2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-54364 | MEDIUM | 6.9 | 0.3% | Aug 20, 2025 | Microsoft Knack 0.12.0 allows Regular expression Denial of Service (ReDoS) in the knack.introspection module. option_des... |
| CVE-2025-54363 | MEDIUM | 6.9 | 0.4% | Aug 20, 2025 | Microsoft Knack 0.12.0 allows Regular expression Denial of Service (ReDoS) in the knack.introspection module. extract_fu... |
| CVE-2025-9132 | HIGH | 8.8 | 3.0% | Aug 20, 2025 | Out of bounds write in V8 in Google Chrome prior to 139.0.7258.138 allowed a remote attacker to potentially exploit heap... |
| CVE-2025-9193 | LOW | 3.5 | 0.2% | Aug 20, 2025 | A flaw has been found in TOTVS Portal Meu RH up to 12.1.17. Impacted is an unknown function of the component Password Re... |
| CVE-2025-9176 | HIGH | 7.8 | 1.3% | Aug 20, 2025 | A security flaw has been discovered in neurobin shc up to 4.0.3. Impacted is the function make of the file src/shc.c of ... |
| CVE-2025-9175 | HIGH | 7.8 | 0.2% | Aug 19, 2025 | A vulnerability was identified in neurobin shc up to 4.0.3. This issue affects the function make of the file src/shc.c. ... |
| CVE-2025-9174 | HIGH | 7.8 | 1.3% | Aug 19, 2025 | A vulnerability was determined in neurobin shc up to 4.0.3. This vulnerability affects the function make of the file src... |
| CVE-2025-9171 | MEDIUM | 5.4 | 0.3% | Aug 19, 2025 | A security flaw has been discovered in SolidInvoice up to 2.4.0. The impacted element is an unknown function of the file... |
| CVE-2025-9170 | MEDIUM | 5.4 | 0.3% | Aug 19, 2025 | A vulnerability was identified in SolidInvoice up to 2.4.0. The affected element is an unknown function of the file /tax... |
| CVE-2025-9169 | MEDIUM | 5.4 | 0.3% | Aug 19, 2025 | A vulnerability was determined in SolidInvoice up to 2.4.0. Impacted is an unknown function of the file /quotes of the c... |
| CVE-2025-9187 | CRITICAL | 9.8 | 0.4% | Aug 19, 2025 | Memory safety bugs present in Firefox 141 and Thunderbird 141. Some of these bugs showed evidence of memory corruption a... |
| CVE-2025-9186 | MEDIUM | 6.5 | 0.2% | Aug 19, 2025 | Spoofing issue in the Address Bar component of Firefox Focus for Android. This vulnerability was fixed in Firefox 142. |
| CVE-2025-9185 | HIGH | 8.1 | 0.4% | Aug 19, 2025 | Memory safety bugs present in Firefox ESR 115.26, Firefox ESR 128.13, Thunderbird ESR 128.13, Firefox ESR 140.1, Thunder... |
| CVE-2025-9184 | HIGH | 8.1 | 0.3% | Aug 19, 2025 | Memory safety bugs present in Firefox ESR 140.1, Thunderbird ESR 140.1, Firefox 141 and Thunderbird 141. Some of these b... |
| CVE-2025-9183 | MEDIUM | 6.5 | 0.2% | Aug 19, 2025 | Spoofing issue in the Address Bar component. This vulnerability was fixed in Firefox 142 and Firefox ESR 140.2. |
| CVE-2025-9182 | HIGH | 7.5 | 0.4% | Aug 19, 2025 | Denial-of-service due to out-of-memory in the Graphics: WebRender component. This vulnerability was fixed in Firefox 142... |
| CVE-2025-9181 | MEDIUM | 6.5 | 0.3% | Aug 19, 2025 | Uninitialized memory in the JavaScript Engine component. This vulnerability was fixed in Firefox 142, Firefox ESR 128.14... |
| CVE-2025-9180 | HIGH | 8.1 | 0.2% | Aug 19, 2025 | Same-origin policy bypass in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 142, Firefox ESR ... |
| CVE-2025-9179 | CRITICAL | 9.8 | 0.5% | Aug 19, 2025 | An attacker was able to perform memory corruption in the GMP process which processes encrypted media. This process is al... |
| CVE-2025-9168 | MEDIUM | 5.4 | 0.3% | Aug 19, 2025 | A vulnerability was found in SolidInvoice up to 2.4.0. This issue affects some unknown processing of the file /invoice o... |
| CVE-2025-9167 | MEDIUM | 5.4 | 0.3% | Aug 19, 2025 | A vulnerability has been found in SolidInvoice up to 2.4.0. This vulnerability affects unknown code of the file /invoice... |
| CVE-2025-8364 | MEDIUM | 4.3 | 0.2% | Aug 19, 2025 | A crafted URL using a blob: URI could have hidden the true origin of the page, resulting in a potential spoofing attack.... |
| CVE-2025-8042 | CRITICAL | 9.8 | 0.4% | Aug 19, 2025 | Firefox for Android allowed a sandboxed iframe without the `allow-downloads` attribute to start downloads. This vulnerab... |
| CVE-2025-8041 | MEDIUM | 5.3 | 0.3% | Aug 19, 2025 | In the address bar, Firefox for Android truncated the display of URLs from the end instead of prioritizing the origin. T... |
| CVE-2025-55033 | MEDIUM | 6.1 | 0.2% | Aug 19, 2025 | Dragging JavaScript links to the URL bar in Focus for iOS could be utilized to run malicious scripts, potentially result... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now