2025 CVE Vulnerabilities

45,223 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-21070MEDIUM5.5Out-of-bounds write in the SPI decoder in Samsung Notes prior to version 4.4.30.63 allows local attackers to write out-o...
CVE-2025-21069HIGH7.1Out-of-bounds read in the parsing of image data in Samsung Notes prior to version 4.4.30.63 allows local attackers to ac...
CVE-2025-21068HIGH7.1Out-of-bounds read in the reading of image data in Samsung Notes prior to version 4.4.30.63 allows local attackers to ac...
CVE-2025-21067HIGH7.1Out-of-bounds read in the allocation of image buffer in Samsung Notes prior to version 4.4.30.63 allows local attackers ...
CVE-2025-21066HIGH7.1Out-of-bounds read in the SPI decoder in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-o...
CVE-2025-21065MEDIUM6.6Improper input validation in Retail Mode prior to version 5.59.11 allows self attackers to execute privileged commands o...
CVE-2025-21064MEDIUM6.5Improper authentication in Smart Switch prior to version 3.7.66.6 allows adjacent attackers to access transferring data.
CVE-2025-21063MEDIUM4.6Improper access control in Samsung Voice Recorder prior to version 21.5.73.12 in Android 15 and 21.5.81.40 in Android 16...
CVE-2025-21062HIGH7.8Use of a broken or risky cryptographic algorithm in Smart Switch prior to version 3.7.67.2 allows local attackers to rep...
CVE-2025-21061MEDIUM5.5Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access se...
CVE-2025-21060MEDIUM5.5Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access ba...
CVE-2025-21059MEDIUM5.5Improper authorization in Samsung Health prior to version 6.30.5.105 allows local attackers to access data in Samsung He...
CVE-2025-21058HIGH7.3Improper access control in Routines prior to version 4.8.7.1 in Android 15 and 4.9.6.0 in Android 16 allows local attack...
CVE-2025-21057LOW3.3Use of implicit intent for sensitive communication in Samsung Notes prior to version 4.4.30.63 allows local attackers to...
CVE-2025-21055HIGH7.5Out-of-bounds read and write in libimagecodec.quram.so prior to SMR Oct-2025 Release 1 allows remote attackers to access...
CVE-2025-21054MEDIUM5.5Out-of-bounds read in the parsing header for JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local at...
CVE-2025-21053HIGH7.8Out-of-bounds write in the parsing header for JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local a...
CVE-2025-21052HIGH7.8Out-of-bounds write under specific condition in the pre-processing of JPEG decoding in libpadm.so prior to SMR Oct-2025 ...
CVE-2025-21051HIGH7.8Out-of-bounds write in the pre-processing of JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local at...
CVE-2025-21050MEDIUM5.5Improper input validiation in Contacts prior to SMR Oct-2025 Release 1 allows local attackers to access data across mult...
CVE-2025-21049MEDIUM5.5Improper access control in SecSettings prior to SMR Oct-2025 Release 1 allows local attackers to access sensitive inform...
CVE-2025-21048HIGH7.8Relative path traversal in Knox Enterprise prior to SMR Oct-2025 Release 1 allows local attackers to execute arbitrary c...
CVE-2025-21047MEDIUM6.8Improper access control in KnoxGuard prior to SMR Oct-2025 Release 1 allows physical attackers to use the privileged API...
CVE-2025-21046LOW2.4Improper access control in WindowManager in Samsung DeX prior to SMR Oct-2025 Release 1 allows physical attackers to tem...
CVE-2025-21045MEDIUM5.5Insecure storage of sensitive information in Galaxy Watch prior to SMR Oct-2025 Release 1 allows local attackers to acce...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now