2025 CVE Vulnerabilities

45,277 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-4595MEDIUM6.4The FastSpring plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'fastspring/block-fast...
CVE-2025-4590MEDIUM6.4The Daisycon prijsvergelijkers plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'daisy...
CVE-2025-4103HIGH8.8The WP-GeoMeta plugin for WordPress is vulnerable to Privilege Escalation due to a missing capability check on the wp_aj...
CVE-2025-5370CRITICAL9.8A vulnerability classified as critical was found in PHPGurukul News Portal 4.1. Affected by this vulnerability is an unk...
CVE-2025-5369CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester PHP Display Username After Login 1.0. Affected i...
CVE-2025-5368HIGH8.8A vulnerability was found in PHPGurukul Daily Expense Tracker System 1.1. It has been rated as critical. This issue affe...
CVE-2025-5016MEDIUM4.7The Relevanssi – A Better Search plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Excerpt Highl...
CVE-2025-5367CRITICAL9.8A vulnerability was found in PHPGurukul Online Shopping Portal Project 1.0. It has been declared as critical. This vulne...
CVE-2025-5365CRITICAL9.8A vulnerability was found in Campcodes Online Hospital Management System 1.0. It has been classified as critical. This a...
CVE-2025-5364CRITICAL9.8A vulnerability was found in Campcodes Online Hospital Management System 1.0 and classified as critical. Affected by thi...
CVE-2025-5363CRITICAL9.8A vulnerability has been found in Campcodes Online Hospital Management System 1.0 and classified as critical. Affected b...
CVE-2025-5362CRITICAL9.8A vulnerability, which was classified as critical, was found in Campcodes Online Hospital Management System 1.0. Affecte...
CVE-2025-5361CRITICAL9.8A vulnerability, which was classified as critical, has been found in Campcodes Online Hospital Management System 1.0. Th...
CVE-2025-5360CRITICAL9.8A vulnerability classified as critical was found in Campcodes Online Hospital Management System 1.0. This vulnerability ...
CVE-2025-48949CRITICAL9.8Navidrome is an open source web-based music collection server and streamer. Versions 0.55.0 through 0.55.2 have a vulner...
CVE-2025-48948MEDIUM6.5Navidrome is an open source web-based music collection server and streamer. A permission verification flaw in versions p...
CVE-2025-48946LOW3.7liboqs is a C-language cryptographic library that provides implementations of post-quantum cryptography algorithms. libo...
CVE-2025-48882HIGH8.7PHPOffice Math is a library that provides a set of classes to manipulate different formula file formats. Prior to versio...
CVE-2025-48874Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2025-5257. Reason: This candidate is a d...
CVE-2025-48873Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2025-5256. Reason: This candidate is a d...
CVE-2025-48872Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-47055. Reason: This candidate is a ...
CVE-2025-48871Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-47056. Reason: This candidate is a ...
CVE-2025-48870Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-47057. Reason: This candidate is a ...
CVE-2025-2503HIGH7.1An improper permission handling vulnerability was reported in Lenovo PC Manager that could allow a local attacker to per...
CVE-2025-2502HIGH8.5An improper default permissions vulnerability was reported in Lenovo PC Manager that could allow a local attacker to ele...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now