2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-21024 | MEDIUM | 5.5 | 0.1% | Aug 6, 2025 | Use of Implicit Intent for Sensitive Communication in Smart View prior to Android 16 allows local attackers to access se... |
| CVE-2025-21023 | LOW | 3.3 | 0.1% | Aug 6, 2025 | Improper access control in WcsExtension for Galaxy Watch prior to Android Watch 16 allows local attackers to access sens... |
| CVE-2025-21022 | MEDIUM | 5.5 | 0.1% | Aug 6, 2025 | Improper access control in Galaxy Wearable prior to version 2.2.63.25042861 allows local attackers to access sensitive i... |
| CVE-2025-21021 | MEDIUM | 6.7 | 0.1% | Aug 6, 2025 | Out-of-bounds write in drawing pinpad in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers... |
| CVE-2025-21020 | MEDIUM | 6.7 | 0.1% | Aug 6, 2025 | Out-of-bounds write in creating bitmap images in Blockchain Keystore prior to version 1.3.17.2 allows local privileged a... |
| CVE-2025-21019 | MEDIUM | 5.5 | 0.1% | Aug 6, 2025 | Improper authorization in Samsung Health prior to version 6.30.1.003 allows local attackers to access data in Samsung He... |
| CVE-2025-21018 | MEDIUM | 4.4 | 0.1% | Aug 6, 2025 | Out-of-bounds read in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to read out-of-bou... |
| CVE-2025-21017 | MEDIUM | 6.7 | 0.1% | Aug 6, 2025 | Out-of-bounds write in detaching crypto box in Blockchain Keystore prior to version 1.3.17.2 allows local privileged att... |
| CVE-2025-21016 | MEDIUM | 4.3 | 0.1% | Aug 6, 2025 | Improper access control in PkgPredictorService prior to SMR Aug-2025 Release 1 in Chinese Android 13, 14, 15 and 16 allo... |
| CVE-2025-21015 | HIGH | 7.1 | 0.1% | Aug 6, 2025 | Path Traversal in Document scanner prior to SMR Aug-2025 Release 1 allows local attackers to delete file with Document s... |
| CVE-2025-21014 | MEDIUM | 5.5 | 0.1% | Aug 6, 2025 | Improper export of android application component in Emergency SoS prior to SMR Aug-2025 Release 1 allows local attackers... |
| CVE-2025-21013 | MEDIUM | 6.2 | 0.1% | Aug 6, 2025 | Improper access control in SemSensorManager for Galaxy Watch prior to SMR Aug-2025 Release 1 allows local attackers to a... |
| CVE-2025-21012 | MEDIUM | 5.5 | 0.1% | Aug 6, 2025 | Improper access control in fall detection for Galaxy Watch prior to SMR Aug-2025 Release 1 allows local attackers to mod... |
| CVE-2025-21011 | MEDIUM | 5.5 | 0.1% | Aug 6, 2025 | Improper access control in SemSensorService for Galaxy Watch prior to SMR Aug-2025 Release 1 allows local attackers to a... |
| CVE-2025-21010 | MEDIUM | 6 | 0.1% | Aug 6, 2025 | Improper privilege management in SamsungAccount prior to SMR Aug-2025 Release 1 allows local privileged attackers to dea... |
| CVE-2025-20990 | LOW | 3.3 | 0.1% | Aug 6, 2025 | Improper access control in accessing system device node prior to SMR Aug-2025 Release 1 allows local attackers to access... |
| CVE-2025-8100 | MEDIUM | 5.4 | 3.1% | Aug 6, 2025 | The Element Pack Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via th... |
| CVE-2025-7498 | MEDIUM | 5.4 | 0.2% | Aug 6, 2025 | The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Countdown W... |
| CVE-2025-7399 | MEDIUM | 6.4 | 0.2% | Aug 6, 2025 | The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via an Elementor display setting in all ver... |
| CVE-2025-6994 | CRITICAL | 9.8 | 0.4% | Aug 6, 2025 | The Reveal Listing plugin by smartdatasoft for WordPress is vulnerable to privilege escalation in versions up to, and in... |
| CVE-2025-55027 | — | — | — | Aug 6, 2025 | Rejected reason: Not used |
| CVE-2025-55026 | — | — | — | Aug 6, 2025 | Rejected reason: Not used |
| CVE-2025-55025 | — | — | — | Aug 6, 2025 | Rejected reason: Not used |
| CVE-2025-55024 | — | — | — | Aug 6, 2025 | Rejected reason: Not used |
| CVE-2025-55023 | — | — | — | Aug 6, 2025 | Rejected reason: Not used |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now