2025 CVE Vulnerabilities
45,207 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-23025 | HIGH | 8 | 0.4% | Jan 14, 2025 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. NOTE: The Realt... |
| CVE-2025-21607 | HIGH | 7.5 | 0.6% | Jan 14, 2025 | Vyper is a Pythonic Smart Contract Language for the EVM. When the Vyper Compiler uses the precompiles EcRecover (0x1) an... |
| CVE-2025-21417 | HIGH | 8.8 | 1.1% | Jan 14, 2025 | Windows Telephony Service Remote Code Execution Vulnerability |
| CVE-2025-21413 | HIGH | 8.8 | 1.1% | Jan 14, 2025 | Windows Telephony Service Remote Code Execution Vulnerability |
| CVE-2025-21411 | HIGH | 8.8 | 1.1% | Jan 14, 2025 | Windows Telephony Service Remote Code Execution Vulnerability |
| CVE-2025-21409 | HIGH | 8.8 | 1.1% | Jan 14, 2025 | Windows Telephony Service Remote Code Execution Vulnerability |
| CVE-2025-21405 | HIGH | 7.3 | 0.5% | Jan 14, 2025 | Visual Studio Elevation of Privilege Vulnerability |
| CVE-2025-21402 | HIGH | 7.8 | 0.7% | Jan 14, 2025 | Microsoft Office OneNote Remote Code Execution Vulnerability |
| CVE-2025-21395 | HIGH | 7.8 | 1.0% | Jan 14, 2025 | Microsoft Access Remote Code Execution Vulnerability |
| CVE-2025-21389 | HIGH | 7.5 | 1.9% | Jan 14, 2025 | Uncontrolled resource consumption in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker ... |
| CVE-2025-21382 | HIGH | 7.8 | 0.5% | Jan 14, 2025 | Windows Graphics Component Elevation of Privilege Vulnerability |
| CVE-2025-21378 | HIGH | 7.8 | 0.6% | Jan 14, 2025 | Windows CSC Service Elevation of Privilege Vulnerability |
| CVE-2025-21372 | HIGH | 7.8 | 0.4% | Jan 14, 2025 | Microsoft Brokering File System Elevation of Privilege Vulnerability |
| CVE-2025-21370 | HIGH | 8.8 | 0.5% | Jan 14, 2025 | Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability |
| CVE-2025-21366 | HIGH | 7.8 | 1.1% | Jan 14, 2025 | Microsoft Access Remote Code Execution Vulnerability |
| CVE-2025-21365 | HIGH | 7.8 | 0.9% | Jan 14, 2025 | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2025-21364 | HIGH | 7.8 | 1.6% | Jan 14, 2025 | Microsoft Excel Security Feature Bypass Vulnerability |
| CVE-2025-21363 | HIGH | 7.8 | 0.8% | Jan 14, 2025 | Microsoft Word Remote Code Execution Vulnerability |
| CVE-2025-21362 | HIGH | 8.4 | 0.9% | Jan 14, 2025 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2025-21361 | HIGH | 7.8 | 0.7% | Jan 14, 2025 | Microsoft Outlook Remote Code Execution Vulnerability |
| CVE-2025-21360 | HIGH | 7.8 | 0.4% | Jan 14, 2025 | Microsoft AutoUpdate (MAU) Elevation of Privilege Vulnerability |
| CVE-2025-21356 | HIGH | 7.8 | 0.7% | Jan 14, 2025 | Microsoft Office Visio Remote Code Execution Vulnerability |
| CVE-2025-21354 | HIGH | 7.8 | 0.9% | Jan 14, 2025 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2025-21348 | HIGH | 7.2 | 1.7% | Jan 14, 2025 | Microsoft SharePoint Server Remote Code Execution Vulnerability |
| CVE-2025-21346 | HIGH | 7.8 | 0.7% | Jan 14, 2025 | Microsoft Office Security Feature Bypass Vulnerability |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now