2025 CVE Vulnerabilities
45,223 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-21070 | MEDIUM | 5.5 | 0.1% | Oct 10, 2025 | Out-of-bounds write in the SPI decoder in Samsung Notes prior to version 4.4.30.63 allows local attackers to write out-o... |
| CVE-2025-21069 | HIGH | 7.1 | 0.1% | Oct 10, 2025 | Out-of-bounds read in the parsing of image data in Samsung Notes prior to version 4.4.30.63 allows local attackers to ac... |
| CVE-2025-21068 | HIGH | 7.1 | 0.1% | Oct 10, 2025 | Out-of-bounds read in the reading of image data in Samsung Notes prior to version 4.4.30.63 allows local attackers to ac... |
| CVE-2025-21067 | HIGH | 7.1 | 0.1% | Oct 10, 2025 | Out-of-bounds read in the allocation of image buffer in Samsung Notes prior to version 4.4.30.63 allows local attackers ... |
| CVE-2025-21066 | HIGH | 7.1 | 0.1% | Oct 10, 2025 | Out-of-bounds read in the SPI decoder in Samsung Notes prior to version 4.4.30.63 allows local attackers to access out-o... |
| CVE-2025-21065 | MEDIUM | 6.6 | 0.2% | Oct 10, 2025 | Improper input validation in Retail Mode prior to version 5.59.11 allows self attackers to execute privileged commands o... |
| CVE-2025-21064 | MEDIUM | 6.5 | 0.3% | Oct 10, 2025 | Improper authentication in Smart Switch prior to version 3.7.66.6 allows adjacent attackers to access transferring data. |
| CVE-2025-21063 | MEDIUM | 4.6 | 0.2% | Oct 10, 2025 | Improper access control in Samsung Voice Recorder prior to version 21.5.73.12 in Android 15 and 21.5.81.40 in Android 16... |
| CVE-2025-21062 | HIGH | 7.8 | 0.1% | Oct 10, 2025 | Use of a broken or risky cryptographic algorithm in Smart Switch prior to version 3.7.67.2 allows local attackers to rep... |
| CVE-2025-21061 | MEDIUM | 5.5 | 0.1% | Oct 10, 2025 | Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access se... |
| CVE-2025-21060 | MEDIUM | 5.5 | 0.1% | Oct 10, 2025 | Cleartext storage of sensitive information in Smart Switch prior to version 3.7.67.2 allows local attackers to access ba... |
| CVE-2025-21059 | MEDIUM | 5.5 | 0.1% | Oct 10, 2025 | Improper authorization in Samsung Health prior to version 6.30.5.105 allows local attackers to access data in Samsung He... |
| CVE-2025-21058 | HIGH | 7.3 | 0.1% | Oct 10, 2025 | Improper access control in Routines prior to version 4.8.7.1 in Android 15 and 4.9.6.0 in Android 16 allows local attack... |
| CVE-2025-21057 | LOW | 3.3 | 0.1% | Oct 10, 2025 | Use of implicit intent for sensitive communication in Samsung Notes prior to version 4.4.30.63 allows local attackers to... |
| CVE-2025-21055 | HIGH | 7.5 | 0.3% | Oct 10, 2025 | Out-of-bounds read and write in libimagecodec.quram.so prior to SMR Oct-2025 Release 1 allows remote attackers to access... |
| CVE-2025-21054 | MEDIUM | 5.5 | 0.1% | Oct 10, 2025 | Out-of-bounds read in the parsing header for JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local at... |
| CVE-2025-21053 | HIGH | 7.8 | 0.1% | Oct 10, 2025 | Out-of-bounds write in the parsing header for JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local a... |
| CVE-2025-21052 | HIGH | 7.8 | 0.1% | Oct 10, 2025 | Out-of-bounds write under specific condition in the pre-processing of JPEG decoding in libpadm.so prior to SMR Oct-2025 ... |
| CVE-2025-21051 | HIGH | 7.8 | 0.1% | Oct 10, 2025 | Out-of-bounds write in the pre-processing of JPEG decoding in libpadm.so prior to SMR Oct-2025 Release 1 allows local at... |
| CVE-2025-21050 | MEDIUM | 5.5 | 0.1% | Oct 10, 2025 | Improper input validiation in Contacts prior to SMR Oct-2025 Release 1 allows local attackers to access data across mult... |
| CVE-2025-21049 | MEDIUM | 5.5 | 0.1% | Oct 10, 2025 | Improper access control in SecSettings prior to SMR Oct-2025 Release 1 allows local attackers to access sensitive inform... |
| CVE-2025-21048 | HIGH | 7.8 | 0.2% | Oct 10, 2025 | Relative path traversal in Knox Enterprise prior to SMR Oct-2025 Release 1 allows local attackers to execute arbitrary c... |
| CVE-2025-21047 | MEDIUM | 6.8 | 0.2% | Oct 10, 2025 | Improper access control in KnoxGuard prior to SMR Oct-2025 Release 1 allows physical attackers to use the privileged API... |
| CVE-2025-21046 | LOW | 2.4 | 0.1% | Oct 10, 2025 | Improper access control in WindowManager in Samsung DeX prior to SMR Oct-2025 Release 1 allows physical attackers to tem... |
| CVE-2025-21045 | MEDIUM | 5.5 | 0.1% | Oct 10, 2025 | Insecure storage of sensitive information in Galaxy Watch prior to SMR Oct-2025 Release 1 allows local attackers to acce... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now