2025 CVE Vulnerabilities

45,244 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-59055HIGH7.2InstantCMS is a free and open source content management system. A blind Server-Side Request Forgery (SSRF) vulnerability...
CVE-2025-59053CRITICAL9.6AIRI is a self-hosted, artificial intelligence based Grok Companion. In v0.7.2-beta.2 in the `packages/stage-ui/src/comp...
CVE-2025-56556LOW3.8An issue was discovered in Subrion CMS 4.2.1, allowing authenticated adminitrators or moderators with access to the buil...
CVE-2025-59047LOW2.7matrix-sdk-base is the base component to build a Matrix client library. In matrix-sdk-base before 0.14.1, calling the `R...
CVE-2025-58364MEDIUM6.5OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.12 ...
CVE-2025-58065MEDIUM6.5Flask-AppBuilder is an application development framework. Prior to version 4.8.1, when Flask-AppBuilder is configured to...
CVE-2025-58060HIGH8OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.12 ...
CVE-2025-43790HIGH8.1Insecure Direct Object Reference (IDOR) vulnerability in Liferay Portal 7.4.0 through 7.4.3.124, and Liferay DXP 2024.Q2...
CVE-2025-43782MEDIUM4.3Insecure Direct Object Reference (IDOR) vulnerability in Liferay Portal 7.4.0 through 7.4.3.124, and Liferay DXP 2024.Q2...
CVE-2025-40300MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: x86/vmscape: Add conditional IBPB mitigation VMSCA...
CVE-2025-39791MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dm: dm-crypt: Do not partially accept write BIOs wi...
CVE-2025-39790HIGH7.8In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: Detect events pointing to unexpecte...
CVE-2025-39789MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: crypto: x86/aegis - Add missing error checks The s...
CVE-2025-39788HIGH7.8In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: exynos: Fix programming of HCI_UTRL_NEXU...
CVE-2025-39787MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: soc: qcom: mdt_loader: Ensure we don't read past th...
CVE-2025-39786HIGH7.1In the Linux kernel, the following vulnerability has been resolved: iio: adc: ad7173: fix channels index for syscalib_m...
CVE-2025-39785MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/hisilicon/hibmc: fix irq_request()'s irq name v...
CVE-2025-39784MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: PCI: Fix link speed calculation on retrain failure ...
CVE-2025-39783HIGH7.8In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Fix configfs group list head handlin...
CVE-2025-39782MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: jbd2: prevent softlockup in jbd2_log_do_checkpoint(...
CVE-2025-39781MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: parisc: Drop WARN_ON_ONCE() from flush_cache_vmap ...
CVE-2025-39780MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: sched/ext: Fix invalid task state transitions on cl...
CVE-2025-39779MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: btrfs: subpage: keep TOWRITE tag until folio is cle...
CVE-2025-39777MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: crypto: acomp - Fix CFI failure due to type punning...
CVE-2025-39776HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm/debug_vm_pgtable: clear page table entries at de...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now