2025 CVE Vulnerabilities
45,266 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-52794 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Creative-Solutions Creative Contact Form sexy-contact-form allows Sto... |
| CVE-2025-52793 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Esselink.nu Esselink.nu Settings esselinknu-settings allows Reflected... |
| CVE-2025-52792 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in vgstef WP User Stylesheet Switcher wp-user-stylesheet-switcher allows... |
| CVE-2025-52791 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in devfelixmoira Knowledge Base – Knowledge Base Maker knowledge-base-ma... |
| CVE-2025-52790 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in r-win WP-DownloadCounter wp-downloadcounter allows Stored XSS.This is... |
| CVE-2025-52789 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in George Lewe Lewe ChordPress chordpress allows Stored XSS.This issue a... |
| CVE-2025-52784 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in hideoguchi Bluff Post bluff-post allows Stored XSS.This issue affects... |
| CVE-2025-52783 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in themelocation Change Cart button Colors WooCommerce wc-style allows S... |
| CVE-2025-52782 | HIGH | 7.1 | 0.2% | Jun 20, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in King Rayhan Scroll... |
| CVE-2025-52781 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Beee TinyNav tinynav allows Stored XSS.This issue affects TinyNav: fr... |
| CVE-2025-52780 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Mohammad Parsa Logo Manager For Samandehi samandehi-logo-manager allo... |
| CVE-2025-52772 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Adnan Haque (a11n) Virtual Moderator allows Cross-Site Scripting (XSS... |
| CVE-2025-52733 | MEDIUM | 6.5 | 0.2% | Jun 20, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Anonform Ab ANON::... |
| CVE-2025-52719 | MEDIUM | 4.3 | 0.2% | Jun 20, 2025 | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Metagauss ProfileGrid profi... |
| CVE-2025-52715 | HIGH | 7.5 | 0.4% | Jun 20, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-52713 | MEDIUM | 6.4 | 0.2% | Jun 20, 2025 | Server-Side Request Forgery (SSRF) vulnerability in BoldGrid Post and Page Builder by BoldGrid post-and-page-builder all... |
| CVE-2025-52711 | MEDIUM | 4.3 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in BoldGrid Post and Page Builder by BoldGrid post-and-page-builder allo... |
| CVE-2025-52710 | MEDIUM | 5.9 | 0.2% | Jun 20, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ninja Team File Ma... |
| CVE-2025-52708 | HIGH | 7.5 | 0.4% | Jun 20, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-52707 | MEDIUM | 6.5 | 0.2% | Jun 20, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Firelight Fireligh... |
| CVE-2025-50051 | MEDIUM | 6.5 | 0.2% | Jun 20, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Chad Butler WP-Mem... |
| CVE-2025-50050 | MEDIUM | 6.5 | 0.2% | Jun 20, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BlueGlass Interact... |
| CVE-2025-50049 | MEDIUM | 6.5 | 0.2% | Jun 20, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in prismtechstudios M... |
| CVE-2025-50048 | MEDIUM | 6.5 | 0.2% | Jun 20, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Atakan Au Automati... |
| CVE-2025-50047 | MEDIUM | 6.5 | 0.2% | Jun 20, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in webvitaly Sitekit ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now