2025 CVE Vulnerabilities

45,251 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-36900MEDIUM6.7In lwis_test_register_io of lwis_device_test.c, there is a possible OOB Write due to an integer overflow. This could lea...
CVE-2025-36899HIGH8.4There is a possible escalation of privilege due to test/debugging code left in a production build. This could lead to ph...
CVE-2025-36898HIGH7.8There is a possible escalation of privilege due to a logic error in the code. This could lead to local escalation of pri...
CVE-2025-36897CRITICAL9.8In unknown of cd_CnMsgCodecUserApi.cpp, there is a possible out of bounds write due to a missing bounds check. This coul...
CVE-2025-36896CRITICAL9.8WLAN in Android before 2025-09-05 on Google Pixel devices allows elevation of privilege, aka A-394765106.
CVE-2025-36895HIGH7.5Information disclosure
CVE-2025-36894HIGH7.5In TBD of TBD, there is a possible DoS due to a missing null check. This could lead to remote denial of service with no ...
CVE-2025-36893MEDIUM5.5In ReadTachyonCommands of gxp_main_actor.cc, there is a possible information leak due to uninitialized data. This could ...
CVE-2025-36892HIGH7.5Denial of service
CVE-2025-36891HIGH8.8Elevation of privilege
CVE-2025-36890CRITICAL9.8Elevation of Privilege
CVE-2025-36887HIGH7.8In wl_cfgscan_update_v3_schedscan_results() of wl_cfgscan.c, there is a possible out of bounds write due to an incorrec...
CVE-2025-2417HIGH8.6Improper Restriction of Excessive Authentication Attempts vulnerability in Akinsoft e-Mutabakat allows Authentication By...
CVE-2025-2411HIGH8.6Improper Restriction of Excessive Authentication Attempts vulnerability in Akinsoft TaskPano allows Authentication Bypas...
CVE-2025-9928CRITICAL9.8A security flaw has been discovered in projectworlds Travel Management System 1.0. The impacted element is an unknown fu...
CVE-2025-9927CRITICAL9.8A vulnerability was identified in projectworlds Travel Management System 1.0. The affected element is an unknown functio...
CVE-2025-8268MEDIUM6.5The AI Engine plugin for WordPress is vulnerable to unauthorized access and loss of data due to a missing capability che...
CVE-2025-58056HIGH7.5Netty is an asynchronous event-driven network application framework for development of maintainable high performance pro...
CVE-2025-57833HIGH8.1An issue was discovered in Django 4.2 before 4.2.24, 5.1 before 5.1.12, and 5.2 before 5.2.6. FilteredRelation is subjec...
CVE-2025-55748HIGH7.5XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In versions 4.2...
CVE-2025-55747CRITICAL9.1XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In versions 6....
CVE-2025-9926CRITICAL9.8A vulnerability was determined in projectworlds Travel Management System 1.0. Impacted is an unknown function of the fil...
CVE-2025-9925CRITICAL9.8A vulnerability was found in projectworlds Travel Management System 1.0. This issue affects some unknown processing of t...
CVE-2025-9365HIGH8.4Fuji Electric FRENIC-Loader 4 is vulnerable to a deserialization of untrusted data when importing a file through a speci...
CVE-2025-56139MEDIUM5.3LinkedIn Mobile Application for Android version 4.1.1087.2 fails to update link preview metadata (image, title, descript...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now