2025 CVE Vulnerabilities
45,279 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-23983 | HIGH | 7.1 | 0.2% | May 19, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in tijaji Tijaji tija... |
| CVE-2025-23981 | HIGH | 7.1 | 0.2% | May 19, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Takimi Themes CarZ... |
| CVE-2025-23979 | HIGH | 7.1 | 0.2% | May 19, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in duwasai Flashy all... |
| CVE-2025-22792 | HIGH | 7.1 | 0.2% | May 19, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in jinwen Js O3 Lite ... |
| CVE-2025-22791 | HIGH | 7.1 | 0.2% | May 19, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in twh offset writing... |
| CVE-2025-22790 | HIGH | 7.1 | 0.2% | May 19, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in asmedia allows Ref... |
| CVE-2025-22789 | HIGH | 7.1 | 0.2% | May 19, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in fyrewurks polka do... |
| CVE-2025-22687 | HIGH | 7.1 | 0.2% | May 19, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Asmedia Tuaug4 all... |
| CVE-2025-22678 | HIGH | 7.1 | 0.2% | May 19, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in mythemes my white ... |
| CVE-2025-4937 | CRITICAL | 9.8 | 0.5% | May 19, 2025 | A vulnerability was found in SourceCodester Apartment Visitor Management System 1.0. It has been declared as critical. A... |
| CVE-2025-4936 | CRITICAL | 9.8 | 0.4% | May 19, 2025 | A vulnerability was found in projectworlds Online Food Ordering System 1.0. It has been classified as critical. Affected... |
| CVE-2025-48346 | MEDIUM | 5.3 | 0.2% | May 19, 2025 | Missing Authorization vulnerability in Embed360 Embed and Integrate Etsy Shop embed-and-integrate-etsy-shop allows Acces... |
| CVE-2025-48344 | MEDIUM | 5.4 | 0.1% | May 19, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in ed4becky Rootspersona rootspersona allows Cross Site Request Forgery.... |
| CVE-2025-48342 | MEDIUM | 5.4 | 0.1% | May 19, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in RedefiningTheWeb Dynamic Pricing & Discounts Lite for WooCommerce woo... |
| CVE-2025-48341 | MEDIUM | 5.9 | 0.2% | May 19, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 10Web Form Maker b... |
| CVE-2025-48288 | MEDIUM | 6.5 | 0.2% | May 19, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Element Invader El... |
| CVE-2025-48285 | MEDIUM | 4.3 | 0.1% | May 19, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in sbouey Falang multilanguage falang allows Cross Site Request Forgery.... |
| CVE-2025-48284 | MEDIUM | 5.4 | 0.1% | May 19, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in shohei.tanaka Japanized For WooCommerce woocommerce-for-japan allows ... |
| CVE-2025-48282 | MEDIUM | 5.3 | 0.2% | May 19, 2025 | Missing Authorization vulnerability in Majestic Support Majestic Support majestic-support allows Exploiting Incorrectly ... |
| CVE-2025-48280 | HIGH | 7.6 | 0.3% | May 19, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ruben Garcia Autom... |
| CVE-2025-48278 | HIGH | 8.5 | 0.3% | May 19, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in davidfcarr RSVPMar... |
| CVE-2025-48277 | MEDIUM | 5.9 | 0.2% | May 19, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Stylemix Cost Calc... |
| CVE-2025-48276 | MEDIUM | 6.5 | 0.2% | May 19, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Visual Composer Vi... |
| CVE-2025-48272 | MEDIUM | 5.3 | 0.3% | May 19, 2025 | Missing Authorization vulnerability in wpjobportal WP Job Portal wp-job-portal allows Exploiting Incorrectly Configured ... |
| CVE-2025-48270 | MEDIUM | 5.4 | 0.2% | May 19, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sonalsinha21 SKT B... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now