2025 CVE Vulnerabilities
45,233 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-22131 | MEDIUM | 6.1 | 0.4% | Jan 20, 2025 | PhpSpreadsheet is a PHP library for reading and writing spreadsheet files. Cross-Site Scripting (XSS) vulnerability in t... |
| CVE-2025-21655 | MEDIUM | 4.7 | 0.2% | Jan 20, 2025 | In the Linux kernel, the following vulnerability has been resolved: io_uring/eventfd: ensure io_eventfd_signal() defers... |
| CVE-2025-0584 | MEDIUM | 5.3 | 0.5% | Jan 20, 2025 | The a+HRD from aEnrich Technology has a Server-side Request Forgery, allowing unauthenticated remote attackers to exploi... |
| CVE-2025-0581 | MEDIUM | 5.4 | 0.4% | Jan 20, 2025 | A vulnerability classified as problematic has been found in CampCodes School Management Software 1.0. This affects an un... |
| CVE-2025-0580 | MEDIUM | 6.3 | 0.4% | Jan 20, 2025 | A vulnerability was found in Shiprocket Module 3 on OpenCart. It has been rated as critical. Affected by this issue is s... |
| CVE-2025-0583 | MEDIUM | 6.1 | 0.4% | Jan 20, 2025 | The a+HRD from aEnrich Technology has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote at... |
| CVE-2025-0578 | MEDIUM | 5.3 | 0.3% | Jan 20, 2025 | A vulnerability was found in Facile Sistemas Cloud Apps up to 20250107. It has been classified as problematic. Affected ... |
| CVE-2025-0576 | MEDIUM | 6.9 | 0.4% | Jan 20, 2025 | A vulnerability was found in Mobotix M15 4.3.4.83 and classified as problematic. This issue affects some unknown process... |
| CVE-2025-21654 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: ovl: support encoding fid from inode with no alias ... |
| CVE-2025-21653 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: net_sched: cls_flow: validate TCA_FLOW_RSHIFT attri... |
| CVE-2025-21651 | MEDIUM | 4.7 | 0.1% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: hns3: don't auto enable misc vector Currently... |
| CVE-2025-21649 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: hns3: fix kernel crash when 1588 is sent on HI... |
| CVE-2025-21648 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: netfilter: conntrack: clamp maximum hashtable size ... |
| CVE-2025-21646 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: afs: Fix the maximum cell name length The kafs fil... |
| CVE-2025-21645 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: platform/x86/amd/pmc: Only disable IRQ1 wakeup wher... |
| CVE-2025-21644 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix tlb invalidation when wedging If GuC f... |
| CVE-2025-21643 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: netfs: Fix kernel async DIO Netfslib needs to be a... |
| CVE-2025-21642 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: mptcp: sysctl: sched: avoid using current->nsproxy ... |
| CVE-2025-21641 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: mptcp: sysctl: blackhole timeout: avoid using curre... |
| CVE-2025-21640 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: sctp: sysctl: cookie_hmac_alg: avoid using current-... |
| CVE-2025-21639 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: sctp: sysctl: rto_min/max: avoid using current->nsp... |
| CVE-2025-21638 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: sctp: sysctl: auth_enable: avoid using current->nsp... |
| CVE-2025-21637 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: sctp: sysctl: udp_port: avoid using current->nsprox... |
| CVE-2025-21636 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: sctp: sysctl: plpmtud_probe_interval: avoid using c... |
| CVE-2025-21635 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: rds: sysctl: rds_tcp_{rcv,snd}buf: avoid using curr... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now