2025 CVE Vulnerabilities
45,251 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-39676 | MEDIUM | 5.5 | 0.2% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla4xxx: Prevent a potential error pointer de... |
| CVE-2025-39675 | MEDIUM | 5.5 | 0.1% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Add null pointer check in mod_hdcp... |
| CVE-2025-39674 | MEDIUM | 5.5 | 0.1% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: ufs-qcom: Fix ESI null pointer dereferen... |
| CVE-2025-39673 | MEDIUM | 4.7 | 0.1% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: ppp: fix race conditions in ppp_fill_forward_path ... |
| CVE-2025-38737 | MEDIUM | 5.5 | 0.1% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: cifs: Fix oops due to uninitialised variable Fix s... |
| CVE-2025-38736 | HIGH | 7.1 | 0.1% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: usb: asix_devices: Fix PHY address mask in MDI... |
| CVE-2025-38735 | MEDIUM | 5.5 | 0.1% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: gve: prevent ethtool ops after shutdown A crash ca... |
| CVE-2025-38734 | HIGH | 7.8 | 0.2% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: net/smc: fix UAF on smcsk after smc_listen_out() B... |
| CVE-2025-38733 | MEDIUM | 5.5 | 0.1% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: s390/mm: Do not map lowcore with identity mapping ... |
| CVE-2025-38732 | MEDIUM | 5.5 | 0.2% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_reject: don't leak dst refcount for l... |
| CVE-2025-38731 | HIGH | 7.8 | 0.1% | Sep 5, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix vm_bind_ioctl double free bug If the a... |
| CVE-2025-35452 | CRITICAL | 9.8 | 0.8% | Sep 5, 2025 | PTZOptics and possibly other ValueHD-based pan-tilt-zoom cameras use default, shared credentials for the administrative ... |
| CVE-2025-35451 | CRITICAL | 9.8 | 0.7% | Sep 5, 2025 | PTZOptics and possibly other ValueHD-based pan-tilt-zoom cameras use hard-coded, default administrative credentials. The... |
| CVE-2025-30200 | MEDIUM | 6.3 | 0.1% | Sep 5, 2025 | ECOVACS robot vacuums and base stations communicate via an insecure Wi-Fi network with a deterministic AES encryption ke... |
| CVE-2025-30199 | HIGH | 7.5 | 0.3% | Sep 5, 2025 | ECOVACS vacuum robot base stations do not validate firmware updates, so malicious over-the-air updates can be sent to ba... |
| CVE-2025-30198 | MEDIUM | 6.3 | 0.2% | Sep 5, 2025 | ECOVACS robot vacuums and base stations communicate via an insecure Wi-Fi network with a deterministic WPA2-PSK, which c... |
| CVE-2025-10014 | LOW | 3.1 | 0.3% | Sep 5, 2025 | A flaw has been found in elunez eladmin up to 2.7. This impacts the function updateUserEmail of the file /api/users/upda... |
| CVE-2025-9999 | HIGH | 7.6 | 0.1% | Sep 5, 2025 | Some payload elements of the messages sent between two stations in a networking architecture are not properly checked on... |
| CVE-2025-9998 | MEDIUM | 6 | 0.2% | Sep 5, 2025 | The sequence of packets received by a Networking server are not correctly checked. An attacker could exploit this vulne... |
| CVE-2025-58628 | CRITICAL | 9.3 | 0.3% | Sep 5, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in kamleshyadav Mirac... |
| CVE-2025-58440 | — | — | — | Sep 5, 2025 | Rejected reason: The unisharp/laravel-filemanager is a separate project, unrelated to laravel-filemanager. |
| CVE-2025-58214 | HIGH | 8.1 | 0.4% | Sep 5, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-58206 | CRITICAL | 9.8 | 0.4% | Sep 5, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-57889 | HIGH | 7.5 | 0.4% | Sep 5, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-54744 | MEDIUM | 6.5 | 0.2% | Sep 5, 2025 | Missing Authorization vulnerability in Stylemix MasterStudy LMS masterstudy-lms-learning-management-system allows Exploi... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now