2025 CVE Vulnerabilities

45,255 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-8881MEDIUM6.5Inappropriate implementation in File Picker in Google Chrome prior to 139.0.7258.127 allowed a remote attacker who convi...
CVE-2025-8880HIGH8.8Race in V8 in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to execute arbitrary code inside a sandbox...
CVE-2025-8879HIGH8.8Heap buffer overflow in libaom in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to potentially exploit...
CVE-2025-4410HIGH7.5A buffer overflow vulnerability exists in the module SetupUtility. An attacker with local privileged access can exploit ...
CVE-2025-4277HIGH7.5Tcg2Smm has a vulnerability which can be used to write arbitrary memory inside SMRAM and execute arbitrary code at SMM l...
CVE-2025-4276HIGH7.5UsbCoreDxe has a vulnerability which can be used to write arbitrary memory inside SMRAM and execute arbitrary code at SM...
CVE-2025-8395Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2025-54238MEDIUM5.5Dimension versions 4.1.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure o...
CVE-2025-54233MEDIUM5.5Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by an out-of-bounds read vulnerability that could lead...
CVE-2025-54232HIGH7.8Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in...
CVE-2025-54231HIGH7.8Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in...
CVE-2025-54230HIGH7.8Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in...
CVE-2025-54229HIGH7.8Adobe Framemaker versions 2020.8, 2022.6 and earlier are affected by a Use After Free vulnerability that could result in...
CVE-2025-49457HIGH8.8Untrusted search path in certain Zoom Clients for Windows may allow an unauthenticated user to conduct an escalation of ...
CVE-2025-49456MEDIUM5.1Race condition in the installer for certain Zoom Clients for Windows may allow an unauthenticated user to impact applic...
CVE-2025-54222HIGH7.8Substance3D - Stager versions 3.1.3 and earlier are affected by an out-of-bounds write vulnerability that could result i...
CVE-2025-55171HIGH7.5WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. Prior to versio...
CVE-2025-55170HIGH7.4WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. Prior to versio...
CVE-2025-55165HIGH8.2Autocaliweb is a web app that offers an interface for browsing, reading, and downloading eBooks using a valid Calibre da...
CVE-2025-54235MEDIUM5.5Substance3D - Modeler versions 1.22.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to...
CVE-2025-54228MEDIUM5.5InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by an out-of-bounds read vulnerability that could lead t...
CVE-2025-54227MEDIUM5.5InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by an out-of-bounds read vulnerability that could lead t...
CVE-2025-54226HIGH7.8InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability that could result in a...
CVE-2025-54225HIGH7.8InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability that could result in a...
CVE-2025-54224HIGH7.8InDesign Desktop versions 20.4, 19.5.4 and earlier are affected by a Use After Free vulnerability that could result in a...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now