2025 CVE Vulnerabilities
45,233 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-21629 | MEDIUM | 5.5 | 0.2% | Jan 15, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: reenable NETIF_F_IPV6_CSUM offload for BIG TCP... |
| CVE-2025-0448 | MEDIUM | 4.3 | 0.3% | Jan 15, 2025 | Inappropriate implementation in Compositing in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to perform... |
| CVE-2025-0446 | MEDIUM | 4.3 | 0.3% | Jan 15, 2025 | Inappropriate implementation in Extensions in Google Chrome prior to 132.0.6834.83 allowed a remote attacker who convinc... |
| CVE-2025-0442 | MEDIUM | 6.5 | 0.3% | Jan 15, 2025 | Inappropriate implementation in Payments in Google Chrome prior to 132.0.6834.83 allowed a remote attacker who convinced... |
| CVE-2025-0441 | MEDIUM | 6.5 | 0.4% | Jan 15, 2025 | Inappropriate implementation in Fenced Frames in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to obtai... |
| CVE-2025-0440 | MEDIUM | 6.5 | 0.4% | Jan 15, 2025 | Inappropriate implementation in Fullscreen in Google Chrome on Windows prior to 132.0.6834.83 allowed a remote attacker ... |
| CVE-2025-0439 | MEDIUM | 6.5 | 0.3% | Jan 15, 2025 | Race in Frames in Google Chrome prior to 132.0.6834.83 allowed a remote attacker who convinced a user to engage in speci... |
| CVE-2025-0435 | MEDIUM | 6.5 | 0.3% | Jan 15, 2025 | Inappropriate implementation in Navigation in Google Chrome on Android prior to 132.0.6834.83 allowed a remote attacker ... |
| CVE-2025-0193 | MEDIUM | 5.2 | 0.3% | Jan 15, 2025 | A stored Cross-site Scripting (XSS) vulnerability exists in the MGate 5121/5122/5123 Series firmware version v1.0 becaus... |
| CVE-2025-0354 | MEDIUM | 4.8 | 0.2% | Jan 15, 2025 | Cross-site scripting vulnerability in NEC Corporation Aterm WG2600HS Ver.1.7.2 and earlier, WG2600HP4 Ver.1.4.2 and earl... |
| CVE-2025-21101 | MEDIUM | 6.3 | 0.1% | Jan 15, 2025 | Dell Display Manager, versions prior to 2.3.2.20, contain a race condition vulnerability. A local malicious user could p... |
| CVE-2025-22997 | MEDIUM | 4.8 | 0.3% | Jan 15, 2025 | A stored cross-site scripting (XSS) vulnerability in the prf_table_content component of Linksys E5600 Router Ver. 1.1.0.... |
| CVE-2025-22996 | MEDIUM | 4.8 | 0.3% | Jan 15, 2025 | A stored cross-site scripting (XSS) vulnerability in the spf_table_content component of Linksys E5600 Router Ver. 1.1.0.... |
| CVE-2025-23019 | MEDIUM | 6.5 | 0.9% | Jan 14, 2025 | IPv6-in-IPv4 tunneling (RFC 4213) allows an attacker to spoof and route traffic via an exposed network interface. |
| CVE-2025-23018 | MEDIUM | 6.5 | 1.0% | Jan 14, 2025 | IPv4-in-IPv6 and IPv6-in-IPv6 tunneling (RFC 2473) do not require the validation or verification of the source of a netw... |
| CVE-2025-23072 | MEDIUM | 5.4 | 0.3% | Jan 14, 2025 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia F... |
| CVE-2025-23041 | MEDIUM | 5.3 | 0.4% | Jan 14, 2025 | Umbraco.Forms is a web form framework written for the nuget ecosystem. Character limits configured by editors for short ... |
| CVE-2025-23366 | MEDIUM | 4.8 | 0.4% | Jan 14, 2025 | A flaw was found in the HAL Console in the Wildfly component, which does not neutralize or incorrectly neutralizes user-... |
| CVE-2025-21403 | MEDIUM | 6.4 | 0.6% | Jan 14, 2025 | On-Premises Data Gateway Information Disclosure Vulnerability |
| CVE-2025-21393 | MEDIUM | 6.3 | 1.0% | Jan 14, 2025 | Microsoft SharePoint Server Spoofing Vulnerability |
| CVE-2025-21374 | MEDIUM | 5.5 | 0.6% | Jan 14, 2025 | Windows CSC Service Information Disclosure Vulnerability |
| CVE-2025-21357 | MEDIUM | 6.7 | 0.6% | Jan 14, 2025 | Microsoft Outlook Remote Code Execution Vulnerability |
| CVE-2025-21341 | MEDIUM | 6.6 | 0.7% | Jan 14, 2025 | Windows Digital Media Elevation of Privilege Vulnerability |
| CVE-2025-21340 | MEDIUM | 5.5 | 0.4% | Jan 14, 2025 | Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability |
| CVE-2025-21336 | MEDIUM | 5.6 | 0.6% | Jan 14, 2025 | Windows Cryptographic Information Disclosure Vulnerability |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now