2025 CVE Vulnerabilities
45,230 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-9588 | CRITICAL | 9.8 | 1.1% | Sep 23, 2025 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Iron Mountai... |
| CVE-2025-10851 | CRITICAL | 9.8 | 0.4% | Sep 23, 2025 | A security flaw has been discovered in Campcodes Gym Management System 1.0. Impacted is an unknown function of the file ... |
| CVE-2025-10848 | HIGH | 8.8 | 0.4% | Sep 23, 2025 | A vulnerability was identified in Campcodes Society Membership Information System 1.0. This issue affects some unknown p... |
| CVE-2025-10846 | HIGH | 8.8 | 0.4% | Sep 23, 2025 | A vulnerability was determined in Portabilis i-Educar up to 2.10. This vulnerability affects unknown code of the file /m... |
| CVE-2025-10845 | HIGH | 8.8 | 0.4% | Sep 23, 2025 | A vulnerability was found in Portabilis i-Educar up to 2.10. This affects an unknown part of the file /module/Componente... |
| CVE-2025-10844 | HIGH | 8.8 | 0.4% | Sep 23, 2025 | A vulnerability has been found in Portabilis i-Educar up to 2.10. Affected by this issue is some unknown functionality o... |
| CVE-2025-10548 | MEDIUM | 6.5 | 0.4% | Sep 23, 2025 | The CleverControl employee monitoring software (v11.5.1041.6) fails to validate TLS server certificates during the insta... |
| CVE-2025-8282 | LOW | 3.5 | 0.2% | Sep 23, 2025 | The SureForms WordPress plugin before 1.9.1 does not sanitise and escape some parameters when outputing them in the pag... |
| CVE-2025-39888 | HIGH | 7.8 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: fuse: Block access to folio overlimit syz reported... |
| CVE-2025-39887 | MEDIUM | 5.5 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: tracing/osnoise: Fix null-ptr-deref in bitmap_parse... |
| CVE-2025-39886 | MEDIUM | 5.5 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: bpf: Tell memcg to use allow_spinning=false path in... |
| CVE-2025-39885 | MEDIUM | 5.5 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix recursive semaphore deadlock in fiemap c... |
| CVE-2025-39884 | MEDIUM | 4.7 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix subvolume deletion lockup caused by inod... |
| CVE-2025-39883 | HIGH | 7.1 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm/memory-failure: fix VM_BUG_ON_PAGE(PagePoisoned(... |
| CVE-2025-39882 | HIGH | 7.8 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/mediatek: fix potential OF node use-after-free ... |
| CVE-2025-39881 | HIGH | 7.8 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: kernfs: Fix UAF in polling when open file is releas... |
| CVE-2025-39880 | HIGH | 7.8 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: libceph: fix invalid accesses to ceph_connection_v1... |
| CVE-2025-39879 | MEDIUM | 5.5 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: ceph: always call ceph_shift_unused_folios_left() ... |
| CVE-2025-39878 | MEDIUM | 5.5 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: ceph: fix crash after fscrypt_encrypt_pagecache_blo... |
| CVE-2025-39877 | HIGH | 7.8 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs: fix use-after-free in state_show() ... |
| CVE-2025-39876 | MEDIUM | 5.5 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: fec: Fix possible NPD in fec_enet_phy_reset_af... |
| CVE-2025-39875 | MEDIUM | 5.5 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: igb: Fix NULL pointer dereference in ethtool loopba... |
| CVE-2025-39874 | MEDIUM | 5.5 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: macsec: sync features on RTM_NEWLINK Syzkaller man... |
| CVE-2025-39873 | HIGH | 7.8 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: can: xilinx_can: xcan_write_frame(): fix use-after-... |
| CVE-2025-39872 | MEDIUM | 5.5 | 0.1% | Sep 23, 2025 | In the Linux kernel, the following vulnerability has been resolved: hsr: hold rcu and dev lock for hsr_get_port_ndev h... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now