2025 CVE Vulnerabilities
45,224 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-2207 | MEDIUM | 4.8 | 0.5% | Mar 11, 2025 | A vulnerability classified as problematic was found in aitangbao springboot-manager 3.0. This vulnerability affects unkn... |
| CVE-2025-2206 | MEDIUM | 4.8 | 0.5% | Mar 11, 2025 | A vulnerability classified as problematic has been found in aitangbao springboot-manager 3.0. This affects an unknown pa... |
| CVE-2025-27789 | MEDIUM | 6.2 | 0.5% | Mar 11, 2025 | Babel is a compiler for writing next generation JavaScript. When using versions of Babel prior to 7.26.10 and 8.0.0-alph... |
| CVE-2025-25929 | MEDIUM | 5.4 | 0.3% | Mar 11, 2025 | A reflected cross-site scripting (XSS) vulnerability in the component /legacyui/quickReportServlet of Openmrs 2.4.3 Buil... |
| CVE-2025-25927 | MEDIUM | 6.8 | 0.2% | Mar 11, 2025 | A Cross-Site Request Forgery (CSRF) in Openmrs 2.4.3 Build 0ff0ed allows attackers to execute arbitrary operations via a... |
| CVE-2025-25925 | MEDIUM | 4.8 | 0.3% | Mar 11, 2025 | A stored cross-scripting (XSS) vulnerability in Openmrs v2.4.3 Build 0ff0ed allows attackers to execute arbitrary web sc... |
| CVE-2025-27591 | MEDIUM | 6.8 | 0.4% | Mar 11, 2025 | A privilege escalation vulnerability existed in the Below service prior to v0.9.0 due to the creation of a world-writabl... |
| CVE-2025-27179 | MEDIUM | 5.5 | 0.2% | Mar 11, 2025 | InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by a NULL Pointer Dereference vulnerability that cou... |
| CVE-2025-27176 | MEDIUM | 5.5 | 0.2% | Mar 11, 2025 | InDesign Desktop versions ID20.1, ID19.5.2 and earlier are affected by a NULL Pointer Dereference vulnerability that cou... |
| CVE-2025-27170 | MEDIUM | 5.5 | 0.2% | Mar 11, 2025 | Illustrator versions 29.2.1, 28.7.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could resu... |
| CVE-2025-27164 | MEDIUM | 5.5 | 0.4% | Mar 11, 2025 | Acrobat Reader versions 24.001.30225, 20.005.30748, 25.001.20428 and earlier are affected by an out-of-bounds read vulne... |
| CVE-2025-27163 | MEDIUM | 5.5 | 0.4% | Mar 11, 2025 | Acrobat Reader versions 24.001.30225, 20.005.30748, 25.001.20428 and earlier are affected by an out-of-bounds read vulne... |
| CVE-2025-24449 | MEDIUM | 5.5 | 0.2% | Mar 11, 2025 | Illustrator versions 29.2.1, 28.7.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to d... |
| CVE-2025-24448 | MEDIUM | 5.5 | 0.2% | Mar 11, 2025 | Illustrator versions 29.2.1, 28.7.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to d... |
| CVE-2025-24431 | MEDIUM | 5.5 | 0.4% | Mar 11, 2025 | Acrobat Reader versions 24.001.30225, 20.005.30748, 25.001.20428 and earlier are affected by an out-of-bounds read vulne... |
| CVE-2025-0150 | MEDIUM | 6.5 | 0.5% | Mar 11, 2025 | Incorrect behavior order in some Zoom Workplace Apps for iOS before version 6.3.0 may allow an authenticated user to con... |
| CVE-2025-24997 | MEDIUM | 4.4 | 0.5% | Mar 11, 2025 | Null pointer dereference in Windows Kernel Memory allows an authorized attacker to deny service locally. |
| CVE-2025-24996 | MEDIUM | 6.5 | 1.2% | Mar 11, 2025 | External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network... |
| CVE-2025-24992 | MEDIUM | 5.5 | 1.0% | Mar 11, 2025 | Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information locally. |
| CVE-2025-24991 | MEDIUM | 5.5 | 1.9% | Mar 11, 2025 | Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally. |
| CVE-2025-24988 | MEDIUM | 6.8 | 0.6% | Mar 11, 2025 | Out-of-bounds read in Windows USB Video Driver allows an authorized attacker to elevate privileges with a physical attac... |
| CVE-2025-24987 | MEDIUM | 6.8 | 0.6% | Mar 11, 2025 | Out-of-bounds read in Windows USB Video Driver allows an authorized attacker to elevate privileges with a physical attac... |
| CVE-2025-24986 | MEDIUM | 6.5 | 0.5% | Mar 11, 2025 | Improper isolation or compartmentalization in Azure PromptFlow allows an unauthorized attacker to execute code over a ne... |
| CVE-2025-24984 | MEDIUM | 4.6 | 1.8% | Mar 11, 2025 | Insertion of sensitive information into log file in Windows NTFS allows an unauthorized attacker to disclose information... |
| CVE-2025-24071 | MEDIUM | 6.5 | 25.1% | Mar 11, 2025 | Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to p... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now