2025 CVE Vulnerabilities
45,244 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-59055 | HIGH | 7.2 | 0.4% | Sep 11, 2025 | InstantCMS is a free and open source content management system. A blind Server-Side Request Forgery (SSRF) vulnerability... |
| CVE-2025-59053 | CRITICAL | 9.6 | 0.5% | Sep 11, 2025 | AIRI is a self-hosted, artificial intelligence based Grok Companion. In v0.7.2-beta.2 in the `packages/stage-ui/src/comp... |
| CVE-2025-56556 | LOW | 3.8 | 0.2% | Sep 11, 2025 | An issue was discovered in Subrion CMS 4.2.1, allowing authenticated adminitrators or moderators with access to the buil... |
| CVE-2025-59047 | LOW | 2.7 | 0.4% | Sep 11, 2025 | matrix-sdk-base is the base component to build a Matrix client library. In matrix-sdk-base before 0.14.1, calling the `R... |
| CVE-2025-58364 | MEDIUM | 6.5 | 1.1% | Sep 11, 2025 | OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.12 ... |
| CVE-2025-58065 | MEDIUM | 6.5 | 0.4% | Sep 11, 2025 | Flask-AppBuilder is an application development framework. Prior to version 4.8.1, when Flask-AppBuilder is configured to... |
| CVE-2025-58060 | HIGH | 8 | 1.0% | Sep 11, 2025 | OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.12 ... |
| CVE-2025-43790 | HIGH | 8.1 | 0.3% | Sep 11, 2025 | Insecure Direct Object Reference (IDOR) vulnerability in Liferay Portal 7.4.0 through 7.4.3.124, and Liferay DXP 2024.Q2... |
| CVE-2025-43782 | MEDIUM | 4.3 | 0.2% | Sep 11, 2025 | Insecure Direct Object Reference (IDOR) vulnerability in Liferay Portal 7.4.0 through 7.4.3.124, and Liferay DXP 2024.Q2... |
| CVE-2025-40300 | MEDIUM | 5.5 | 0.3% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: x86/vmscape: Add conditional IBPB mitigation VMSCA... |
| CVE-2025-39791 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: dm: dm-crypt: Do not partially accept write BIOs wi... |
| CVE-2025-39790 | HIGH | 7.8 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: Detect events pointing to unexpecte... |
| CVE-2025-39789 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: crypto: x86/aegis - Add missing error checks The s... |
| CVE-2025-39788 | HIGH | 7.8 | 0.2% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: exynos: Fix programming of HCI_UTRL_NEXU... |
| CVE-2025-39787 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: soc: qcom: mdt_loader: Ensure we don't read past th... |
| CVE-2025-39786 | HIGH | 7.1 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: iio: adc: ad7173: fix channels index for syscalib_m... |
| CVE-2025-39785 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/hisilicon/hibmc: fix irq_request()'s irq name v... |
| CVE-2025-39784 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: PCI: Fix link speed calculation on retrain failure ... |
| CVE-2025-39783 | HIGH | 7.8 | 0.2% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Fix configfs group list head handlin... |
| CVE-2025-39782 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: jbd2: prevent softlockup in jbd2_log_do_checkpoint(... |
| CVE-2025-39781 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: parisc: Drop WARN_ON_ONCE() from flush_cache_vmap ... |
| CVE-2025-39780 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: sched/ext: Fix invalid task state transitions on cl... |
| CVE-2025-39779 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: btrfs: subpage: keep TOWRITE tag until folio is cle... |
| CVE-2025-39777 | MEDIUM | 5.5 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: crypto: acomp - Fix CFI failure due to type punning... |
| CVE-2025-39776 | HIGH | 7.8 | 0.1% | Sep 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm/debug_vm_pgtable: clear page table entries at de... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now