2025 CVE Vulnerabilities
45,212 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-30302 | MEDIUM | 5.5 | 0.2% | Apr 8, 2025 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an out-of-bounds read vulnerability that could lead... |
| CVE-2025-30301 | MEDIUM | 5.5 | 0.2% | Apr 8, 2025 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a NULL Pointer Dereference vulnerability that could... |
| CVE-2025-30300 | MEDIUM | 5.5 | 0.2% | Apr 8, 2025 | Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a NULL Pointer Dereference vulnerability that could... |
| CVE-2025-32036 | MEDIUM | 6.5 | 0.3% | Apr 8, 2025 | DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. The algori... |
| CVE-2025-29821 | MEDIUM | 5.5 | 0.6% | Apr 8, 2025 | Improper input validation in Dynamics Business Central allows an authorized attacker to disclose information locally. |
| CVE-2025-29819 | MEDIUM | 6.2 | 0.8% | Apr 8, 2025 | External control of file name or path in Azure Portal Windows Admin Center allows an unauthorized attacker to disclose i... |
| CVE-2025-29808 | MEDIUM | 5.5 | 0.4% | Apr 8, 2025 | Use of a cryptographic primitive with a risky implementation in Windows Cryptographic Services allows an authorized atta... |
| CVE-2025-27742 | MEDIUM | 5.5 | 0.7% | Apr 8, 2025 | Out-of-bounds read in Windows NTFS allows an unauthorized attacker to disclose information locally. |
| CVE-2025-27738 | MEDIUM | 6.5 | 2.6% | Apr 8, 2025 | Improper access control in Windows Resilient File System (ReFS) allows an authorized attacker to disclose information ov... |
| CVE-2025-27736 | MEDIUM | 5.5 | 0.7% | Apr 8, 2025 | Exposure of sensitive information to an unauthorized actor in Windows Power Dependency Coordinator allows an authorized ... |
| CVE-2025-27735 | MEDIUM | 6 | 0.4% | Apr 8, 2025 | Insufficient verification of data authenticity in Windows Virtualization-Based Security (VBS) Enclave allows an authoriz... |
| CVE-2025-27474 | MEDIUM | 6.5 | 1.5% | Apr 8, 2025 | Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to dis... |
| CVE-2025-27472 | MEDIUM | 5.4 | 1.4% | Apr 8, 2025 | Protection mechanism failure in Windows Mark of the Web (MOTW) allows an unauthorized attacker to bypass a security feat... |
| CVE-2025-27471 | MEDIUM | 5.9 | 1.0% | Apr 8, 2025 | Sensitive data storage in improperly locked memory in Microsoft Streaming Service allows an unauthorized attacker to den... |
| CVE-2025-27205 | MEDIUM | 5.4 | 0.4% | Apr 8, 2025 | Adobe Experience Manager Screens versions FP11.3 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnera... |
| CVE-2025-27204 | MEDIUM | 5.5 | 0.3% | Apr 8, 2025 | After Effects versions 25.1, 24.6.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to d... |
| CVE-2025-27202 | MEDIUM | 5.5 | 0.3% | Apr 8, 2025 | Animate versions 24.0.7, 23.0.10 and earlier are affected by an out-of-bounds read vulnerability that could lead to disc... |
| CVE-2025-27201 | MEDIUM | 5.5 | 0.3% | Apr 8, 2025 | Animate versions 24.0.7, 23.0.10 and earlier are affected by an out-of-bounds read vulnerability that could lead to disc... |
| CVE-2025-27187 | MEDIUM | 5.5 | 0.3% | Apr 8, 2025 | After Effects versions 25.1, 24.6.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to d... |
| CVE-2025-27186 | MEDIUM | 5.5 | 0.3% | Apr 8, 2025 | After Effects versions 25.1, 24.6.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to d... |
| CVE-2025-27185 | MEDIUM | 5.5 | 0.2% | Apr 8, 2025 | After Effects versions 25.1, 24.6.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could resu... |
| CVE-2025-27184 | MEDIUM | 5.5 | 0.3% | Apr 8, 2025 | After Effects versions 25.1, 24.6.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to d... |
| CVE-2025-26681 | MEDIUM | 6.7 | 0.5% | Apr 8, 2025 | Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally. |
| CVE-2025-26676 | MEDIUM | 6.5 | 1.3% | Apr 8, 2025 | Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose informa... |
| CVE-2025-26672 | MEDIUM | 6.5 | 1.5% | Apr 8, 2025 | Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose informa... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now