2025 CVE Vulnerabilities

45,255 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-5240MEDIUM6.4The CRM and Lead Management by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘type’ pa...
CVE-2025-7948MEDIUM6.5A vulnerability classified as problematic was found in jshERP up to 3.5. Affected by this vulnerability is an unknown fu...
CVE-2025-7947HIGH8.1A vulnerability classified as critical has been found in jshERP up to 3.5. Affected is an unknown function of the file /...
CVE-2025-7946MEDIUM6.1A vulnerability was found in PHPGurukul Apartment Visitors Management System 1.0. It has been rated as problematic. This...
CVE-2025-7945HIGH8.8A vulnerability was found in D-Link DIR-513 up to 20190831. It has been declared as critical. This vulnerability affects...
CVE-2025-7944MEDIUM6.1A vulnerability was found in PHPGurukul Taxi Stand Management System 1.0. It has been classified as problematic. This af...
CVE-2025-7943MEDIUM6.1A vulnerability was found in PHPGurukul Taxi Stand Management System 1.0 and classified as problematic. Affected by this...
CVE-2025-7486MEDIUM4.4The Ebook Store plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Order Details in all versions ...
CVE-2025-7942MEDIUM5.4A vulnerability has been found in PHPGurukul Taxi Stand Management System 1.0 and classified as problematic. Affected by...
CVE-2025-7941MEDIUM5.4A vulnerability, which was classified as problematic, was found in PHPGurukul Time Table Generator System 1.0. Affected ...
CVE-2025-7940MEDIUM5.3A vulnerability was found in Genshin Albedo Cat House App 1.0.2 on Android. It has been declared as problematic. Affecte...
CVE-2025-7939HIGH8.8A vulnerability was found in jerryshensjf JPACookieShop 蛋糕商城JPA版 1.0. It has been classified as critical. Affected is th...
CVE-2025-54134MEDIUM6.5HAX CMS NodeJs allows users to manage their microsite universe with a NodeJs backend. In versions 11.0.8 and below, the ...
CVE-2025-54129MEDIUM4.3HAXiam is a packaging wrapper for HAXcms which allows anyone to spawn their own microsite management platform. In versio...
CVE-2025-54128MEDIUM6.1HAX CMS NodeJs allows users to manage their microsite universe with a NodeJs backend. In versions 11.0.7 and below, the ...
CVE-2025-54127CRITICAL9.8HAXcms with nodejs backend allows users to start the server in any HAXsite or HAXcms instance. In versions 11.0.6 and be...
CVE-2025-54122CRITICAL10Manager-io/Manager is accounting software. A critical unauthenticated full read Server-Side Request Forgery (SSRF) vulne...
CVE-2025-53832HIGH7.5Lara Translate MCP Server is a Model Context Protocol (MCP) Server for Lara Translate API. Versions 0.0.11 and below con...
CVE-2025-53528HIGH7.6Cadwyn creates production-ready community-driven modern Stripe-like API versioning in FastAPI. In versions before 5.4.3,...
CVE-2025-7938MEDIUM4.3A vulnerability was found in jerryshensjf JPACookieShop 蛋糕商城JPA版 1.0 and classified as critical. This issue affects the ...
CVE-2025-7936HIGH8.8A vulnerability has been found in fuyang_lipengjun platform up to ca9aceff6902feb7b0b6bf510842aea88430796a and classifie...
CVE-2025-7325HIGH7.8IrfanView CADImage Plugin DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability all...
CVE-2025-7324HIGH7.8IrfanView CADImage Plugin DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability al...
CVE-2025-7323HIGH7.8IrfanView CADImage Plugin DWG File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability all...
CVE-2025-7322HIGH7.8IrfanView CADImage Plugin DWG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability al...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now