2025 CVE Vulnerabilities

45,295 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-3816HIGH7.2A vulnerability classified as critical was found in westboy CicadasCMS 2.0. This vulnerability affects unknown code of t...
CVE-2025-3808MEDIUM6.5A vulnerability has been found in zhenfeng13 My-BBS 1.0 and classified as problematic. This vulnerability affects unknow...
CVE-2025-3807CRITICAL9.8A vulnerability, which was classified as critical, was found in zhenfeng13 My-BBS 1.0. This affects the function Upload ...
CVE-2025-3806MEDIUM4.8A vulnerability, which was classified as problematic, has been found in dazhouda lecms up to 3.0.3. Affected by this iss...
CVE-2025-3805MEDIUM5.3A vulnerability classified as critical was found in sarrionandia tournatrack up to 4c13a23f43da5317eea4614870a7a8510fc54...
CVE-2025-3804MEDIUM5.3A vulnerability classified as critical has been found in thautwarm vscode-diana 0.0.1. Affected is an unknown function o...
CVE-2025-3803HIGH8.8A vulnerability was found in Tenda W12 and i24 3.0.0.4(2887)/3.0.0.5(3644). It has been rated as critical. This issue af...
CVE-2025-3802HIGH8.8A vulnerability was found in Tenda W12 and i24 3.0.0.4(2887)/3.0.0.5(3644). It has been declared as critical. This vulne...
CVE-2025-3801MEDIUM4.8A vulnerability was found in songquanpeng one-api up to 0.6.10. It has been classified as problematic. This affects an u...
CVE-2025-3800CRITICAL9.8A vulnerability has been found in WCMS 11 and classified as critical. Affected by this vulnerability is an unknown funct...
CVE-2025-3799CRITICAL9.8A vulnerability, which was classified as critical, was found in WCMS 11. Affected is an unknown function of the file app...
CVE-2025-3798HIGH7.2A vulnerability, which was classified as critical, has been found in WCMS 11. This issue affects the function sub of the...
CVE-2025-3661MEDIUM6.4The SB Chart block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘className’ parameter in al...
CVE-2025-3404HIGH8.8The Download Manager plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validat...
CVE-2025-3797HIGH7.2A vulnerability classified as critical was found in SeaCMS up to 13.3. This vulnerability affects unknown code of the fi...
CVE-2025-3809HIGH7.2The Debug Log Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the auto-refresh debug log i...
CVE-2025-2111HIGH7.5The Insert Headers And Footers plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, a...
CVE-2025-3103HIGH7.5The CLEVER - HTML5 Radio Player With History - Shoutcast and Icecast - Elementor Widget Addon plugin for WordPress is vu...
CVE-2025-3275MEDIUM6.4The Themesflat Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the TF E Slide...
CVE-2025-1457MEDIUM6.4The Element Pack Addons for Elementor – Free Templates and Widgets for Your WordPress Websites plugin for WordPress is v...
CVE-2025-1093CRITICAL9.8The AIHub theme for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the generat...
CVE-2025-43901Rejected reason: Not used
CVE-2025-43900Rejected reason: Not used
CVE-2025-43899Rejected reason: Not used
CVE-2025-43898Rejected reason: Not used

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now