 0.8% | Jan 14, 2025 | Gradio is an open-source Python package that allows quick building of demos and web application for machine learning mod... |
| CVE-2025-21134 | HIGH | 7.8 | 0.3% | Jan 14, 2025 | Illustrator on iPad versions 3.0.7 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability t... |
| CVE-2025-21133 | HIGH | 7.8 | 0.3% | Jan 14, 2025 | Illustrator on iPad versions 3.0.7 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability t... |
| CVE-2025-21132 | HIGH | 7.8 | 0.2% | Jan 14, 2025 | Substance3D - Stager versions 3.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result i... |
| CVE-2025-21131 | HIGH | 7.8 | 0.2% | Jan 14, 2025 | Substance3D - Stager versions 3.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result i... |
| CVE-2025-21130 | HIGH | 7.8 | 0.2% | Jan 14, 2025 | Substance3D - Stager versions 3.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result i... |
| CVE-2025-21129 | HIGH | 7.8 | 0.3% | Jan 14, 2025 | Substance3D - Stager versions 3.0.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could re... |
| CVE-2025-21128 | HIGH | 7.8 | 0.3% | Jan 14, 2025 | Substance3D - Stager versions 3.0.4 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could r... |
| CVE-2025-21127 | HIGH | 7.8 | 0.3% | Jan 14, 2025 | Photoshop Desktop versions 25.12, 26.1 and earlier are affected by an Uncontrolled Search Path Element vulnerability tha... |
| CVE-2025-21122 | HIGH | 7.8 | 0.3% | Jan 14, 2025 | Photoshop Desktop versions 25.12, 26.1 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerabili... |
| CVE-2025-0474 | HIGH | 7.7 | 0.4% | Jan 14, 2025 | Invoice Ninja is vulnerable to authenticated Server-Side Request Forgery (SSRF) allowing for arbitrary file read and net... |
| CVE-2025-23052 | HIGH | 7.2 | 1.2% | Jan 14, 2025 | Authenticated command injection vulnerability in the command line interface of a network management service. Successful ... |
| CVE-2025-23051 | HIGH | 7.2 | 0.7% | Jan 14, 2025 | An authenticated parameter injection vulnerability exists in the web-based management interface of the AOS-8 and AOS-10 ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now