2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2025-69371CRITICAL9.8Deserialization of Untrusted Data vulnerability in AncoraThemes KindlyCare kindlycare allows Object Injection.This issue...
CVE-2025-69370CRITICAL9.8Deserialization of Untrusted Data vulnerability in ThemeGoods Capella capella allows Object Injection.This issue affects...
CVE-2025-69366CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Emerc...
CVE-2025-69365CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Uroan...
CVE-2025-69337CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in don-themes Wolmart...
CVE-2025-69329CRITICAL9.8Deserialization of Untrusted Data vulnerability in Jthemes Prestige prestige allows Object Injection.This issue affects ...
CVE-2025-69310CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Woodl...
CVE-2025-69309CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Saasp...
CVE-2025-69308CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Nestb...
CVE-2025-69307CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Medin...
CVE-2025-69306CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Elect...
CVE-2025-69305CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Crete...
CVE-2025-69304CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Allma...
CVE-2025-69301CRITICAL9.8Deserialization of Untrusted Data vulnerability in ThemeGoods PhotoMe photome allows Object Injection.This issue affects...
CVE-2025-69295CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Coven...
CVE-2025-68549CRITICAL9.9Unrestricted Upload of File with Dangerous Type vulnerability in zozothemes Wiguard wiguard allows Upload a Web Shell to...
CVE-2025-68541CRITICAL9.8Deserialization of Untrusted Data vulnerability in BoldThemes Ippsum ippsum allows Object Injection.This issue affects I...
CVE-2025-67997CRITICAL9.8Deserialization of Untrusted Data vulnerability in BoldThemes Travelicious travelicious allows Object Injection.This iss...
CVE-2025-67996CRITICAL9.8Deserialization of Untrusted Data vulnerability in BoldThemes Nestin nestin allows Object Injection.This issue affects N...
CVE-2025-67995CRITICAL9.8Deserialization of Untrusted Data vulnerability in LoftOcean PatioTime patiotime allows Object Injection.This issue affe...
CVE-2025-67979CRITICAL9.9Improper Control of Generation of Code ('Code Injection') vulnerability in WesternDeal WPForms Google Sheet Connector gs...
CVE-2025-10970CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Kolay Software Inc...
CVE-2025-30416CRITICAL10Sensitive data disclosure and manipulation due to missing authorization. The following products are affected: Acronis Cy...
CVE-2025-30412CRITICAL10Sensitive data disclosure and manipulation due to improper authentication. The following products are affected: Acronis ...
CVE-2025-30411CRITICAL10Sensitive data disclosure and manipulation due to improper authentication. The following products are affected: Acronis ...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now