2025 CVE Vulnerabilities

45,207 CVEs published in 2025.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2025-0436HIGH8.8Integer overflow in Skia in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially exploit heap c...
CVE-2025-0434HIGH8.8Out of bounds memory access in V8 in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially explo...
CVE-2025-0356HIGH7.2NEC Corporation Aterm WX1500HP Ver.1.4.2 and earlier and WX3600HP Ver.1.5.3 and earlier allows a attacker to execute arb...
CVE-2025-0355HIGH7.5Missing Authentication for Critical Function vulnerability in NEC Corporation Aterm WG2600HS Ver.1.7.2 and earlier, WF12...
CVE-2025-22394HIGH7Dell Display Manager, versions prior to 2.3.2.18, contain a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerabil...
CVE-2025-23013HIGH7.3In Yubico pam-u2f before 1.3.1, local privilege escalation can sometimes occur. This product implements a Pluggable Auth...
CVE-2025-0343HIGH7.5Swift ASN.1 can be caused to crash when parsing certain BER/DER constructions. This crash is caused by a confusion in th...
CVE-2025-21139HIGH7.8Substance3D - Designer versions 14.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could r...
CVE-2025-21138HIGH7.8Substance3D - Designer versions 14.0 and earlier are affected by an out-of-bounds write vulnerability that could result ...
CVE-2025-21137HIGH7.8Substance3D - Designer versions 14.0 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could r...
CVE-2025-21136HIGH7.8Substance3D - Designer versions 14.0 and earlier are affected by an out-of-bounds write vulnerability that could result ...
CVE-2025-21135HIGH7.8Animate versions 24.0.6, 23.0.9 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that...
CVE-2025-23042HIGH7.5Gradio is an open-source Python package that allows quick building of demos and web application for machine learning mod...
CVE-2025-21134HIGH7.8Illustrator on iPad versions 3.0.7 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability t...
CVE-2025-21133HIGH7.8Illustrator on iPad versions 3.0.7 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability t...
CVE-2025-21132HIGH7.8Substance3D - Stager versions 3.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result i...
CVE-2025-21131HIGH7.8Substance3D - Stager versions 3.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result i...
CVE-2025-21130HIGH7.8Substance3D - Stager versions 3.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result i...
CVE-2025-21129HIGH7.8Substance3D - Stager versions 3.0.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could re...
CVE-2025-21128HIGH7.8Substance3D - Stager versions 3.0.4 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could r...
CVE-2025-21127HIGH7.8Photoshop Desktop versions 25.12, 26.1 and earlier are affected by an Uncontrolled Search Path Element vulnerability tha...
CVE-2025-21122HIGH7.8Photoshop Desktop versions 25.12, 26.1 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerabili...
CVE-2025-0474HIGH7.7Invoice Ninja is vulnerable to authenticated Server-Side Request Forgery (SSRF) allowing for arbitrary file read and net...
CVE-2025-23052HIGH7.2Authenticated command injection vulnerability in the command line interface of a network management service. Successful ...
CVE-2025-23051HIGH7.2An authenticated parameter injection vulnerability exists in the web-based management interface of the AOS-8 and AOS-10 ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now