2025 CVE Vulnerabilities

45,295 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-4099MEDIUM5.4The List Children plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'list_children' sho...
CVE-2025-3952HIGH8.1The Projectopia – WordPress Project Management plugin for WordPress is vulnerable to unauthorized modification of data t...
CVE-2025-4149CRITICAL9.8A vulnerability was found in Netgear EX6200 1.0.3.94. It has been classified as critical. This affects the function sub_...
CVE-2025-4148CRITICAL9.8A vulnerability was found in Netgear EX6200 1.0.3.94 and classified as critical. Affected by this issue is the function ...
CVE-2025-2168MEDIUM4.3The Ultimate Store Kit Elementor Addons, Woocommerce Builder, EDD Builder, Elementor Store Builder, Product Grid, Produc...
CVE-2025-1305HIGH8.8The NewsBlogger theme for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0....
CVE-2025-1304HIGH8.8The NewsBlogger theme for WordPress is vulnerable to arbitrary file uploads due to a missing capability check on the new...
CVE-2025-2816HIGH8.1The Page View Count plugin for WordPress is vulnerable to unauthorized modification of data that can lead to a denial of...
CVE-2025-4147CRITICAL9.8A vulnerability has been found in Netgear EX6200 1.0.3.94 and classified as critical. Affected by this vulnerability is ...
CVE-2025-4146CRITICAL9.8A vulnerability, which was classified as critical, was found in Netgear EX6200 1.0.3.94. Affected is the function sub_41...
CVE-2025-4145CRITICAL9.8A vulnerability, which was classified as critical, has been found in Netgear EX6200 1.0.3.94. This issue affects the fun...
CVE-2025-4144CRITICAL9.8PKCE was implemented in the OAuth implementation in workers-oauth-provider that is part of MCP framework https://github...
CVE-2025-4143MEDIUM6.1The OAuth implementation in workers-oauth-provider that is part of MCP framework https://github.com/cloudflare/workers-...
CVE-2025-4142CRITICAL9.8A vulnerability has been found in Netgear EX6200 1.0.3.94 and classified as critical. This vulnerability affects the fun...
CVE-2025-4141CRITICAL9.8A vulnerability, which was classified as critical, was found in Netgear EX6200 1.0.3.94. This affects the function sub_3...
CVE-2025-4140CRITICAL9.8A vulnerability, which was classified as critical, has been found in Netgear EX6120 1.0.3.94. Affected by this issue is ...
CVE-2025-4139HIGH8.8A vulnerability classified as critical was found in Netgear EX6120 1.0.0.68. Affected by this vulnerability is the funct...
CVE-2025-30422MEDIUM6.5A buffer overflow was addressed with improved input validation. This issue is fixed in AirPlay audio SDK 2.7.1 and AirPl...
CVE-2025-24132MEDIUM6.5The issue was addressed with improved memory handling. This issue is fixed in AirPlay audio SDK 2.7.1 and AirPlay video ...
CVE-2025-4136MEDIUM5.4A vulnerability was found in Weitong Mall 1.0.0. It has been classified as critical. This affects an unknown part of the...
CVE-2025-2082HIGH7.5Tesla Model 3 VCSEC Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent att...
CVE-2025-27611HIGH8.7base-x is a base encoder and decoder of any given alphabet using bitcoin style leading zero compression. Versions 4.0.0,...
CVE-2025-46558CRITICAL9XWiki Contrib's Syntax Markdown allows importing Markdown content into wiki pages and creating wiki content in Markdown....
CVE-2025-46557CRITICAL9.8XWiki is a generic wiki platform. In versions starting from 15.3-rc-1 to before 15.10.14, from 16.0.0-rc-1 to before 16....
CVE-2025-46554MEDIUM5.3XWiki is a generic wiki platform. In versions starting from 1.8.1 to before 14.10.22, from 15.0-rc-1 to before 15.10.12,...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now