2025 CVE Vulnerabilities

45,212 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-30302MEDIUM5.5Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an out-of-bounds read vulnerability that could lead...
CVE-2025-30301MEDIUM5.5Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a NULL Pointer Dereference vulnerability that could...
CVE-2025-30300MEDIUM5.5Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a NULL Pointer Dereference vulnerability that could...
CVE-2025-32036MEDIUM6.5DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. The algori...
CVE-2025-29821MEDIUM5.5Improper input validation in Dynamics Business Central allows an authorized attacker to disclose information locally.
CVE-2025-29819MEDIUM6.2External control of file name or path in Azure Portal Windows Admin Center allows an unauthorized attacker to disclose i...
CVE-2025-29808MEDIUM5.5Use of a cryptographic primitive with a risky implementation in Windows Cryptographic Services allows an authorized atta...
CVE-2025-27742MEDIUM5.5Out-of-bounds read in Windows NTFS allows an unauthorized attacker to disclose information locally.
CVE-2025-27738MEDIUM6.5Improper access control in Windows Resilient File System (ReFS) allows an authorized attacker to disclose information ov...
CVE-2025-27736MEDIUM5.5Exposure of sensitive information to an unauthorized actor in Windows Power Dependency Coordinator allows an authorized ...
CVE-2025-27735MEDIUM6Insufficient verification of data authenticity in Windows Virtualization-Based Security (VBS) Enclave allows an authoriz...
CVE-2025-27474MEDIUM6.5Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to dis...
CVE-2025-27472MEDIUM5.4Protection mechanism failure in Windows Mark of the Web (MOTW) allows an unauthorized attacker to bypass a security feat...
CVE-2025-27471MEDIUM5.9Sensitive data storage in improperly locked memory in Microsoft Streaming Service allows an unauthorized attacker to den...
CVE-2025-27205MEDIUM5.4Adobe Experience Manager Screens versions FP11.3 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnera...
CVE-2025-27204MEDIUM5.5After Effects versions 25.1, 24.6.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to d...
CVE-2025-27202MEDIUM5.5Animate versions 24.0.7, 23.0.10 and earlier are affected by an out-of-bounds read vulnerability that could lead to disc...
CVE-2025-27201MEDIUM5.5Animate versions 24.0.7, 23.0.10 and earlier are affected by an out-of-bounds read vulnerability that could lead to disc...
CVE-2025-27187MEDIUM5.5After Effects versions 25.1, 24.6.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to d...
CVE-2025-27186MEDIUM5.5After Effects versions 25.1, 24.6.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to d...
CVE-2025-27185MEDIUM5.5After Effects versions 25.1, 24.6.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could resu...
CVE-2025-27184MEDIUM5.5After Effects versions 25.1, 24.6.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to d...
CVE-2025-26681MEDIUM6.7Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
CVE-2025-26676MEDIUM6.5Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose informa...
CVE-2025-26672MEDIUM6.5Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose informa...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now