2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-20613 | LOW | 3.3 | 0.1% | Aug 12, 2025 | Predictable Seed in Pseudo-Random Number Generator (PRNG) in the firmware for some Intel(R) TDX may allow an authenticat... |
| CVE-2025-20109 | HIGH | 7.8 | 0.1% | Aug 12, 2025 | Improper Isolation or Compartmentalization in the stream cache mechanism for some Intel(R) Processors may allow an authe... |
| CVE-2025-20099 | MEDIUM | 6.7 | 0.1% | Aug 12, 2025 | Improper access control for some Intel(R) Rapid Storage Technology installation software may allow an authenticated user... |
| CVE-2025-20093 | HIGH | 8.6 | 0.1% | Aug 12, 2025 | Improper check for unusual or exceptional conditions in the Linux kernel-mode driver for some Intel(R) 800 Series Ethern... |
| CVE-2025-20092 | MEDIUM | 6.7 | 0.1% | Aug 12, 2025 | Uncontrolled search path for some Clock Jitter Tool software before version 6.0.1 may allow an authenticated user to pot... |
| CVE-2025-20090 | MEDIUM | 6.8 | 0.1% | Aug 12, 2025 | Untrusted Pointer Dereference for some Intel(R) QuickAssist Technology software before version 2.5.0 may allow an authen... |
| CVE-2025-20087 | MEDIUM | 6.7 | 0.1% | Aug 12, 2025 | Incorrect default permissions for some Intel(R) oneAPI DPC++/C++ Compiler software installers may allow an authenticated... |
| CVE-2025-20077 | MEDIUM | 5.6 | 0.1% | Aug 12, 2025 | Missing release of memory after effective lifetime in the UEFI OobRasMmbiHandlerDriver module for some Intel(R) referenc... |
| CVE-2025-20074 | HIGH | 7.8 | 0.1% | Aug 12, 2025 | Time-of-check Time-of-use race condition for some Intel(R) Connectivity Performance Suite software installers before ver... |
| CVE-2025-20067 | MEDIUM | 6.8 | 0.2% | Aug 12, 2025 | Observable timing discrepancy in firmware for some Intel(R) CSME and Intel(R) SPS may allow a privileged user to potenti... |
| CVE-2025-20053 | HIGH | 7.2 | 0.1% | Aug 12, 2025 | Improper buffer restrictions for some Intel(R) Xeon(R) Processor firmware with SGX enabled may allow a privileged user t... |
| CVE-2025-20048 | MEDIUM | 6.7 | 0.1% | Aug 12, 2025 | Uncontrolled search path for the Intel(R) Trace Analyzer and Collector software all verions may allow an authenticated u... |
| CVE-2025-20037 | HIGH | 7.2 | 0.1% | Aug 12, 2025 | Time-of-check time-of-use race condition in firmware for some Intel(R) Converged Security and Management Engine may allo... |
| CVE-2025-20025 | MEDIUM | 4.4 | 0.1% | Aug 12, 2025 | Uncontrolled recursion for some TinyCBOR libraries maintained by Intel(R) before version 0.6.1 may allow an authenticate... |
| CVE-2025-20023 | MEDIUM | 6.7 | 0.1% | Aug 12, 2025 | Incorrect default permissions for some Intel(R) Graphics Driver software installers may allow an authenticated user to p... |
| CVE-2025-20017 | MEDIUM | 6.7 | 0.1% | Aug 12, 2025 | Uncontrolled search path for some Intel(R) oneAPI Toolkit and component software installers may allow an authenticated u... |
| CVE-2025-8452 | MEDIUM | 4.3 | 0.2% | Aug 12, 2025 | By using the "uscan" protocol provided by the eSCL specification, an attacker can discover the serial number of multi-fu... |
| CVE-2025-55164 | HIGH | 8.8 | 0.4% | Aug 12, 2025 | content-security-policy-parser parses content security policy directives. A prototype pollution vulnerability exists in ... |
| CVE-2025-55011 | MEDIUM | 5.3 | 0.3% | Aug 12, 2025 | Kanboard is project management software that focuses on the Kanban methodology. Prior to version 1.2.47, the createTaskF... |
| CVE-2025-55010 | HIGH | 7.2 | 0.9% | Aug 12, 2025 | Kanboard is project management software that focuses on the Kanban methodology. Prior to version 1.2.47, an unsafe deser... |
| CVE-2025-54864 | HIGH | 7.5 | 0.4% | Aug 12, 2025 | Hydra is a continuous integration service for Nix based projects. Prior to commit f7bda02, /api/push-github and /api/pus... |
| CVE-2025-54800 | MEDIUM | 6.1 | 0.2% | Aug 12, 2025 | Hydra is a continuous integration service for Nix based projects. Prior to commit dea1e16, a malicious package can intro... |
| CVE-2025-3089 | MEDIUM | 5.3 | 0.4% | Aug 12, 2025 | ServiceNow has addressed a Broken Access Control vulnerability that was identified in the ServiceNow AI Platform. This v... |
| CVE-2025-38500 | HIGH | 7.8 | 0.1% | Aug 12, 2025 | In the Linux kernel, the following vulnerability has been resolved: xfrm: interface: fix use-after-free after changing ... |
| CVE-2025-8310 | HIGH | 8.8 | 0.7% | Aug 12, 2025 | Missing authorization in the admin console of Ivanti Virtual Application Delivery Controller before version 22.9 allows ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now