2025 CVE Vulnerabilities

45,146 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-14482MEDIUM4.3The Crush.pics Image Optimizer - Image Compression and Optimization plugin for WordPress is vulnerable to unauthorized m...
CVE-2025-14464MEDIUM5.3The PDF Resume Parser plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in...
CVE-2025-14389MEDIUM4.3The WPBlogSyn plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0. Th...
CVE-2025-14379MEDIUM4.4The Testimonials Creator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in version...
CVE-2025-14301CRITICAL9.8The Integration Opvius AI for WooCommerce plugin for WordPress is vulnerable to Path Traversal in all versions up to, an...
CVE-2025-13627MEDIUM4.4The Makesweat plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'makesweat_clubid' setting in al...
CVE-2025-12178MEDIUM6.4The SpiceForms Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'spiceforms' short...
CVE-2025-68970MEDIUM5.5Permission verification bypass vulnerability in the media library module. Impact: Successful exploitation of this vulner...
CVE-2025-68969MEDIUM4.7Multi-thread race condition vulnerability in the thermal management module. Impact: Successful exploitation of this vuln...
CVE-2025-68968HIGH7.8Double free vulnerability in the multi-mode input module. Impact: Successful exploitation of this vulnerability may affe...
CVE-2025-68967MEDIUM5.5Vulnerability of improper permission control in the print module. Impact: Successful exploitation of this vulnerability ...
CVE-2025-68966MEDIUM5.5Permission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect...
CVE-2025-68965MEDIUM5.5Permission control vulnerability in the Notepad module. Impact: Successful exploitation of this vulnerability may affect...
CVE-2025-68964MEDIUM5.5Data verification vulnerability in the HiView module. Impact: Successful exploitation of this vulnerability may affect a...
CVE-2025-68963MEDIUM5.3Man-in-the-middle attack vulnerability in the Clone module. Impact: Successful exploitation of this vulnerability may af...
CVE-2025-68962MEDIUM4.7Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulner...
CVE-2025-68961MEDIUM4.7Multi-thread race condition vulnerability in the camera framework module. Impact: Successful exploitation of this vulner...
CVE-2025-68960MEDIUM4.7Multi-thread race condition vulnerability in the video framework module. Impact: Successful exploitation of this vulnera...
CVE-2025-68959MEDIUM5.5Permission verification bypass vulnerability in the media library module. Impact: Successful exploitation of this vulner...
CVE-2025-68958MEDIUM4.7Multi-thread race condition vulnerability in the card framework module. Impact: Successful exploitation of this vulnerab...
CVE-2025-68957MEDIUM4.7Multi-thread race condition vulnerability in the card framework module. Impact: Successful exploitation of this vulnerab...
CVE-2025-68956MEDIUM4.7Multi-thread race condition vulnerability in the card framework module. Impact: Successful exploitation of this vulnerab...
CVE-2025-68955MEDIUM4.7Multi-thread race condition vulnerability in the card framework module. Impact: Successful exploitation of this vulnera...
CVE-2025-12053HIGH7.8The drivers in the tool packages use RTL_QUERY_REGISTRY_DIRECT flag to read a registry value to which an untrusted user-...
CVE-2025-12052HIGH7.8The drivers in the tool packages use RTL_QUERY_REGISTRY_DIRECT flag to read a registry value to which an untrusted user-...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now