2025 CVE Vulnerabilities
45,251 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-38684 | MEDIUM | 5.5 | 0.2% | Sep 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: net/sched: ets: use old 'nbands' while purging unus... |
| CVE-2025-38683 | MEDIUM | 5.5 | 0.2% | Sep 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: hv_netvsc: Fix panic during namespace deletion with... |
| CVE-2025-38682 | HIGH | 7.8 | 0.1% | Sep 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: i2c: core: Fix double-free of fwnode in i2c_unregis... |
| CVE-2025-38681 | MEDIUM | 4.7 | 0.1% | Sep 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: mm/ptdump: take the memory hotplug lock inside ptdu... |
| CVE-2025-38680 | HIGH | 7.1 | 0.2% | Sep 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Fix 1-byte out-of-bounds read in u... |
| CVE-2025-38679 | HIGH | 7.1 | 0.1% | Sep 4, 2025 | In the Linux kernel, the following vulnerability has been resolved: media: venus: Fix OOB read due to missing payload b... |
| CVE-2025-23302 | MEDIUM | 4.2 | 0.1% | Sep 4, 2025 | NVIDIA HGX and DGX contain a vulnerability where a misconfiguration of the LS10 could enable an attacker to set an unsaf... |
| CVE-2025-23301 | MEDIUM | 4.2 | 0.1% | Sep 4, 2025 | NVIDIA HGX and DGX contain a vulnerability where a misconfiguration of the VBIOS could enable an attacker to set an unsa... |
| CVE-2025-23262 | MEDIUM | 6.3 | 0.1% | Sep 4, 2025 | NVIDIA ConnectX contains a vulnerability in the management interface, where an attacker with local access could cause in... |
| CVE-2025-23261 | MEDIUM | 5.5 | 0.2% | Sep 4, 2025 | NVIDIA Cumulus Linux and NVOS products contain a vulnerability, where hashed user passwords are not properly suppressed ... |
| CVE-2025-23259 | MEDIUM | 6.5 | 0.3% | Sep 4, 2025 | NVIDIA Mellanox DPDK contains a vulnerability in Poll Mode Driver (PMD), where an attacker on a VM in the system might b... |
| CVE-2025-23258 | HIGH | 7.3 | 0.1% | Sep 4, 2025 | NVIDIA DOCA contains a vulnerability in the collectx-dpeserver Debian package for arm64 that could allow an attacker wit... |
| CVE-2025-23257 | HIGH | 7.3 | 0.1% | Sep 4, 2025 | NVIDIA DOCA contains a vulnerability in the collectx-clxapidev Debian package that could allow an actor with low privile... |
| CVE-2025-23256 | HIGH | 8.7 | 0.1% | Sep 4, 2025 | NVIDIA BlueField contains a vulnerability in the management interface, where an attacker with local access could cause i... |
| CVE-2025-8311 | CRITICAL | 9.4 | 1.6% | Sep 4, 2025 | dotCMS versions 24.03.22 and after, identified a Boolean-based blind SQLi vulnerability in the /api/v1/contenttype endpo... |
| CVE-2025-6785 | MEDIUM | 4.7 | 0.2% | Sep 4, 2025 | Securing externally available CAN wires can easily allow physical access to the CAN bus, allowing possible injection of ... |
| CVE-2025-2694 | MEDIUM | 4.8 | 0.2% | Sep 4, 2025 | IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.7_1 and 6.2.0.0 through 6.2.0.4 and IBM Sterling File Gateway 6.0.0.0 ... |
| CVE-2025-2667 | MEDIUM | 4.9 | 0.2% | Sep 4, 2025 | IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.7_1 and 6.2.0.0 through 6.2.0.4 and IBM Sterling File Gateway 6.0.0.0 ... |
| CVE-2025-25048 | MEDIUM | 6.5 | 0.3% | Sep 4, 2025 | IBM Jazz Foundation 7.0.2 through 7.0.2 iFix033, 7.0.3 through 7.0.3 iFix012, and 7.1.0 through 7.1.0 iFix002 could allo... |
| CVE-2025-57263 | HIGH | 7.2 | 0.4% | Sep 4, 2025 | An authenticated SQL injection vulnerability in VX Guestbook 1.07 allows attackers with admin access to inject malicious... |
| CVE-2025-7388 | HIGH | 8.4 | 0.9% | Sep 4, 2025 | It was possible to perform Remote Command Execution (RCE) via Java RMI interface in the OpenEdge AdminServer, allowing a... |
| CVE-2025-7385 | CRITICAL | 9.3 | 0.4% | Sep 4, 2025 | Input from search query parameter in GOV CMS is not sanitized properly, leading to a Blind SQL injection vulnerability, ... |
| CVE-2025-41063 | MEDIUM | 5.4 | 0.2% | Sep 4, 2025 | A vulnerability has been discovered in version 4.0.5 of appRain CMF, consisting of an authenticated reflected XSS due to... |
| CVE-2025-41062 | MEDIUM | 5.4 | 0.2% | Sep 4, 2025 | A vulnerability has been discovered in version 4.0.5 of appRain CMF, consisting of an authenticated reflected XSS due to... |
| CVE-2025-41061 | MEDIUM | 5.4 | 0.2% | Sep 4, 2025 | A vulnerability has been discovered in appRain CMF version 4.0.5, consisting of a stored authenticated XSS due to a lack... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now