2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-6187 | CRITICAL | 9.8 | 0.7% | Jul 22, 2025 | The bSecure plugin for WordPress is vulnerable to Privilege Escalation due to missing authorization within its order_inf... |
| CVE-2025-6082 | MEDIUM | 5.3 | 1.6% | Jul 22, 2025 | The Birth Chart Compatibility plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and incl... |
| CVE-2025-53472 | HIGH | 8.6 | 1.1% | Jul 22, 2025 | WRC-BE36QS-B and WRC-W701-B contain an improper neutralization of special elements used in an OS command ('OS Command In... |
| CVE-2025-46267 | MEDIUM | 6.9 | 0.3% | Jul 22, 2025 | Hidden functionality issue exists in WRC-BE36QS-B and WRC-W701-B. If exploited, the product's hidden debug function may ... |
| CVE-2025-38352 | HIGH | 7.8 | 1.3% | Jul 22, 2025 | In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: fix race between handle_posix_cpu... |
| CVE-2025-7645 | HIGH | 8.1 | 0.8% | Jul 22, 2025 | The Extensions For CF7 (Contact form 7 Database, Conditional Fields and Redirection) plugin for WordPress is vulnerable ... |
| CVE-2025-7644 | MEDIUM | 6.4 | 0.2% | Jul 22, 2025 | The Pixel Gallery Addons for Elementor – Easy Grid, Creative Gallery, Drag and Drop Grid, Custom Grid Layout, Portfolio ... |
| CVE-2025-7495 | MEDIUM | 6.4 | 0.3% | Jul 22, 2025 | The WP-Members Membership Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wpm... |
| CVE-2025-6585 | HIGH | 8.1 | 0.4% | Jul 22, 2025 | The WP JobHunt plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and includi... |
| CVE-2025-52580 | LOW | 2.4 | 0.2% | Jul 22, 2025 | Insertion of sensitive information into log file issue exists in "region PAY" App for Android prior to 1.5.28. If exploi... |
| CVE-2025-7953 | MEDIUM | 6.1 | 0.3% | Jul 22, 2025 | A vulnerability, which was classified as problematic, has been found in Sanluan PublicCMS up to 5.202506.a. This issue a... |
| CVE-2025-7952 | HIGH | 8.8 | 15.2% | Jul 22, 2025 | A vulnerability classified as critical was found in TOTOLINK T6 4.1.5cu.748. This vulnerability affects the function cke... |
| CVE-2025-7951 | MEDIUM | 5.4 | 0.3% | Jul 22, 2025 | A vulnerability classified as problematic has been found in code-projects Public Chat Room 1.0. This affects an unknown ... |
| CVE-2025-7950 | CRITICAL | 9.8 | 0.5% | Jul 22, 2025 | A vulnerability was found in code-projects Public Chat Room 1.0. It has been rated as critical. Affected by this issue i... |
| CVE-2025-54362 | — | — | — | Jul 22, 2025 | Rejected reason: Not used |
| CVE-2025-54361 | — | — | — | Jul 22, 2025 | Rejected reason: Not used |
| CVE-2025-54360 | — | — | — | Jul 22, 2025 | Rejected reason: Not used |
| CVE-2025-54359 | — | — | — | Jul 22, 2025 | Rejected reason: Not used |
| CVE-2025-54358 | — | — | — | Jul 22, 2025 | Rejected reason: Not used |
| CVE-2025-54357 | — | — | — | Jul 22, 2025 | Rejected reason: Not used |
| CVE-2025-54356 | — | — | — | Jul 22, 2025 | Rejected reason: Not used |
| CVE-2025-54355 | — | — | — | Jul 22, 2025 | Rejected reason: Not used |
| CVE-2025-54354 | — | — | — | Jul 22, 2025 | Rejected reason: Not used |
| CVE-2025-7949 | MEDIUM | 6.1 | 0.3% | Jul 22, 2025 | A vulnerability was found in Sanluan PublicCMS up to 5.202506.a. It has been declared as problematic. Affected by this v... |
| CVE-2025-6831 | MEDIUM | 6.4 | 0.3% | Jul 22, 2025 | The User Registration plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's urcr_restrict s... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now