2025 CVE Vulnerabilities

45,225 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-24796MEDIUM6.3Collabora Online is a collaborative online office suite based on LibreOffice. Macro support is disabled by default in Co...
CVE-2025-2032MEDIUM5.1A vulnerability classified as problematic was found in ChestnutCMS 1.5.2. This vulnerability affects the function rename...
CVE-2025-21834MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: seccomp: passthrough uretprobe systemcall without f...
CVE-2025-21833MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Avoid use of NULL after WARN_ON_ONCE T...
CVE-2025-21832MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: block: don't revert iter for -EIOCBQUEUED blkdev_r...
CVE-2025-21831MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: PCI: Avoid putting some root ports into D3 on TUXED...
CVE-2025-21830MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: landlock: Handle weird files A corrupted filesyste...
CVE-2025-21829MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix the warning "__rxe_cleanup+0x12c/0x17...
CVE-2025-21828MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: don't flush non-uploaded STAs If S...
CVE-2025-21827MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: mediatek: Add locks for usb_drive...
CVE-2025-21826MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: reject mismatching sum of fie...
CVE-2025-21825MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: bpf: Cancel the running bpf_timer through kworker f...
CVE-2025-2029MEDIUM5.3A vulnerability was found in MicroDicom DICOM Viewer 2025.1 Build 3321. It has been classified as critical. Affected is ...
CVE-2025-25452MEDIUM5.1An issue in TAAGSOLUTIONS GmbH MyTaag v.2024-11-24 and before allows a remote attacker to escalate privileges via the "/...
CVE-2025-25451MEDIUM5.1An issue in TAAGSOLUTIONS GmbH MyTaag v.2024-11-24 and before allows a physically proximate attacker to escalate privile...
CVE-2025-25450MEDIUM5.1An issue in TAAGSOLUTIONS GmbH MyTaag v.2024-11-24 and before allows a remote attacker to escalate privileges via the de...
CVE-2025-0877MEDIUM4.7Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in AtaksAPP Re...
CVE-2025-2045MEDIUM4.3Improper authorization in GitLab EE affecting all versions from 17.7 prior to 17.7.6, 17.8 prior to 17.8.4, 17.9 prior t...
CVE-2025-1696MEDIUM5.2A vulnerability exists in Docker Desktop prior to version 4.39.0 that could lead to the unintentional disclosure of sens...
CVE-2025-1666MEDIUM4.3The Cookie banner plugin for WordPress – Cookiebot CMP by Usercentrics plugin for WordPress is vulnerable to unauthorize...
CVE-2025-1383MEDIUM4.3The Podlove Podcast Publisher plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, an...
CVE-2025-1672MEDIUM5.5The Notibar – Notification Bar for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin...
CVE-2025-1540MEDIUM4.2An issue has been discovered in GitLab CE/EE for Self-Managed and Dedicated instances affecting all versions from 17.5 p...
CVE-2025-22623MEDIUM5.1Ad Inserter - Ad Manager and AdSense Ads 2.8.0 was found to be vulnerable. The web application dynamically generates web...
CVE-2025-20933MEDIUM5.5Out-of-bounds read in parsing bmp image in Samsung Notes prior to version 4.4.26.71 allows local attackers to read out-o...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now