2025 CVE Vulnerabilities
45,295 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-3816 | HIGH | 7.2 | 5.9% | Apr 19, 2025 | A vulnerability classified as critical was found in westboy CicadasCMS 2.0. This vulnerability affects unknown code of t... |
| CVE-2025-3808 | MEDIUM | 6.5 | 0.3% | Apr 19, 2025 | A vulnerability has been found in zhenfeng13 My-BBS 1.0 and classified as problematic. This vulnerability affects unknow... |
| CVE-2025-3807 | CRITICAL | 9.8 | 0.4% | Apr 19, 2025 | A vulnerability, which was classified as critical, was found in zhenfeng13 My-BBS 1.0. This affects the function Upload ... |
| CVE-2025-3806 | MEDIUM | 4.8 | 0.3% | Apr 19, 2025 | A vulnerability, which was classified as problematic, has been found in dazhouda lecms up to 3.0.3. Affected by this iss... |
| CVE-2025-3805 | MEDIUM | 5.3 | 0.2% | Apr 19, 2025 | A vulnerability classified as critical was found in sarrionandia tournatrack up to 4c13a23f43da5317eea4614870a7a8510fc54... |
| CVE-2025-3804 | MEDIUM | 5.3 | 0.2% | Apr 19, 2025 | A vulnerability classified as critical has been found in thautwarm vscode-diana 0.0.1. Affected is an unknown function o... |
| CVE-2025-3803 | HIGH | 8.8 | 0.8% | Apr 19, 2025 | A vulnerability was found in Tenda W12 and i24 3.0.0.4(2887)/3.0.0.5(3644). It has been rated as critical. This issue af... |
| CVE-2025-3802 | HIGH | 8.8 | 0.8% | Apr 19, 2025 | A vulnerability was found in Tenda W12 and i24 3.0.0.4(2887)/3.0.0.5(3644). It has been declared as critical. This vulne... |
| CVE-2025-3801 | MEDIUM | 4.8 | 0.3% | Apr 19, 2025 | A vulnerability was found in songquanpeng one-api up to 0.6.10. It has been classified as problematic. This affects an u... |
| CVE-2025-3800 | CRITICAL | 9.8 | 0.5% | Apr 19, 2025 | A vulnerability has been found in WCMS 11 and classified as critical. Affected by this vulnerability is an unknown funct... |
| CVE-2025-3799 | CRITICAL | 9.8 | 0.4% | Apr 19, 2025 | A vulnerability, which was classified as critical, was found in WCMS 11. Affected is an unknown function of the file app... |
| CVE-2025-3798 | HIGH | 7.2 | 0.4% | Apr 19, 2025 | A vulnerability, which was classified as critical, has been found in WCMS 11. This issue affects the function sub of the... |
| CVE-2025-3661 | MEDIUM | 6.4 | 0.3% | Apr 19, 2025 | The SB Chart block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘className’ parameter in al... |
| CVE-2025-3404 | HIGH | 8.8 | 0.9% | Apr 19, 2025 | The Download Manager plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validat... |
| CVE-2025-3797 | HIGH | 7.2 | 0.4% | Apr 19, 2025 | A vulnerability classified as critical was found in SeaCMS up to 13.3. This vulnerability affects unknown code of the fi... |
| CVE-2025-3809 | HIGH | 7.2 | 0.2% | Apr 19, 2025 | The Debug Log Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the auto-refresh debug log i... |
| CVE-2025-2111 | HIGH | 7.5 | 0.2% | Apr 19, 2025 | The Insert Headers And Footers plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, a... |
| CVE-2025-3103 | HIGH | 7.5 | 0.3% | Apr 19, 2025 | The CLEVER - HTML5 Radio Player With History - Shoutcast and Icecast - Elementor Widget Addon plugin for WordPress is vu... |
| CVE-2025-3275 | MEDIUM | 6.4 | 0.3% | Apr 19, 2025 | The Themesflat Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the TF E Slide... |
| CVE-2025-1457 | MEDIUM | 6.4 | 0.3% | Apr 19, 2025 | The Element Pack Addons for Elementor – Free Templates and Widgets for Your WordPress Websites plugin for WordPress is v... |
| CVE-2025-1093 | CRITICAL | 9.8 | 0.9% | Apr 19, 2025 | The AIHub theme for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the generat... |
| CVE-2025-43901 | — | — | — | Apr 19, 2025 | Rejected reason: Not used |
| CVE-2025-43900 | — | — | — | Apr 19, 2025 | Rejected reason: Not used |
| CVE-2025-43899 | — | — | — | Apr 19, 2025 | Rejected reason: Not used |
| CVE-2025-43898 | — | — | — | Apr 19, 2025 | Rejected reason: Not used |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now