2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-5240 | MEDIUM | 6.4 | 0.3% | Jul 22, 2025 | The CRM and Lead Management by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘type’ pa... |
| CVE-2025-7948 | MEDIUM | 6.5 | 0.4% | Jul 22, 2025 | A vulnerability classified as problematic was found in jshERP up to 3.5. Affected by this vulnerability is an unknown fu... |
| CVE-2025-7947 | HIGH | 8.1 | 0.4% | Jul 22, 2025 | A vulnerability classified as critical has been found in jshERP up to 3.5. Affected is an unknown function of the file /... |
| CVE-2025-7946 | MEDIUM | 6.1 | 0.4% | Jul 22, 2025 | A vulnerability was found in PHPGurukul Apartment Visitors Management System 1.0. It has been rated as problematic. This... |
| CVE-2025-7945 | HIGH | 8.8 | 4.4% | Jul 22, 2025 | A vulnerability was found in D-Link DIR-513 up to 20190831. It has been declared as critical. This vulnerability affects... |
| CVE-2025-7944 | MEDIUM | 6.1 | 0.3% | Jul 21, 2025 | A vulnerability was found in PHPGurukul Taxi Stand Management System 1.0. It has been classified as problematic. This af... |
| CVE-2025-7943 | MEDIUM | 6.1 | 0.3% | Jul 21, 2025 | A vulnerability was found in PHPGurukul Taxi Stand Management System 1.0 and classified as problematic. Affected by this... |
| CVE-2025-7486 | MEDIUM | 4.4 | 0.2% | Jul 21, 2025 | The Ebook Store plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Order Details in all versions ... |
| CVE-2025-7942 | MEDIUM | 5.4 | 0.2% | Jul 21, 2025 | A vulnerability has been found in PHPGurukul Taxi Stand Management System 1.0 and classified as problematic. Affected by... |
| CVE-2025-7941 | MEDIUM | 5.4 | 0.2% | Jul 21, 2025 | A vulnerability, which was classified as problematic, was found in PHPGurukul Time Table Generator System 1.0. Affected ... |
| CVE-2025-7940 | MEDIUM | 5.3 | 0.1% | Jul 21, 2025 | A vulnerability was found in Genshin Albedo Cat House App 1.0.2 on Android. It has been declared as problematic. Affecte... |
| CVE-2025-7939 | HIGH | 8.8 | 0.4% | Jul 21, 2025 | A vulnerability was found in jerryshensjf JPACookieShop 蛋糕商城JPA版 1.0. It has been classified as critical. Affected is th... |
| CVE-2025-54134 | MEDIUM | 6.5 | 0.4% | Jul 21, 2025 | HAX CMS NodeJs allows users to manage their microsite universe with a NodeJs backend. In versions 11.0.8 and below, the ... |
| CVE-2025-54129 | MEDIUM | 4.3 | 0.3% | Jul 21, 2025 | HAXiam is a packaging wrapper for HAXcms which allows anyone to spawn their own microsite management platform. In versio... |
| CVE-2025-54128 | MEDIUM | 6.1 | 0.2% | Jul 21, 2025 | HAX CMS NodeJs allows users to manage their microsite universe with a NodeJs backend. In versions 11.0.7 and below, the ... |
| CVE-2025-54127 | CRITICAL | 9.8 | 0.4% | Jul 21, 2025 | HAXcms with nodejs backend allows users to start the server in any HAXsite or HAXcms instance. In versions 11.0.6 and be... |
| CVE-2025-54122 | CRITICAL | 10 | 0.8% | Jul 21, 2025 | Manager-io/Manager is accounting software. A critical unauthenticated full read Server-Side Request Forgery (SSRF) vulne... |
| CVE-2025-53832 | HIGH | 7.5 | 7.8% | Jul 21, 2025 | Lara Translate MCP Server is a Model Context Protocol (MCP) Server for Lara Translate API. Versions 0.0.11 and below con... |
| CVE-2025-53528 | HIGH | 7.6 | 0.2% | Jul 21, 2025 | Cadwyn creates production-ready community-driven modern Stripe-like API versioning in FastAPI. In versions before 5.4.3,... |
| CVE-2025-7938 | MEDIUM | 4.3 | 0.3% | Jul 21, 2025 | A vulnerability was found in jerryshensjf JPACookieShop 蛋糕商城JPA版 1.0 and classified as critical. This issue affects the ... |
| CVE-2025-7936 | HIGH | 8.8 | 0.4% | Jul 21, 2025 | A vulnerability has been found in fuyang_lipengjun platform up to ca9aceff6902feb7b0b6bf510842aea88430796a and classifie... |
| CVE-2025-7325 | HIGH | 7.8 | 0.2% | Jul 21, 2025 | IrfanView CADImage Plugin DXF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability all... |
| CVE-2025-7324 | HIGH | 7.8 | 0.2% | Jul 21, 2025 | IrfanView CADImage Plugin DXF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability al... |
| CVE-2025-7323 | HIGH | 7.8 | 0.2% | Jul 21, 2025 | IrfanView CADImage Plugin DWG File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability all... |
| CVE-2025-7322 | HIGH | 7.8 | 0.2% | Jul 21, 2025 | IrfanView CADImage Plugin DWG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability al... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now