2025 CVE Vulnerabilities
45,295 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-4099 | MEDIUM | 5.4 | 0.2% | May 1, 2025 | The List Children plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'list_children' sho... |
| CVE-2025-3952 | HIGH | 8.1 | 0.3% | May 1, 2025 | The Projectopia – WordPress Project Management plugin for WordPress is vulnerable to unauthorized modification of data t... |
| CVE-2025-4149 | CRITICAL | 9.8 | 1.3% | May 1, 2025 | A vulnerability was found in Netgear EX6200 1.0.3.94. It has been classified as critical. This affects the function sub_... |
| CVE-2025-4148 | CRITICAL | 9.8 | 1.3% | May 1, 2025 | A vulnerability was found in Netgear EX6200 1.0.3.94 and classified as critical. Affected by this issue is the function ... |
| CVE-2025-2168 | MEDIUM | 4.3 | 0.2% | May 1, 2025 | The Ultimate Store Kit Elementor Addons, Woocommerce Builder, EDD Builder, Elementor Store Builder, Product Grid, Produc... |
| CVE-2025-1305 | HIGH | 8.8 | 0.3% | May 1, 2025 | The NewsBlogger theme for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.... |
| CVE-2025-1304 | HIGH | 8.8 | 1.0% | May 1, 2025 | The NewsBlogger theme for WordPress is vulnerable to arbitrary file uploads due to a missing capability check on the new... |
| CVE-2025-2816 | HIGH | 8.1 | 0.3% | May 1, 2025 | The Page View Count plugin for WordPress is vulnerable to unauthorized modification of data that can lead to a denial of... |
| CVE-2025-4147 | CRITICAL | 9.8 | 0.9% | May 1, 2025 | A vulnerability has been found in Netgear EX6200 1.0.3.94 and classified as critical. Affected by this vulnerability is ... |
| CVE-2025-4146 | CRITICAL | 9.8 | 1.1% | May 1, 2025 | A vulnerability, which was classified as critical, was found in Netgear EX6200 1.0.3.94. Affected is the function sub_41... |
| CVE-2025-4145 | CRITICAL | 9.8 | 0.9% | May 1, 2025 | A vulnerability, which was classified as critical, has been found in Netgear EX6200 1.0.3.94. This issue affects the fun... |
| CVE-2025-4144 | CRITICAL | 9.8 | 0.5% | May 1, 2025 | PKCE was implemented in the OAuth implementation in workers-oauth-provider that is part of MCP framework https://github... |
| CVE-2025-4143 | MEDIUM | 6.1 | 0.3% | May 1, 2025 | The OAuth implementation in workers-oauth-provider that is part of MCP framework https://github.com/cloudflare/workers-... |
| CVE-2025-4142 | CRITICAL | 9.8 | 0.9% | Apr 30, 2025 | A vulnerability has been found in Netgear EX6200 1.0.3.94 and classified as critical. This vulnerability affects the fun... |
| CVE-2025-4141 | CRITICAL | 9.8 | 0.9% | Apr 30, 2025 | A vulnerability, which was classified as critical, was found in Netgear EX6200 1.0.3.94. This affects the function sub_3... |
| CVE-2025-4140 | CRITICAL | 9.8 | 0.9% | Apr 30, 2025 | A vulnerability, which was classified as critical, has been found in Netgear EX6120 1.0.3.94. Affected by this issue is ... |
| CVE-2025-4139 | HIGH | 8.8 | 0.9% | Apr 30, 2025 | A vulnerability classified as critical was found in Netgear EX6120 1.0.0.68. Affected by this vulnerability is the funct... |
| CVE-2025-30422 | MEDIUM | 6.5 | 0.6% | Apr 30, 2025 | A buffer overflow was addressed with improved input validation. This issue is fixed in AirPlay audio SDK 2.7.1 and AirPl... |
| CVE-2025-24132 | MEDIUM | 6.5 | 3.1% | Apr 30, 2025 | The issue was addressed with improved memory handling. This issue is fixed in AirPlay audio SDK 2.7.1 and AirPlay video ... |
| CVE-2025-4136 | MEDIUM | 5.4 | 0.3% | Apr 30, 2025 | A vulnerability was found in Weitong Mall 1.0.0. It has been classified as critical. This affects an unknown part of the... |
| CVE-2025-2082 | HIGH | 7.5 | 0.3% | Apr 30, 2025 | Tesla Model 3 VCSEC Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent att... |
| CVE-2025-27611 | HIGH | 8.7 | 0.4% | Apr 30, 2025 | base-x is a base encoder and decoder of any given alphabet using bitcoin style leading zero compression. Versions 4.0.0,... |
| CVE-2025-46558 | CRITICAL | 9 | 0.4% | Apr 30, 2025 | XWiki Contrib's Syntax Markdown allows importing Markdown content into wiki pages and creating wiki content in Markdown.... |
| CVE-2025-46557 | CRITICAL | 9.8 | 0.5% | Apr 30, 2025 | XWiki is a generic wiki platform. In versions starting from 15.3-rc-1 to before 15.10.14, from 16.0.0-rc-1 to before 16.... |
| CVE-2025-46554 | MEDIUM | 5.3 | 0.9% | Apr 30, 2025 | XWiki is a generic wiki platform. In versions starting from 1.8.1 to before 14.10.22, from 15.0-rc-1 to before 15.10.12,... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now