2025 CVE Vulnerabilities

45,255 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-54364MEDIUM6.9Microsoft Knack 0.12.0 allows Regular expression Denial of Service (ReDoS) in the knack.introspection module. option_des...
CVE-2025-54363MEDIUM6.9Microsoft Knack 0.12.0 allows Regular expression Denial of Service (ReDoS) in the knack.introspection module. extract_fu...
CVE-2025-9132HIGH8.8Out of bounds write in V8 in Google Chrome prior to 139.0.7258.138 allowed a remote attacker to potentially exploit heap...
CVE-2025-9193LOW3.5A flaw has been found in TOTVS Portal Meu RH up to 12.1.17. Impacted is an unknown function of the component Password Re...
CVE-2025-9176HIGH7.8A security flaw has been discovered in neurobin shc up to 4.0.3. Impacted is the function make of the file src/shc.c of ...
CVE-2025-9175HIGH7.8A vulnerability was identified in neurobin shc up to 4.0.3. This issue affects the function make of the file src/shc.c. ...
CVE-2025-9174HIGH7.8A vulnerability was determined in neurobin shc up to 4.0.3. This vulnerability affects the function make of the file src...
CVE-2025-9171MEDIUM5.4A security flaw has been discovered in SolidInvoice up to 2.4.0. The impacted element is an unknown function of the file...
CVE-2025-9170MEDIUM5.4A vulnerability was identified in SolidInvoice up to 2.4.0. The affected element is an unknown function of the file /tax...
CVE-2025-9169MEDIUM5.4A vulnerability was determined in SolidInvoice up to 2.4.0. Impacted is an unknown function of the file /quotes of the c...
CVE-2025-9187CRITICAL9.8Memory safety bugs present in Firefox 141 and Thunderbird 141. Some of these bugs showed evidence of memory corruption a...
CVE-2025-9186MEDIUM6.5Spoofing issue in the Address Bar component of Firefox Focus for Android. This vulnerability was fixed in Firefox 142.
CVE-2025-9185HIGH8.1Memory safety bugs present in Firefox ESR 115.26, Firefox ESR 128.13, Thunderbird ESR 128.13, Firefox ESR 140.1, Thunder...
CVE-2025-9184HIGH8.1Memory safety bugs present in Firefox ESR 140.1, Thunderbird ESR 140.1, Firefox 141 and Thunderbird 141. Some of these b...
CVE-2025-9183MEDIUM6.5Spoofing issue in the Address Bar component. This vulnerability was fixed in Firefox 142 and Firefox ESR 140.2.
CVE-2025-9182HIGH7.5Denial-of-service due to out-of-memory in the Graphics: WebRender component. This vulnerability was fixed in Firefox 142...
CVE-2025-9181MEDIUM6.5Uninitialized memory in the JavaScript Engine component. This vulnerability was fixed in Firefox 142, Firefox ESR 128.14...
CVE-2025-9180HIGH8.1Same-origin policy bypass in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 142, Firefox ESR ...
CVE-2025-9179CRITICAL9.8An attacker was able to perform memory corruption in the GMP process which processes encrypted media. This process is al...
CVE-2025-9168MEDIUM5.4A vulnerability was found in SolidInvoice up to 2.4.0. This issue affects some unknown processing of the file /invoice o...
CVE-2025-9167MEDIUM5.4A vulnerability has been found in SolidInvoice up to 2.4.0. This vulnerability affects unknown code of the file /invoice...
CVE-2025-8364MEDIUM4.3A crafted URL using a blob: URI could have hidden the true origin of the page, resulting in a potential spoofing attack....
CVE-2025-8042CRITICAL9.8Firefox for Android allowed a sandboxed iframe without the `allow-downloads` attribute to start downloads. This vulnerab...
CVE-2025-8041MEDIUM5.3In the address bar, Firefox for Android truncated the display of URLs from the end instead of prioritizing the origin. T...
CVE-2025-55033MEDIUM6.1Dragging JavaScript links to the URL bar in Focus for iOS could be utilized to run malicious scripts, potentially result...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now